JFrog: Lazarus / OtterCookie `rollup-*-polyfill-core` npm campaign - 6 packages steal AI-coder credentials, browser data and crypto wallets
JFrog Security Research disclosed a 6-package DPRK / Contagious Interview npm campaign that mimics the legitimate rollup-plugin-polyfill-node project down to its metadata. First-stage packages carry a base64-encoded npm install that fetches an SVG-utility-shaped second stage; the second stage evaluates a payload pulled from JSONKeeper and steals credentials for AWS, Azure, Google Gemini, Anthropic Claude, Windsurf, Cursor, VS Code, SSH and Zsh, plus browser data and crypto wallets. Two of the first-stage packages are STILL live on npm as of 2026-07-04.
Versions named here: 1.0.1, 1.0.2, 1.0.3