North Korean Hacking Group Steals $10.7 Million Through Fake Crypto Recruitment
A North Korean hacking group called WaterPlum has stolen at least $10.7 million by tricking job seekers into installing malware under the guise of recruitment for legitimate crypto and AI companies.
The campaign, which targeted software developers and IT professionals across multiple countries, combined fake hiring workflows with malicious files that granted attackers remote access to victims' systems, enabling the theft of cryptocurrency and other sensitive information.
According to a joint cyber advisory issued by authorities in Japan, Germany, Australia, and the United States, WaterPlum used fake recruiter identities and recruitment services to impersonate real crypto, blockchain, AI, and Web3 companies.