The OpenSourceMalware Show #10
ID: 74118d65-5933-5b78-8e9a-f144a45eac8a
STIX ID: report--74118d65-5933-5b78-8e9a-f144a45eac8a
Feed Name: OpenSourceMalware Blog
Date Published: 2026-06-25
Date Updated: 2026-08-06
Author: cb482791-4ef1-4762-96ad-b0ca4bdd538e
**Executive summary:** This podcast/blog episode summarizes observed active supply-chain malware trends — primarily attributed to DPRK Lazarus Group — describing techniques such as version-sandwiching to hide malicious releases, reuse of Aptos/Tron/BSC blockchain addresses as mutable C2, human-readable campaign tags embedded in payloads, and broader industry trends including cross-ecosystem malicious packages, clustered package deployments, runtime/dynamic imports that bypass package managers, and splitting payloads across multiple files or packages.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
