TI Mindmap HUB
Threat Intelligence Report

PolinRider Rides Again: North Korean Attack Expands Across GitHub

📅 May 2, 2026 📰 opensourcemalware.com 🔍 0 CVE(s) referenced

A rapidly evolving North Korean supply-chain attack, now merging PolinRider and TasksJacker techniques, is targeting developers through GitHub, weaponized coding tests, and fake font files—compromising nearly 2,000 repositories in just five weeks and deploying advanced malware like InvisibleFerret across multiple platforms.

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

🔐 Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

📊 Visual Mindmap
🎯 IOC Extraction
⚔️ MITRE ATT&CK TTPs
📦 STIX 2.1 Bundle