Google links axios attack to suspected North Korean actor
AI-summarised brief · reviewed before publication
Google's Threat Intelligence Group linked the recent axios npm supply chain attack to a suspected North Korean actor, UNC1069. The attack affects a widely used JavaScript library, potentially spreading to thousands of applications. This incident raises concerns about software supply chain risk, particularly in Australia and New Zealand, where open-source components are widely embedded in business applications. The breach's full extent and impact are still being investigated, with expected far-reaching consequences.