North Korean hackers' recent attack method targeting developers has been traced back to a GitHub repository named "VSCode-Backdoor," according to SlowMist's Chief Information Security Officer. This method, which emerged seven months ago, involves North Korean operatives using fake job listings to lure developers. Once a developer opens a malicious VS Code project, hidden tasks automatically execute, fetching JavaScript code from Vercel to deploy a backdoor, enabling remote code execution (RCE).