Rust Supply Chain Attack on arrayref: Significant Overlap with DPRK Campaigns
ID: 423fdb54-b995-5196-9a8f-449d94b9705a
STIX ID: report--423fdb54-b995-5196-9a8f-449d94b9705a
Feed Name: Wiz Blog
Threat Score
**Supply-chain compromise on crates.io:** Malicious versions of popular Rust crates added a typosquatted dependency whose build script downloads and executes a platform-specific backdoor that beacons to C2, collects host and browser profile data, persists across reboots, and supports remote commands; the incident affected widely used packages (notably arrayref) and shows infrastructure overlap with DPRK-attributed campaigns.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
