⤷ Title: North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 17 Feb 2025 01:58:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Astrill VPN #BeaverTail #InvisibleFerret #OtterCookie #PurpleBravo
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Mon, 17 Feb 2025 01:58:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Astrill VPN #BeaverTail #InvisibleFerret #OtterCookie #PurpleBravo
Daily CyberSecurity
North Korea’s IT Worker Scam: How the Regime Infiltrates Global Tech Firms for Cyber Espionage
Uncover the dangers of North Korea’s IT worker scam. Learn how it threatens global tech with espionage and fraud.
⤷ Title: Lazarus Group Hid Backdoor in Fake npm Packages in Latest Attack
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 12 Mar 2025 00:15:21 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #backdoor #Cyber Attack #Cybersecurity #InvisibleFerret #Lazarus #North Korea
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 12 Mar 2025 00:15:21 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Malware #backdoor #Cyber Attack #Cybersecurity #InvisibleFerret #Lazarus #North Korea
Hackread
Lazarus Group Hid Backdoor in Fake npm Packages in Latest Attack
Follow us on Bluesky, Twitter (X) and Facebook at @Hackread
⤷ Title: North Korean APT ‘Contagious Interview’ Launches Fake Crypto Companies to Spread Malware Trio
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
Daily CyberSecurity
North Korean APT 'Contagious Interview' Launches Fake Crypto Companies to Spread Malware Trio
Silent Push uncovers Lazarus Group's campaign using fake crypto job offers to spread malware (BeaverTail, InvisibleFerret, OtterCookie), targeting job seekers.
⤷ Title: North Korean APT Launches Massive npm Supply Chain Attack: Typosquatting & Fake Jobs Steal Crypto from Devs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:42:52 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Crypto Theft #cybersecurity #developers #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Social Engineering #supply chain attack #Typosquatting
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:42:52 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Crypto Theft #cybersecurity #developers #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Social Engineering #supply chain attack #Typosquatting
Penetration Testing Tools
North Korean APT Launches Massive npm Supply Chain Attack: Typosquatting & Fake Jobs Steal Crypto from Devs
North Korean APTs are using 35 typosquatted npm packages and fake job offers to spread HexEval, BeaverTail, and InvisibleFerret malware, stealing crypto and data from developers.
⤷ Title: XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:26:06 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cybersecurity #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Socket #supply chain attack #XORIndex
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 15 Jul 2025 00:26:06 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cybersecurity #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Socket #supply chain attack #XORIndex
Daily CyberSecurity
XORIndex: North Korea’s Evolving Supply Chain Malware Targets npm Ecosystem Again
North Korean APTs are using XORIndex malware in a new npm supply chain attack, infiltrating developers via 67 malicious packages to steal crypto wallets and credentials.
⤷ Title: North Korean Hackers Evolve Tactics with New Malware Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
Daily CyberSecurity
North Korean Hackers Evolve Tactics with New Malware Campaign
GitLab Threat Intelligence has published a detailed analysis of a new malware campaign linked to North Korean nation-state actors, marking a tactical evolution in how groups like Contagious Interv…
⤷ Title: North Korean APT “Contagious Interview” Floods npm Registry with 338 Malicious Packages to Steal Crypto
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 11 Oct 2025 10:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BeaverTail #Contagious Interview #InvisibleFerret #North Korea #npm #supply chain attack #Typosquatting #Web3
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 11 Oct 2025 10:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BeaverTail #Contagious Interview #InvisibleFerret #North Korea #npm #supply chain attack #Typosquatting #Web3
Daily CyberSecurity
North Korean APT "Contagious Interview" Floods npm Registry with 338 Malicious Packages to Steal Crypto
North Korean actors launched "Contagious Interview," flooding npm with 338 malicious packages to deliver BeaverTail/InvisibleFerret. The campaign targets Web3 developers via fake job offers.
⤷ Title: North Korea’s UNC5342 APT Uses EtherHiding to Store Malware in Blockchain Smart Contracts for Stealthy C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:10:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Blockchain #C2 #Crypto theft #EtherHiding #InvisibleFerret #North Korea APT #Smart Contract #UNC5342
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 00:10:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Blockchain #C2 #Crypto theft #EtherHiding #InvisibleFerret #North Korea APT #Smart Contract #UNC5342
Daily CyberSecurity
North Korea's UNC5342 APT Uses EtherHiding to Store Malware in Blockchain Smart Contracts for Stealthy C2
Google exposed UNC5342 (DPRK APT) using EtherHiding—hiding JADESNOW/INVISIBLEFERRET malware in BNB/Ethereum smart contracts—for a resilient, nation-state C2 infrastructure.
⤷ Title: North Korea’s Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
Daily CyberSecurity
North Korea's Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
NVISO exposed the Contagious Interview APT using JSON Keeper and npoint.io as covert C2 channels. The North Korean group uses fake job lures on GitLab to deploy BeaverTail to steal Web3 credentials.
⤷ Title: The Invisible Switch: North Korean Hackers Use “Contagious Interviews” to Trojanize Your MetaMask
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 04:59:27 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Chrome Security #Contagious Interview #Crypto Theft #Developer Security #InvisibleFerret #malware #MetaMask #North Korea #OtterCookie #Secure Preferences #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 20 Feb 2026 04:59:27 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Chrome Security #Contagious Interview #Crypto Theft #Developer Security #InvisibleFerret #malware #MetaMask #North Korea #OtterCookie #Secure Preferences #Tech News 2026
Penetration Testing Tools
The Invisible Switch: North Korean Hackers Use "Contagious Interviews" to Trojanize Your MetaMask
North Korean cyber-adversaries are endeavoring to surreptitiously supplant the MetaMask cryptocurrency wallet extension directly upon a victim’s workstation—an
⤷ Title: Inside “HexagonalRodent”: The AI-Powered DPRK Syndicate Hauling Millions in Crypto
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 01:00:01 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Cybercrime #BeaverTail #Crypto Malware #DPRK #Expel Research #Fake Job Scam #HexagonalRodent #InvisibleFerret #OtterCookie #VS Code Vulnerability #Web3 security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 27 Apr 2026 01:00:01 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Cybercrime #BeaverTail #Crypto Malware #DPRK #Expel Research #Fake Job Scam #HexagonalRodent #InvisibleFerret #OtterCookie #VS Code Vulnerability #Web3 security
Daily CyberSecurity
Inside "HexagonalRodent": The AI-Powered DPRK Syndicate Hauling Millions in Crypto
North Korean group HexagonalRodent stole millions in Q1 2026 using AI-generated lures and backdoored VS Code tasks. Protect your Web3 wallet now.
⤷ Title: The Evolutionary Stratagem of Void Dokkaebi: Analyzing the Cythonized Mutation of InvisibleFerret
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 26 May 2026 07:05:06 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail browser extension injection #code assessment social engineering #compiled pyd and so binaries #cryptocurrency wallet exfiltration #Famous Chollima developer target #InvisibleFerret Cython backdoor #Manifest V2 browser downgrade #North Korean APT defense #TrendAI threat research #Void Dokkaebi malware evasion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 26 May 2026 07:05:06 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail browser extension injection #code assessment social engineering #compiled pyd and so binaries #cryptocurrency wallet exfiltration #Famous Chollima developer target #InvisibleFerret Cython backdoor #Manifest V2 browser downgrade #North Korean APT defense #TrendAI threat research #Void Dokkaebi malware evasion
Information Security News
Void Dokkaebi Malware Evasion: Cython Backend Defeats Detection
North Korea's Void Dokkaebi campaign uses Cython to compile the InvisibleFerret backdoor into binary files, successfully bypassing legacy Python security rules.
⤷ Title: North Korea-Aligned Void Dokkaebi Evolves with Binary Obfuscation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 28 May 2026 08:36:07 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Cryptocurrency Theft #Cython Malware #developer security #Famous Chollima #InvisibleFerret #Void Dokkaebi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 28 May 2026 08:36:07 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Cryptocurrency Theft #Cython Malware #developer security #Famous Chollima #InvisibleFerret #Void Dokkaebi
Daily CyberSecurity
North Korea-Aligned Void Dokkaebi Evolves with Binary Obfuscation
TrendAI Research exposes the new Void Dokkaebi Cython malware campaign. Learn how InvisibleFerret uses binary compilation to evade security teams.