North Korea’s Lazarus Group Targets Crypto Developers with Fake US Firms
North Korea’s state-backed Lazarus Group has registered fictitious US companies to distribute malware to cryptocurrency developers under the guise of job recruitment. The hackers embedded malicious code in coding tests sent through legitimate platforms like LinkedIn, Upwork, and Telegram.
US authorities confirm the campaign is part of North Korea’s broader effort to fund its sanctioned weapons program. The FBI-supported investigation reveals Lazarus used these fake entities to launch targeted attacks on blockchain professionals, highlighting the growing sophistication of state-sponsored cyber threats in the crypto space.