Security researchers discovered malicious code in NPM packages and GitHub commits The code was linked to a Lazarus-operated ...