⤷ Title: N. Korea’s Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
Penetration Testing Tools
N. Korea's Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
North Korea’s Contagious Interview malware campaign continues to escalate its pressure on the JavaScript-development ecosystem. Threat actors affiliated
⤷ Title: Shadows of the North: Unmasking the Sprawling Cyber Infrastructure of the DPRK
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:27:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Acronis #BlueNoroff #cyber_espionage #DPRK #Hunt.io #Infrastructure Mapping #Kimsuky #Lazarus Group #North Korea #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:27:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Acronis #BlueNoroff #cyber_espionage #DPRK #Hunt.io #Infrastructure Mapping #Kimsuky #Lazarus Group #North Korea #threat intelligence
Daily CyberSecurity
Shadows of the North: Unmasking the Sprawling Cyber Infrastructure of the DPRK
A joint Hunt.io and Acronis report exposes the shared infrastructure behind Lazarus and Kimsuky, revealing the unified web of North Korean hacking.
⤷ Title: North Korea’s Kimsuky Upgrades DOCSWAP Malware to Hijack Smartphones via QR Codes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:18:02 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #DocSwap #DPRK #ENKI Research #Kimsuky #mobile security #North Korea #QR Code Scam #rat #smishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 00:18:02 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #DocSwap #DPRK #ENKI Research #Kimsuky #mobile security #North Korea #QR Code Scam #rat #smishing
Daily CyberSecurity
North Korea’s Kimsuky Upgrades DOCSWAP Malware to Hijack Smartphones via QR Codes
Kimsuky is deploying a new DOCSWAP RAT via QR codes and smishing. The DPRK-linked malware turns phones into surveillance tools for data theft.
⤷ Title: Shared Shadows: Hunt.io Uncovers the Unified Staging Grounds of Lazarus and Kimsuky
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:05:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis TRU #Badcall #BLINDINGCAN #Cyber Espionage #DPRK #Fast Reverse Proxy (FRP) #HttpTroy #Hunt.io #Kimsuky #Lazarus Group #Malware Infrastructure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 22 Dec 2025 02:05:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Acronis TRU #Badcall #BLINDINGCAN #Cyber Espionage #DPRK #Fast Reverse Proxy (FRP) #HttpTroy #Hunt.io #Kimsuky #Lazarus Group #Malware Infrastructure
Penetration Testing Tools
Shared Shadows: Hunt.io Uncovers the Unified Staging Grounds of Lazarus and Kimsuky
Groups operating in the interests of the DPRK continue to aggressively expand their infrastructure for cyber espionage, financial
⤷ Title: The Invisible Insider: How North Korean Operatives Are Infiltrating Your Remote Teams
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 03:33:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Deepfakes #Cybersecurity 2026 #DPRK #FBI Advisory #financial sanctions #identity theft #Insider Threat #Laptop Farms #North Korea #remote work #Silent Push
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 14 Jan 2026 03:33:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Deepfakes #Cybersecurity 2026 #DPRK #FBI Advisory #financial sanctions #identity theft #Insider Threat #Laptop Farms #North Korea #remote work #Silent Push
Penetration Testing Tools
The Invisible Insider: How North Korean Operatives Are Infiltrating Your Remote Teams
For years, the concept of the “insider threat” was synonymous with the disgruntled employee or the inadvertent contractor.
⤷ Title: “Natural Selection” at Work: How North Korean IT Workers Use AI to Infiltrate Companies
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Deepfakes #Background Checks #DPRK #employment fraud #identity theft #Insider Threat #North Korean IT workers #Okta Threat Intelligence #Remote Work Security #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:00:13 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Deepfakes #Background Checks #DPRK #employment fraud #identity theft #Insider Threat #North Korean IT workers #Okta Threat Intelligence #Remote Work Security #social engineering
Daily CyberSecurity
"Natural Selection" at Work: How North Korean IT Workers Use AI to Infiltrate Companies
Okta exposes North Korean IT workers using AI photos & stolen LinkedIn profiles to land remote jobs. Learn how "JJ" bypassed checks.
⤷ Title: Suspected North Korean Actors Target the Cryptocurrency Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 00:18:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS Kill Chain #Cloud Security #cryptocurrency #Ctrl_Alt_Intel #CVE_2025_55182 #cybersecurity #DPRK Hackers #infosec #Kubernetes #React2Shell #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 00:18:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS Kill Chain #Cloud Security #cryptocurrency #Ctrl_Alt_Intel #CVE_2025_55182 #cybersecurity #DPRK Hackers #infosec #Kubernetes #React2Shell #supply chain attack
Daily CyberSecurity
Suspected North Korean Actors Target the Cryptocurrency Supply Chain
Ctrl-Alt-Intel exposes a suspected DPRK campaign using an 'Amazon Kill Chain' and React2Shell to systematically breach crypto exchanges and steal code.
⤷ Title: The $800M Inside Job: OFAC Sanctions North Korean IT Network Defrauding U.S. Businesses
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 10:18:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Corporate Security #Cryptocurrency Laundering #cybersecurity #DPRK IT workers #financial fraud #infosec #Insider Threat #North Korea #OFAC Sanctions #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Mar 2026 10:18:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Corporate Security #Cryptocurrency Laundering #cybersecurity #DPRK IT workers #financial fraud #infosec #Insider Threat #North Korea #OFAC Sanctions #threat intelligence
Daily CyberSecurity
The $800M Inside Job: OFAC Sanctions North Korean IT Network Defrauding U.S. Businesses
OFAC sanctions a North Korean IT worker network and global facilitators for defrauding U.S. businesses of nearly $800M to fund the regime's WMD programs.
⤷ Title: North Korea’s “Portfolio Model” Shatters Modern Attribution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 06:30:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Andariel #Attribution Resistance #DomainTools #DPRK #infosec #Kimsuky #Lazarus Group #malware #North Korea #social engineering #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Apr 2026 06:30:52 +0000
════════════════════════
⌗ Tags: #Cyber Security #Andariel #Attribution Resistance #DomainTools #DPRK #infosec #Kimsuky #Lazarus Group #malware #North Korea #social engineering #threat intelligence
Daily CyberSecurity
North Korea’s "Portfolio Model" Shatters Modern Attribution
DomainTools exposes North Korea’s "mature portfolio model": a compartmentalized cyber strategy designed for mission specialization and attribution resistance.
⤷ Title: North Korea’s “OtterCookie” Hides Inside Benign npm Wrappers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 06:45:27 +0000
════════════════════════
⌗ Tags: #Data Leak #big.js #cybersecurity #DPRK #Famous Chollima #Infostealer #Node.js #North Korea #npm #OtterCookie #Panther #ssh backdoor #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 06:45:27 +0000
════════════════════════
⌗ Tags: #Data Leak #big.js #cybersecurity #DPRK #Famous Chollima #Infostealer #Node.js #North Korea #npm #OtterCookie #Panther #ssh backdoor #supply chain attack
Daily CyberSecurity
North Korea’s "OtterCookie" Hides Inside Benign npm Wrappers
Panther uncovers "OtterCookie," a North Korean npm campaign hiding malware in benign wrappers. It steals crypto wallets and installs SSH backdoors. Audit now!