TI Mindmap HUB
Threat Intelligence Report

PolinRider Caused Dozens of npm, Go, PHP Compromises

📅 July 31, 2026 📰 opensourcemalware.com 🔍 0 CVE(s) referenced

North Korea’s PolinRider campaign has silently compromised dozens of npm, Go, and PHP packages by automating malware propagation through infected developer machines, leveraging stolen credentials and invisible code injection to spread across ecosystems without deliberate targeting or traditional account takeovers.

unclassified

Sign in to access the full report including:
detailed analysis, IOCs, MITRE ATT&CK mapping, and STIX bundle.

🔐 Sign In to Read Full Report

You'll need to accept our Terms of Service to access the platform.

📊 Visual Mindmap
🎯 IOC Extraction
⚔️ MITRE ATT&CK TTPs
📦 STIX 2.1 Bundle