#ContagiousInterview

2025-07-15

"Contagious Interview Campaign Escalates With 67 Malicious npm Packages and New Malware Loader" published by Socket. #ContagiousInterview, #NPM, #XORIndex, #DPRK, #CTI socket.dev/blog/contagious-int

2025-06-25

"Another Wave: North Korean Contagious Interview Campaign Drops 35 New Malicious npm Packages" published by Socket. #BeaverTail, #ContagiousInterview, #HexEval, #NPM, #DPRK, #CTI socket.dev/blog/north-korean-c

2025-06-25

"These North Korean phishers just don't stop" published by dazhengzhang. #ContagiousInterview, #DPRK, #CTI archive.is/LbK6h

2025-05-08

"WaterPlumが使用するマルウェアOtterCookieの機能追加" published by NTTSecurity. #OtterCookie, #WaterPlum, #ContagiousInterview, #DPRK, #CTI jp.security.ntt/tech_blog/wate

2025-05-08

"Additional Features of OtterCookie Malware Used by WaterPlum" published by NTTSecurity. #OtterCookie, #WaterPlum, #ContagiousInterview, #DPRK, #CTI jp.security.ntt/tech_blog/en-w

2025-04-28

"Now that the cat is out of the bag regarding the use of front companies like BlockNovas LLC" published by TeamCymru. #ContagiousInterview, #DPRK, #CTI archive.is/E2Hcp

2025-04-28
⚯ Michel de Cryptadamus ⚯cryptadamist@universeodon.com
2025-04-25

good thing the US is gutting beneficial ownership regulations that would make it easier to understand who actually owns US trusts and corporations while simultaneously trashing both crypto enforcement at the DOJ but also more generally cyber defense

"The companies, Blocknovas LLC and Softglide LLC, were set up in the states of #NewMexico and New York using fake personas and addresses."

* Reuters: reuters.com/sustainability/boa
* Technical details from Silent Push: silentpush.com/blog/contagious

#DPRK #NorthKorea #hackers #crypto #cybersecurity #infosec #uspol #Nypol #newyork #uspolitics #contagiousInterview #Github #lazarusGroup

2025-04-24

"Contagious Interview (DPRK) Launches a New Campaign Creating Three Front Companies to Deliver a Trio of Malware" published by Silentpush. #BeaverTail, #ContagiousInterview, #InvisibleFerret, #OtterCookie, #FamousChollima, #ClickFix, #DPRK, #CTI silentpush.com/blog/contagious

2025-04-12

"Interview with the Chollima" published by BirminghamCyber. #ContagiousInterview, #OtterCookie, #DPRK, #CTI quetzal.bitso.com/p/interview-

2025-04-06

"Lazarus Expands Malicious npm Campaign: 11 New Packages Add Malware Loaders and Bitbucket Payloads" published by Socket. #BeaverTail, #ContagiousInterview, #Lazarus, #NPM, #DPRK, #CTI socket.dev/blog/lazarus-expand

2025-03-31

"From Contagious to ClickFake Interview: Lazarus leveraging the ClickFix tactic" published by SEKOIA. #ClickFix, #ContagiousInterview, #GolangGhost, #Lazarus, #FrostyFerret, #DPRK, #CTI blog.sekoia.io/clickfake-inter

2025-03-14

"I just got a scam attempt by a Linkedin "recruiter"" published by Bruno. #ContagiousInterview, #DPRK, #CTI archive.md/yJ5iY

2025-03-14

"Another day another North Korean scammer" published by dazhengzhang. #ContagiousInterview, #DPRK, #CTI archive.is/WxtB0

2025-03-03

"Astrill VPN: Silent Push Publicly Releases New IPs on VPN Service Heavily Used by North Korean Threat Actors" published by Silentpush. #ContagiousInterview, #FamousChollima, #DPRK, #CTI silentpush.com/blog/astrill-vp

2025-02-26

"RustDoor and Koi Stealer for macOS Used by North Korea-Linked Threat Actor to Target the Cryptocurrency Sector" published by PaloaltoNetworks. #ContagiousInterview, #Koi, #RustDoor, #macOS, #AlluringPisces, #DPRK, #CTI unit42.paloaltonetworks.com/ma

2025-02-20

"DPRK DriverEasy & ChromeUpdate Deep Dive" published by Kandji. #ContagiousInterview, #DriverEasy, #DPRK, #CTI kandji.io/blog/drivereasy

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst