North Korean hackers publish 108 malicious packages in PolinRider campaign

Discover how North Korean hackers distribute 108 malicious packages in npm, Packagist, Go, and Chrome. Protect your software.

sábado, 4 de julio de 2026 • 2 min read • Q2BSTUDIO Team

PolinRider campaign: malware in npm, Packagist, Go, and Chrome

The recent PolinRider campaign, attributed to North Korean actors linked to Contagious Interview, has highlighted the growing sophistication of software supply chain attacks. With the publication of 108 malicious packages on platforms such as npm, Packagist, Go, and Chrome extensions, these groups demonstrate a persistent and evolving operational capability. For companies that rely on open-source libraries, this threat represents a critical risk that demands advanced cybersecurity strategies.

The modus operandi includes compromising legitimate maintainer accounts and publishing packages with names similar to official ones, a technique known as typosquatting. The campaign remains active, and new malicious packages are expected to continue appearing. From a business perspective, early detection and automated response are essential. This is where services like cybersecurity and pentesting offered by Q2BSTUDIO become fundamental, as they enable the identification of vulnerabilities in the development cycle and third-party integrations.

Additionally, the adoption of artificial intelligence for businesses, particularly specialized AI security agents, can monitor repositories and alert on anomalous behavior in real time. Q2BSTUDIO integrates these capabilities within its custom applications and custom software solutions, ensuring that the most current attack vectors are considered from the design phase. Likewise, the use of AWS and Azure cloud services allows for the deployment of isolated and secure environments for testing and production, reducing the exposure surface.

Business intelligence also plays a key role: tools like Power BI can visualize threat patterns and correlate security events, facilitating decision-making. Q2BSTUDIO's business intelligence services help organizations transform security data into actionable information. On the other hand, custom software development with integrated DevSecOps practices is the best defense against attacks like PolinRider, as each dependency is audited and the risk of contamination is minimized.

In conclusion, the PolinRider campaign is a reminder that security is not an add-on but an intrinsic component of software development. Companies like Q2BSTUDIO offer a holistic approach that combines cybersecurity, artificial intelligence, cloud, and business intelligence to protect the digital supply chain. To learn more about how to develop secure applications, you can check our section on custom applications.

A BREAK?

Play for a moment before you go

OUR SERVICES

How we can help you

Do you have a project in mind?

Tell us your vision and we'll turn it into a software solution. Whatever the scope, we make your idea real.