Contagious Interview Campaign Compromises 30,000 Devices, Steals $10.71M in Crypto
AI-summarised brief · reviewed before publication
A joint cybersecurity advisory from Japan, the U.S., Australia, and Germany revealed that North Korean threat actors behind the Contagious Interview campaign have compromised at least 30,000 devices in more than 100 countries and stolen over $10.71 million in cryptocurrency from 7,000+ wallets. The attackers target web designers, engineers, and blockchain specialists by posing as recruiters on LinkedIn, then deploying malware such as BeaverTail and OtterCookie to gain remote access. The operation, linked to the 313 General Bureau, also uses laptop farms and VPN services to facilitate espionage and credential theft.
💡 Why It Matters
- · The scale of the breach exposes a sophisticated, state‑backed phishing network that not only drains crypto assets but also threatens intellectual property and corporate security, underscoring the growing reach of North Korean cyber operations.