North Korean Hackers Target Crypto Firms via Fake Zoom Calls in $300M Campaign
Security researchers report a surge in North Korean-led cyberattacks using fake Zoom meetings to steal cryptocurrency. The scheme, netting approximately $300 million to date, involves hackers posing as legitimate contacts to install wallet-draining malware.
Attackers initiate contact through messaging platforms like Telegram before transitioning to video calls. During these calls, they exploit technical issues as pretexts to deliver malicious files disguised as software updates. The malware subsequently harvests credentials and private keys.
Security Alliance (SEAL) notes the attacks occur multiple times daily, with the visual component of video calls overcoming typical user skepticism. The campaign demonstrates North Korea's continued focus on cryptocurrency theft as a revenue stream.