⤷ Title: N. Korean Hackers Use PylangGhost Malware in Fake Crypto Job Scam
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 19 Jun 2025 11:40:54 +0000
════════════════════════
⌗ Tags: #Security #Blockchain #Cryptocurrency #Malware #Scams and Fraud #Cyber Attack #Cyber Crime #Cybersecurity #Famous Chollima #GolangGhost #North Korea #PylangGhost #Python #security
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 19 Jun 2025 11:40:54 +0000
════════════════════════
⌗ Tags: #Security #Blockchain #Cryptocurrency #Malware #Scams and Fraud #Cyber Attack #Cyber Crime #Cybersecurity #Famous Chollima #GolangGhost #North Korea #PylangGhost #Python #security
Hackread
N. Korean Hackers Use PylangGhost Malware in Fake Crypto Job Scam
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: PylangGhost: North Korean APT Deploys Python-Based RAT to Target Crypto Professionals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Jun 2025 00:22:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #Blockchain #Cisco Talos #cryptocurrency #cybersecurity #Famous Chollima #GolangGhost #Job Scam #North Korea #phishing #PylangGhost #rat #Remote Access Trojan #Wagemole
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Jun 2025 00:22:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #Blockchain #Cisco Talos #cryptocurrency #cybersecurity #Famous Chollima #GolangGhost #Job Scam #North Korea #phishing #PylangGhost #rat #Remote Access Trojan #Wagemole
Daily CyberSecurity
PylangGhost: North Korean APT Deploys Python-Based RAT to Target Crypto Professionals
Recently, Cisco Talos unveiled a new Python-based remote access trojan (RAT) dubbed PylangGhost, used exclusively by a North Korean-aligned threat actor known as Famous Chollima (a.k.a. Wagemole).…
⤷ Title: North Korean Hackers Evolve Tactics with New Malware Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Sep 2025 00:05:23 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #ClickFix #Contagious Interview #cybersecurity #Famous Chollima #gitlab #InvisibleFerret #malware #North Korea #threat intelligence
Daily CyberSecurity
North Korean Hackers Evolve Tactics with New Malware Campaign
GitLab Threat Intelligence has published a detailed analysis of a new malware campaign linked to North Korean nation-state actors, marking a tactical evolution in how groups like Contagious Interv…
⤷ Title: North Korea’s Famous Chollima APT Uses Trojanized Node.js App to Deploy OtterCookie RAT for Crypto Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 17 Oct 2025 00:30:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Cryptojacking #Espionage #Famous Chollima #Node.js #North Korea APT #OtterCookie #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 17 Oct 2025 00:30:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Cryptojacking #Espionage #Famous Chollima #Node.js #North Korea APT #OtterCookie #Supply Chain
Daily CyberSecurity
North Korea’s Famous Chollima APT Uses Trojanized Node.js App to Deploy OtterCookie RAT for Crypto Theft
A new report from Cisco Talos has exposed a malware campaign linked to Famous Chollima, a North Korean threat group aligned with the Lazarus APT and known for its long-running job-themed espionage…
⤷ Title: North Korean Hackers Caught on Video Using AI Filters in Fake Job Interviews
════════════════════════
𐀪 Author: Mauro Eldritch
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 12:40:56 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Scams and Fraud #Cyber Attack #Cybersecurity #Famous Chollima #Fraud #Job Scam #Lazarus #North Korea #Privacy #Quetzal Team #Scam
════════════════════════
𐀪 Author: Mauro Eldritch
════════════════════════
ⴵ Time: Mon, 03 Nov 2025 12:40:56 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Scams and Fraud #Cyber Attack #Cybersecurity #Famous Chollima #Fraud #Job Scam #Lazarus #North Korea #Privacy #Quetzal Team #Scam
Hackread
North Korean Hackers Caught on Video Using AI Filters in Fake Job Interviews
North Korean hackers from the Famous Chollima group used AI deepfakes and stolen identities in fake job interviews to infiltrate crypto and Web3 companies.
