North Korean hackers target crypto industry workers with new information-stealing malware

PANews June 20 news, according to Cointelegraph, Cisco Talos released a report on Wednesday saying that the North Korean hacker group "Famous Chollima" recently launched a new type of phishing attack against cryptocurrency practitioners. The organization tricked job seekers with blockchain experience in India and other places to install a Python remote control Trojan called "PylangGhost" by impersonating fake recruitment websites of companies such as Coinbase and Robinhood. The attacker induced the victim to execute malicious commands in the name of video interviews to steal wallet credentials and password manager data from more than 80 browser plug-ins such as MetaMask and TronLink. The malware has functions such as screenshots, file management, and system information collection, and has similar features to the previously discovered GolangGhost Trojan. Researchers have ruled out the possibility that the attacker used AI to generate code.

Share to:

Author: PA一线

This content is for informational purposes only and does not constitute investment advice.

Follow PANews official accounts, navigate bull and bear markets together
Recommended Reading
24 minute ago
1 hour ago
2 hour ago
3 hour ago
3 hour ago
4 hour ago

Popular Articles

Industry News
Market Trends
Curated Readings

Curated Series

App内阅读