HIGH
Amazon Ties North Korean Hackers to Major Open-Source Supply Chain Attacks
Amazon researchers say a North Korea-linked hacking group was behind several high-profile compromises of open-source software libraries used by developers worldwide, per The Record.
The attribution links a string of prior supply-chain incidents to a single state-sponsored actor rather than isolated financially-motivated campaigns. Specific package names were not detailed in the available summary.