North Korea’s Lazarus Group Masquerades as U.S. Tech Firms to Hunt Crypto Talent
Pyongyang’s cybercriminals are at it again—this time posing as Silicon Valley recruiters to infiltrate blockchain developer circles. The Lazarus Group, already sanctioned for billion-dollar crypto heists, is now dangling fake six-figure gigs at phantom U.S. companies.
How it works: Elaborate LinkedIn profiles, ’interviews’ over encrypted apps, and poisoned PDFs containing spyware. Targets report receiving job offers from what appear to be legitimate Web3 startups—until the malware payload arrives.
The irony? These operations are partly funded by the very crypto stolen in previous hacks. Nothing like using your victim’s assets to phish their colleagues—efficiency meets audacity.
Meanwhile, traditional finance firms still can’t tell a cold wallet from a Swiss bank account. Maybe they’ll notice when their ’web3 innovation taskforce’ gets drained next quarter.