⤷ Title: Lazarus Exposed: Real-Time Sting Tracks North Korean Hackers Recruiting Remote Employees
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 08:15:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ANY.RUN #Famous Chollima #Hiring Scam #identity theft #Lazarus Group #North Korea APT #Remote Work Security #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 08:15:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ANY.RUN #Famous Chollima #Hiring Scam #identity theft #Lazarus Group #North Korea APT #Remote Work Security #Social Engineering
Penetration Testing Tools
Lazarus Exposed: Real-Time Sting Tracks North Korean Hackers Recruiting Remote Employees
A joint investigation by BCA LTD, NorthScan, and ANY.RUN has revealed, in real time, one of North Korea’s
⤷ Title: North Korean “StegaBin” Campaign Targets Developers with Steganographic Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Mar 2026 02:53:18 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #infosec #Lazarus Group #npm Security #pastebin #Socket #StegaBin #steganography #supply chain attack #truffleHog
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Mar 2026 02:53:18 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #infosec #Lazarus Group #npm Security #pastebin #Socket #StegaBin #steganography #supply chain attack #truffleHog
Daily CyberSecurity
North Korean "StegaBin" Campaign Targets Developers with Steganographic Malware
Socket uncovers "StegaBin," a North Korean malware campaign hiding C2 URLs in Pastebin essays to steal developer secrets via 26 typosquatted npm packages.
⤷ Title: The Silent Signal: How China’s “UAT-9244” is Dismantling South American Telecom with a New Malware Triad
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 04:03:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BitTorrent malware #BruteEntry #China cyberespionage #Cisco Talos #DLL Sideloading #Famous Sparrow #PeerTime #South America #Tech News 2026 #telecommunications security #TernDoor #UAT_9244
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 04:03:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BitTorrent malware #BruteEntry #China cyberespionage #Cisco Talos #DLL Sideloading #Famous Sparrow #PeerTime #South America #Tech News 2026 #telecommunications security #TernDoor #UAT_9244
Penetration Testing Tools
The Silent Signal: How China’s "UAT-9244" is Dismantling South American Telecom with a New Malware Triad
A Chinese hacker collective has unleashed a nascent wave of cyber offensives against telecommunications conglomerates across South America.
⤷ Title: North Korea’s “OtterCookie” Hides Inside Benign npm Wrappers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 06:45:27 +0000
════════════════════════
⌗ Tags: #Data Leak #big.js #cybersecurity #DPRK #Famous Chollima #Infostealer #Node.js #North Korea #npm #OtterCookie #Panther #ssh backdoor #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Apr 2026 06:45:27 +0000
════════════════════════
⌗ Tags: #Data Leak #big.js #cybersecurity #DPRK #Famous Chollima #Infostealer #Node.js #North Korea #npm #OtterCookie #Panther #ssh backdoor #supply chain attack
Daily CyberSecurity
North Korea’s "OtterCookie" Hides Inside Benign npm Wrappers
Panther uncovers "OtterCookie," a North Korean npm campaign hiding malware in benign wrappers. It steals crypto wallets and installs SSH backdoors. Audit now!
