[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$f3MWqaBTfCCLDeCh1Rj0my2cfuIEueDygrc3xVEsQWlA":3},{"article":4,"iocs":38,"watch_terms":42},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":18,"category":19,"article_tags":22},"9965587a-4a48-4874-950c-5ee21f6e0099","Axios NPM Package Compromised in Precision Attack","axios-npm-package-compromised-in-precision-attack","The NPM package for Axios, a popular JavaScript HTTP client library, was briefly compromised this week, possibly by North Korean threat actors.","The NPM package for Axios, a widely-used JavaScript HTTP client library, was compromised this week in what appears to be a targeted supply-chain attack. Initial indicators suggest possible involvement by North Korean threat actors. The compromise was brief, suggesting either rapid detection or a limited, surgical operation aimed at specific downstream users.","Axios NPM package compromised in precision attack, possibly by North Korean actors.",null,"https:\u002F\u002Fwww.darkreading.com\u002Fapplication-security\u002Faxios-npm-package-compromised-precision-attack","https:\u002F\u002Feu-images.contentstack.com\u002Fv3\u002Fassets\u002Fblt6d90778a997de1cd\u002Fblt284d08f3234710b6\u002F69cc29efc0030f6e262faa34\u002Fbullseye_chris_brignell_Alamy.jpg?width=1280&auto=webp&quality=80&disable=upscale","2026-03-31T20:55:13+00:00","2026-03-31T22:00:21.138073+00:00",8,[],"26b0b636-0e31-4db1-bffb-61bdf9f20a58",{"id":18,"icon":11,"name":20,"slug":21},"Supply Chain","supply-chain",[23,28,33],{"category":24},{"id":25,"icon":11,"name":26,"slug":27},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":29},{"id":30,"icon":11,"name":31,"slug":32},"ade75414-7914-4e23-a450-48b64546ee70","Open Source","open-source",{"category":34},{"id":35,"icon":11,"name":36,"slug":37},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[39],{"type":27,"value":40,"context":41},"Axios NPM package compromise","Compromised NPM package distribution vector in precision supply-chain attack",[]]