How the Axios NPM Attack Reveals the Industrialization of Social Engineering
The compromise of the Axios JavaScript library by suspected North Korean threat group UNC1069 exposes how sophisticated, slow-burn social engineering campaigns are being scaled to target open source maintainers with massive downstream reach.