North Korean Hackers Target Crypto Firms with Hidden Risk Malware on macOS

A threat actor with connections to the Democratic People’s Republic of Korea (DPRK) has been seen using a multi-stage malware that can infect Apple macOS systems to target cryptocurrency-related enterprises.

SentinelOne, a cybersecurity firm that named the campaign Hidden Risk, confidently attributed it to BlueNoroff, which has been connected to malware families like RustBucket, KANDYKORN, ObjCShellz, RustDoor (also known as Thiefbucket), and TodoSwift in the past.

In a post shared with The Hacker News, researchers Raffaele Sabato, Phil Stokes, and Tom Hegel said that the activity infects targets with a malicious application masquerading as a PDF file by using emails that spread false information regarding bitcoin development read more about North Korean Hackers Target Crypto Firms with Hidden Risk Malware on macOS.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *