North Korean Hackers Are Turning Developer Tools Into Malware Delivery Channels
Two malicious cyber campaigns that resemble the ongoing North Korean threat cluster known as Contagious Interview (also known as Famous Chollima, HexagonalRodent, and Void Dokkaebi) have been identified by cybersecurity researchers.
The threat actor has been discovered planning phishing attacks that use themes related to code reviews or developer role recruitment to target almost 100 companies in a variety of industries, including technology, education, banking, and cryptocurrencies, according to a research released by Proofpoint. The code for the action is UNK_DeadDrop.
According to Proofpoint researchers Saher Naumaan and Carlos Rubio, the infection chain starts with emails that contain links to actor-controlled GitHub repositories hosting malicious scripts that cause cross-platfo...