⤷ Title: Void Dokkaebi Unmasked: The “Worm-Like” Supply Chain Threat Targeting Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:51 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain Staging #CI/CD security #Famous Chollima #GitHub Security #infosec #North Korea APT #Open Source Security #supply chain attack #TrendMicro #Void Dokkaebi #VS Code Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 23 Apr 2026 06:24:51 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain Staging #CI/CD security #Famous Chollima #GitHub Security #infosec #North Korea APT #Open Source Security #supply chain attack #TrendMicro #Void Dokkaebi #VS Code Malware
Daily CyberSecurity
Void Dokkaebi Unmasked: The “Worm-Like” Supply Chain Threat Targeting Developers
A new report from researchers at TrendMicro has exposed the evolution of Void Dokkaebi (also known as Famous Chollima), a North Korea-aligned intrusion set that has transitioned from traditional s…
⤷ Title: The AI Multiplier: How North Korea’s “HexagonalRodent” Turned ChatGPT into a $12M Crypto Heist
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 07:52:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ChatGPT #Cryptocurrency Theft #Cursor AI #Cybercrime 2026 #Expel #Famous Chollima #HexagonalRodent #malware analysis #North Korea #Social Engineering #Web3 Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 07:52:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ChatGPT #Cryptocurrency Theft #Cursor AI #Cybercrime 2026 #Expel #Famous Chollima #HexagonalRodent #malware analysis #North Korea #Social Engineering #Web3 Security
Penetration Testing Tools
The AI Multiplier: How North Korea’s "HexagonalRodent" Turned ChatGPT into a $12M Crypto Heist
Inexperienced North Korean cyber operatives have successfully exfiltrated millions of dollars in cryptocurrency over a span of several
⤷ Title: PromptMink Tricked AI Agents into Planting Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 01 May 2026 07:02:27 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Claude Opus #crypto drainer #Famous Chollima #infosec #LLMO Abuse #npm malware #PromptMink #ReversingLabs #supply chain attack #Vibe Coding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 01 May 2026 07:02:27 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Claude Opus #crypto drainer #Famous Chollima #infosec #LLMO Abuse #npm malware #PromptMink #ReversingLabs #supply chain attack #Vibe Coding
Daily CyberSecurity
PromptMink Tricked AI Agents into Planting Malware
ReversingLabs uncovers PromptMink: A DPRK campaign using LLM-generated npm packages to trick AI coding agents into installing crypto-stealing malware.
⤷ Title: The Evolutionary Stratagem of Void Dokkaebi: Analyzing the Cythonized Mutation of InvisibleFerret
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 26 May 2026 07:05:06 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail browser extension injection #code assessment social engineering #compiled pyd and so binaries #cryptocurrency wallet exfiltration #Famous Chollima developer target #InvisibleFerret Cython backdoor #Manifest V2 browser downgrade #North Korean APT defense #TrendAI threat research #Void Dokkaebi malware evasion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 26 May 2026 07:05:06 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail browser extension injection #code assessment social engineering #compiled pyd and so binaries #cryptocurrency wallet exfiltration #Famous Chollima developer target #InvisibleFerret Cython backdoor #Manifest V2 browser downgrade #North Korean APT defense #TrendAI threat research #Void Dokkaebi malware evasion
Information Security News
Void Dokkaebi Malware Evasion: Cython Backend Defeats Detection
North Korea's Void Dokkaebi campaign uses Cython to compile the InvisibleFerret backdoor into binary files, successfully bypassing legacy Python security rules.
⤷ Title: North Korea-Aligned Void Dokkaebi Evolves with Binary Obfuscation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 28 May 2026 08:36:07 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Cryptocurrency Theft #Cython Malware #developer security #Famous Chollima #InvisibleFerret #Void Dokkaebi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 28 May 2026 08:36:07 +0000
════════════════════════
⌗ Tags: #Malware #BeaverTail #Cryptocurrency Theft #Cython Malware #developer security #Famous Chollima #InvisibleFerret #Void Dokkaebi
Daily CyberSecurity
North Korea-Aligned Void Dokkaebi Evolves with Binary Obfuscation
TrendAI Research exposes the new Void Dokkaebi Cython malware campaign. Learn how InvisibleFerret uses binary compilation to evade security teams.
⤷ Title: PolinRider Supply Chain Attack Spans npm, Go, Chrome
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 08:38:34 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #Go Modules Security #North Korea Hackers #NPM Malware #PolinRider #supply chain attack
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Mon, 06 Jul 2026 08:38:34 +0000
════════════════════════
⌗ Tags: #Malware #Contagious Interview #Famous Chollima #Go Modules Security #North Korea Hackers #NPM Malware #PolinRider #supply chain attack
Information Security News
PolinRider Supply Chain Attack Spans npm, Go, Chrome
PolinRider is no longer a story about a handful of malicious npm packages. Researchers at Socket uncovered 162 malicious release artifacts spread across 108 packages and browser extensions. The ca…