'Generative AI is already changing what malicious software packages look like and how threat actors are beginning to probe AI-based code systems': Amazon flags North Korean hacker group as being behind the surge in open source supply chain attacks
Date:
Mon, 03 Aug 2026 21:10:00 +0000
Description:
Amazon linked a North Korean hacking group to software supply chain attacks while warning generative AI is changing malware development techniques.
FULL STORY ======================================================================Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter Amazon links multiple software supply chain attacks to one North Korean hacking group Generative AI enables convincing malware hidden inside trusted software packages at scale Attackers manipulated trusted maintainers before distributing compromised software updates to developers Amazon has linked a North Korean threat actor to
several recent compromises of popular NPM software libraries.
A report from Amazon Threat Intelligence connected recent breaches of the axios, debug, chalk, and typo-crypto packages to a single group. That group
is tracked across the security community under names including SAPPHIRE
SLEET, STARDUST CHOLLIMA, BlueNoroff, CageyChameleon, and Alluring Pisces. Latest Videos From TechRadar Watch full video here: Attackers exploit trust
to compromise widely used packages In March 2025, the threat actor
compromised the typo-crypto package through a trojanized file disguised as a legitimate dependency.
The same group later compromised debug and chalk in September 2025, then
axios in March 2026. You may like Mini Shai-Halud hackers publish over 600 compromised npm packages OpenAI Codex tool with over 29,000 downloads linked to malicious npm supply chain attack stealing authentication tokens Experts uncover another massive North Korean fake IT worker scam network
Axios alone carries more than 100 million weekly downloads, making it one of the most widely used JavaScript libraries in existence today.
In each case, attackers socially engineered a trusted maintainer before publishing a malicious software update. Are you a pro? Subscribe to our newsletter Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed! Contact me
with news and offers from other Future brands Receive email from us on behalf of our trusted partners or sponsors By submitting your information you agree to the Terms & Conditions and Privacy Policy and are aged 16 or over.
Any organization that automatically pulled the latest version of these packages received the compromised code without warning.
Wiz Research reported that roughly 1 in 10 cloud environments were affected within a two-hour window during the debug and chalk incident.
Amazon assesses the pattern as financially motivated, since compromising a small number of popular packages grants access to thousands of downstream environments simultaneously, far more efficient than targeting organizations individually. What to read next Experts warn hackers are using AI chatbots to write malware using natural language Hackers used AI to discover and
weaponize a zero-day for the first time Hugging Face confirms it was hit by cyberattack powered by an AI agent
Attackers have also shifted from single malicious packages toward fragmenting workflows across several ordinary-looking dependencies published separately over time. Generative AI introduces new risks for automated code review Generative AI now allows attackers to produce coherent, well-commented code alongside convincing documentation and fabricated maintainer identities.
Because each malicious variant can be mutated, renamed, and re-encrypted, no single stable signature remains available for an antivirus or other detection tools to match.
Attackers have also begun exploiting slopsquatting, registering package names that AI coding assistants hallucinate during ordinary development work.
When a hallucinated package gets recommended by a coding assistant, an attacker who registered that name in advance can deliver malware directly.
Amazon warns that malicious packages are increasingly built to fool automated AI reviewers rather than only human analysts scanning code manually.
Hidden instructions embedded in comments, README files, or docstrings could manipulate AI scanners into approving dangerous code as safe.
Amazon Threat Intelligence and Amazon Inspector have observed that attackers split malicious workflows across multiple packages that each appear harmless individually.
Their malicious behaviour only emerges once separate components combine in
the intended sequence during execution.
Amazon has invested in Amazon Inspector and its broader threat intelligence programs to help detect these evolving supply chain risks.
The company also joined the Linux Foundation's Akrites initiative and contributed $12.5 million toward defending open-source software from
AI-driven attacks.
The shift toward AI-generated malware suggests traditional pattern matching alone may become less effective against evolving threats, including future ransomware campaigns using similar techniques. Follow TechRadar on Google
News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
======================================================================
Link to news story:
https://www.techradar.com/pro/security/amazon-flags-a-north-korean-hacker-grou p-as-being-behind-the-surge-in-open-source-supply-chain-attacks
--- Mystic BBS v1.12 A49 (Linux/64)
* Origin: tqwNet Technology News (1337:1/100)