Product
Threat actors associated with DPRK campaigns compromised the Rust crates.io registry by injecting malicious build scripts into typosquatted dependencies to execute a backdoor on developer and build environments.