DPRK Actors Use Claude LLM to Inject Malware Into npm Supply Chain
North Korean threat group Famous Chollima (Shifty Corsair) has weaponised AI-assisted code generation to embed malicious npm packages into autonomous AI agent projects, targeting cryptocurrency …
AML.T0010 - ML Supply Chain Compromise
AML.T0047 - ML-Enabled Product or Service
AML.T0019 - Publish Poisoned Datasets