North Korean 'Contagious Interview' Targets Crypto Firms
North Korean 'Contagious Interview' Targets Crypto Firms

North Korean 'Contagious Interview' Targets Crypto Firms

News summary

A North Korean hacking subgroup within the Lazarus Group, known as 'Contagious Interview,' targeted the crypto industry by establishing fake U.S. companies like Blocknovas LLC and Softglide LLC, as well as at least one foreign-linked entity, Angeloper Agency. These shell firms used fabricated identities, addresses, and both AI-generated and stolen images to create deceptive job postings and lure cryptocurrency developers into fake interviews. Victims were tricked into downloading malware disguised as onboarding materials or instructed to submit videos, which facilitated the delivery of strains like BeaverTail, InvisibleFerret, and OtterCookie. The malware enabled data theft, credential compromise, and gave hackers remote access to victim systems for follow-up attacks. The FBI responded by seizing the Blocknovas domain in a broader crackdown on North Korean cyber threats violating U.S. and UN sanctions. These operations are part of North Korea's ongoing campaign to fund its weapons programs through cyber-enabled financial theft.

Story Coverage
Bias Distribution
100% Center
Information Sources
68e7fc5e-537b-4887-b796-fbd29c315618813f7e30-3236-487b-95e1-6bf60d395e10a3544a73-dab3-486d-ae75-bd4d15f01f55
Center 100%
Coverage Details
Total News Sources
3
Left
0
Center
3
Right
0
Unrated
0
Last Updated
2 hours ago
Bias Distribution
100% Center
Related News
Daily Index

Negative

24Serious

Neutral

Optimistic

Positive

Ask VT AI
Story Coverage
Subscribe

Stay in the know

Get the latest news, exclusive insights, and curated content delivered straight to your inbox.

Present

Gift Subscriptions

The perfect gift for understanding
news from all angles.

Related News
Recommended News