⤷ Title: XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:26:06 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cybersecurity #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Socket #supply chain attack #XORIndex
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:26:06 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cybersecurity #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Socket #supply chain attack #XORIndex
Daily CyberSecurity
XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
North Korean APTs are using XORIndex malware in a new npm supply chain attack, infiltrating developers via 67 malicious packages to steal crypto wallets and credentials.
⤷ Title: SentinelLABS Reveals How North Korean “Contagious Interview” Operators Abuse Threat Intel Platforms
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Sep 2025 02:18:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ClickFix #Contagious Interview #cryptocurrency #CTI #Cyber Threat Intelligence #Cybercrime #Lazarus Group #North Korea #SentinelLABS #Validin
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 05 Sep 2025 02:18:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ClickFix #Contagious Interview #cryptocurrency #CTI #Cyber Threat Intelligence #Cybercrime #Lazarus Group #North Korea #SentinelLABS #Validin
Daily CyberSecurity
SentinelLABS Reveals How North Korean “Contagious Interview” Operators Abuse Threat Intel Platforms
A new report reveals that the Lazarus Group is actively monitoring CTI platforms to evade detection and sustain a ClickFix phishing campaign against the cryptocurrency sector.
⤷ Title: North Korean Hackers Evolve Tactics with New Malware Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
Daily CyberSecurity
North Korean Hackers Evolve Tactics with New Malware Campaign
GitLab Threat Intelligence has published a detailed analysis of a new malware campaign linked to North Korean nation-state actors, marking a tactical evolution in how groups like Contagious Interv…
⤷ Title: North Korean APT “Contagious Interview” Floods npm Registry with 338 Malicious Packages to Steal Crypto
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 11 Oct 2025 10:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BeaverTail #Contagious Interview #InvisibleFerret #North Korea #npm #supply chain attack #Typosquatting #Web3
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 11 Oct 2025 10:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BeaverTail #Contagious Interview #InvisibleFerret #North Korea #npm #supply chain attack #Typosquatting #Web3
Daily CyberSecurity
North Korean APT "Contagious Interview" Floods npm Registry with 338 Malicious Packages to Steal Crypto
North Korean actors launched "Contagious Interview," flooding npm with 338 malicious packages to deliver BeaverTail/InvisibleFerret. The campaign targets Web3 developers via fake job offers.
⤷ Title: North Korea’s WaterPlum APT Deploys Node.js OtterCandy RAT for Crypto Theft with Anti-Forensic Module
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:17:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #anti_forensics #Contagious Interview #Crypto theft #Node.js #North Korea APT #OtterCandy #rat #WaterPlum
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:17:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #anti_forensics #Contagious Interview #Crypto theft #Node.js #North Korea APT #OtterCandy #rat #WaterPlum
Daily CyberSecurity
North Korea’s WaterPlum APT Deploys Node.js OtterCandy RAT for Crypto Theft with Anti-Forensic Module
NTT exposed WaterPlum APT's multi-platform OtterCandy RAT (v2), which uses Node.js for remote control, targets 7 browser extensions, and now includes anti-forensic trace deletion.
⤷ Title: North Korea’s Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
Daily CyberSecurity
North Korea's Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
NVISO exposed the Contagious Interview APT using JSON Keeper and npoint.io as covert C2 channels. The North Korean group uses fake job lures on GitLab to deploy BeaverTail to steal Web3 credentials.
⤷ Title: North Korea’s “Contagious Interview” Floods npm with 200 New Packages, Using Fake Crypto Jobs to Deploy OtterCookie Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:13:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #BeaverTail #Contagious Interview #Job Scam #North Korea APT #NPM Supply Chain #OtterCookie #Typosquatting #Web3 Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:13:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #BeaverTail #Contagious Interview #Job Scam #North Korea APT #NPM Supply Chain #OtterCookie #Typosquatting #Web3 Theft
Daily CyberSecurity
North Korea's "Contagious Interview" Floods npm with 200 New Packages, Using Fake Crypto Jobs to Deploy OtterCookie Spyware
North Korean APTs added 197 malicious npm packages to the "Contagious Interview" campaign. The operation uses fake crypto job assignments to deploy the OtterCookie/BeaverTail hybrid to steal credentials cross-platform.
⤷ Title: N. Korea’s Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
Penetration Testing Tools
N. Korea's Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
North Korea’s Contagious Interview malware campaign continues to escalate its pressure on the JavaScript-development ecosystem. Threat actors affiliated
⤷ Title: NK Hackers Push 200 Malicious npm Packages with OtterCookie Malware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 16:34:09 +0000
════════════════════════
⌗ Tags: #Malware #Security #BeaverTail #Contagious Interview #Cyber Attack #Cybersecurity #Lazarus #North Korea #NPM #OtterCookie
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 16:34:09 +0000
════════════════════════
⌗ Tags: #Malware #Security #BeaverTail #Contagious Interview #Cyber Attack #Cybersecurity #Lazarus #North Korea #NPM #OtterCookie
Hackread
NK Hackers Push 200 Malicious npm Packages with OtterCookie Malware
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: “Contagious Interview” Goes macOS: North Korean Hackers Deploy Stealthy “DriverFixer” Stealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 00:06:47 +0000
════════════════════════
⌗ Tags: #Malware #Apple Security #Contagious Interview #credential stealer #cyber_espionage #DriverFixer0428 #Dropbox C2 #macOS Malware #North Korea #Sandbox Evasion #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 25 Dec 2025 00:06:47 +0000
════════════════════════
⌗ Tags: #Malware #Apple Security #Contagious Interview #credential stealer #cyber_espionage #DriverFixer0428 #Dropbox C2 #macOS Malware #North Korea #Sandbox Evasion #social engineering
Daily CyberSecurity
“Contagious Interview” Goes macOS: North Korean Hackers Deploy Stealthy “DriverFixer” Stealer
A notorious North Korean cyber-espionage campaign known for targeting job seekers has expanded its arsenal with a sophisticated new tool aimed specifically at macOS users. A new analysis by securi…