North Korean threat actors are using a new malware called OtterCookie as part of their ongoing Contagious Interview campaign. The malware is delivered through social engineering tactics where hackers are posing as recruiters to lure developers. This campaign is financially motivated and targets a wide range of organizations for financial gain. The campaign is designed to compromise systems and steal sensitive data. The attackers use phishing emails and various other techniques to deploy the malware.
The North Korean hacking group TraderTraitor, also known as Jade Sleet, UNC4899, and Slow Pisces, is identified as the perpetrator behind the $308 million cryptocurrency theft from Japanese exchange DMM Bitcoin. The group, which is a cryptocurrency-focused element within the Reconnaissance General Bureau, primarily targets blockchain-related companies. The attackers used social engineering techniques to infiltrate the target. They have been known to use supply chain attacks to install malware.