North Korean Hackers Use Fake Job Offers to Steal Crypto from Tech Workers
North Korean cybercriminals have been using fake job offers to infect technology workers' computers and steal cryptocurrency, compromising over 30,000 devices and generating at least $10.71 million in revenue.
The group, referred to as WaterPlum, targets web designers, software engineers, and people working in cryptocurrency and Web3. They contact victims posing as recruiters and send what appears to be a coding exercise or technical test as part of the hiring process.
However, the files contain malware that allows attackers to install remote-access tools and information stealers on the computer. This gives them ongoing access to the system even after the supposed interview is over.