Cybersecurity News

Filters
Tag
Reset

Filtered by tag: north korea × Clear

North Korean Hackers Tied to Rust Supply Chain Attack

North Korean hackers have been linked to a supply chain attack targeting the Rust programming ecosystem. Researchers identified malicious backdoors embedded in compromised Rust packages, connecting the campaign to previously documented North Korean threat actors. The attack follows a pattern of supply chain intrusions attributed to the group, raising fresh concerns about open-source package repository security.

Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack

North Korean hackers linked to Operation Dream Job have been targeting aerospace and defense companies worldwide since early 2026, using fake job offers as lures. Victims receive malicious PDF files requiring a modified viewer that executes embedded malware. Check Point Research identified the campaign as exploiting a zero-day vulnerability, continuing a long-running North Korean strategy of disguising cyberattacks as recruitment outreach.

Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers

Matched: cryptocurrency

Researchers created a fake crypto startup and hired three suspected North Korean IT workers to study their tactics. Every company device was monitored. The operation revealed red flags hiring teams can watch for: one worker claimed to live in Texas but submitted a California driver's license and a New York bank account, exposing the inconsistencies North Korean operatives typically display during onboarding.

FBI And Allies Warn of North Korean IT Workers Using Stolen Identities

Matched: Australia

The FBI, U.S. State Department, and allied nations including Japan, Canada, Germany, Australia, the UK, and South Korea have jointly warned that North Korean IT workers are infiltrating private companies using stolen identities, forged documents, and proxy networks. The advisory urges firms worldwide to strengthen hiring verification processes to detect and prevent such infiltration.

North Korean EtherHiding Campaign Targets Crypto Wallets and Developer Credentials

Matched: cryptocurrency

North Korean hackers are using fake macOS update screens to deploy malware targeting cryptocurrency wallets, browser data, and developer credentials. The campaign uses a ClickFix-style lure that makes browser pages appear broken, prompting users to run malicious commands. Entry points include routine web searches, making the attack difficult to detect.