Hackers pose as employers to steal crypto, login credentials

Since early 2024, ESET researchers have been tracking DeceptiveDevelopment, a series of malicious campaigns linked to North Korea-aligned operators. Disguising themselves as software development recruiters, these threat actors lure victims with fake jo… Continue reading Hackers pose as employers to steal crypto, login credentials

North Korean hackers spotted using ClickFix tactic to deliver malware

North Korean state-sponsored group Kimsuky (aka Emerald Sleet, aka VELVET CHOLLIMA) is attempting to deliver malware to South Korean targets by leveraging the so-called “ClickFix” tactic. A relatively new tactic The ClickFix social engineer… Continue reading North Korean hackers spotted using ClickFix tactic to deliver malware

US woman faces years in federal prison for running laptop farm for N Korean IT workers

Christian Marie Chapman, of Litchfield Park, Arizona, helped generate over US $17 million for North Korea after over 300 US companies unwittingly hired staff believing them to be US citizens.

Read more in my article on the Hot for Security blog. Continue reading US woman faces years in federal prison for running laptop farm for N Korean IT workers

U.S. adversaries increasingly turning to cybercriminals and their malware for help

A Google Threat Intelligence Group report notes that Russia in particular has been doing this since the Ukraine war began.

The post U.S. adversaries increasingly turning to cybercriminals and their malware for help appeared first on CyberScoop.

Continue reading U.S. adversaries increasingly turning to cybercriminals and their malware for help

Can AI Early Warning Systems Reboot the Threat Intel Industry?

News analysis: The big AI platforms are emerging as frontline early warning systems, detecting nation-state hackers at the outset of their campaigns. Can this help save the threat intel industry?
The post Can AI Early Warning Systems Reboot the Threat … Continue reading Can AI Early Warning Systems Reboot the Threat Intel Industry?

How Lazarus Group built a cyber espionage empire

Since September 2024, SecurityScorecard’s STRIKE team has been investigating Lazarus Group’s activity, uncovering key details about their infrastructure. Despite variations in payload delivery and obfuscation techniques, the campaign relied on a … Continue reading How Lazarus Group built a cyber espionage empire

North Korean IT workers are extorting employers, FBI warns

The FBI is on a mission to raise awareness about the threat that North Korean IT workers present to organizations in the US and around the world. While corporate espionage comes to mind first, the threat goes beyond that: “In recent months, in ad… Continue reading North Korean IT workers are extorting employers, FBI warns