Netcrook Logo

Tag: North Korean hackers

48 article(s)

VS Code Trap: North Korean Hackers Infiltrate Developer Workspaces with StoatWaffle

24 Mar 2026 news 🌍 Asia

North Korean hackers are hijacking VS Code projects and fake interviews to deploy StoatWaffle malware, stealing credentials and targeting crypto professionals. Microsoft responds with new security measures.

#North Korean hackers | #StoatWaffle malware | #social engineering

North Korean Hackers Exploit KakaoTalk: Inside the EndRAT Social Engineering Campaign

17 Mar 2026 news 🌍 Asia

North Korean-linked hackers have launched a sophisticated campaign using spear-phishing and the KakaoTalk messaging app to distribute the EndRAT malware. By exploiting trust networks, they turn victims into unwitting accomplices, illustrating the evolving dangers of socially engineered cyberattacks.

#North Korean Hackers | #EndRAT | #Social Engineering

North Korean Hackers Exploit AirDrop to Breach Crypto Firm, Steal Millions

09 Mar 2026 news 🌍 Asia

UNC4899, a North Korean threat group, breached a cryptocurrency firm after a developer AirDropped a trojanized file to a work device. The attack exploited cloud weaknesses, DevOps workflows, and lax secrets management, resulting in millions stolen. This feature investigates the methods and lessons from the breach.

#North Korean hackers | #AirDrop vulnerability | #cryptocurrency theft

North Korean StegaBin Attack: npm Supply Chain Breach Hits JavaScript Developers

03 Mar 2026 news 🌍 Asia

A sophisticated new campaign dubbed StegaBin has compromised JavaScript developers through 26 malicious npm packages, deploying multi-stage credential stealers and a remote access trojan. Linked to North Korea’s FAMOUS CHOLLIMA group, the attack leverages text steganography and advanced persistence tactics.

#North Korean Hackers | #npm Supply-Chain | #Steganography

North Korean Hackers Use Steganography to Hide RAT in npm Packages

02 Mar 2026 news 🌍 Asia

North Korean hackers have unleashed a sophisticated attack on the npm ecosystem, hiding remote access malware inside developer packages and using steganography to mask their command infrastructure.

#North Korean hackers | #StegaBin campaign | #credential theft

North Korean Hackers Use Fake Job Repos to Infect Developers with In-Memory Malware

27 Feb 2026 news 🌍 Asia

A sophisticated cyber campaign leverages fake Next.js job repositories to lure developers into executing in-memory malware, exposing sensitive code and credentials. Microsoft links tactics to North Korean threat actors, highlighting the growing risks in developer recruitment.

#North Korean hackers | #developer malware | #job interview trap

🏴‍☠️ North Korea’s Lazarus Group Turns to Medusa Ransomware, Targeting Vulnerable Institutions Worldwide

25 Feb 2026 news 🌍 Asia

North Korea’s Lazarus Group has adopted Medusa ransomware, launching sophisticated attacks on healthcare and non-profits. This marks a new era where state-backed hackers exploit vulnerable institutions for profit.

#North Korean Hackers | #Ransomware | #Cybersecurity

Crypto Heists 2.0: How North Korean Hackers Are Reinventing Digital Theft

23 Feb 2026 news 🌍 Asia

North Korea–linked hackers have shifted from simple crypto theft to complex, AI-driven scams, insider infiltration, and even building fake projects to siphon funds. Their evolving playbook has netted billions and now poses an unprecedented threat to the global crypto ecosystem.

#North Korean hackers | #crypto theft | #social engineering

North Korean Hackers Use Fake IT Jobs and Malicious Interviews to Breach Global Companies

23 Feb 2026 news 🌍 Asia

North Korean hackers are exploiting developer hiring processes with fake interviews and IT worker personas, using advanced malware and AI-driven tradecraft to infiltrate companies, steal code, and generate sanctions-busting revenue.

#North Korean hackers | #Cybercrime syndicate | #Job interviews

Crypto Heist by Code: North Korean Hackers Lure Developers, Hijack Wallets

19 Feb 2026 news 🌍 Asia

North Korean hackers are targeting crypto developers through fake job interviews and infected code, deploying a backdoor and counterfeit MetaMask wallets to steal digital assets in a sophisticated new campaign.

#Crypto Heist | #North Korean Hackers | #Digital Wallets