← Back to Pulse Feed
PULSE DETAIL
PULSE NAME
Securing the Supply Chain: How SentinelOne's AI EDR Stops the ...
On March 31, 2026, a North Korean state actor hijacked the npm credentials of the primary Axios maintainer and published two backdoored releases that deployed a cross-platform remote access trojan (RAT) to Windows, macOS, and Linux systems. Axios is the most widely used HTTP client in the JavaScript ecosystem, with approximately 100 million weekly downloads and a presence in roughly 80% of cloud and code environments.
Indicators of Compromise (1 / 12 total)
| TYPE | INDICATOR | DESCRIPTION | CREATED | |
|---|---|---|---|---|
| URL | http://sfrclak.com:8000/6202033 | — | 2026-04-03 |