Back to Home

Sonatype detected and logged 107 malicious components attributed to the Lazarus Group, a North Korea-linked Advanced Persistent Threat (APT), across both npm and PyPI in late Q2 2025.

July 8, 2025

Source

View Original Report

Published on 7/8/2025

Share or Copy this stat

Want More Statistics Like This?

Get the latest cybersecurity stats delivered to your inbox every week

Related Statistics

Browse more stats from Sonatype or explore Open source

Stay Ahead of Cyber Threats

Join 1,000+ security professionals getting weekly insights