North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets
1. Executive summary JFrog has identified a campaign distributing malicious npm packages that impersonate the legitimate rollup-plugin-polyfill-node project to deliver remote-access and
03 Jul 2026 · 7 min read
read →