mastodon.world is one of the many independent Mastodon servers you can use to participate in the fediverse.
Generic Mastodon server for anyone to use.

Server stats:

9.8K
active users

#LazarusGroup

3 posts3 participants0 posts today
Continued thread

2/ ...and it just so happens that #PaloAlto released a long investigation into a newer and less well known North Korean crypto operation called "Slow Pisces" and/or "Jade Sleet" at the same time.

This time the #DRPK's crypto thieves pose as recruiters on LinkedIn and try to lure developers into doing various coding challenges hosted on #GitHub as part of a job interview. Doing a challenge leads to infection with custom Python #malware.

unit42.paloaltonetworks.com/sl

Unit 42 · Slow Pisces Targets Developers With Coding Challenges and Introduces New Customized Python MalwareBy Prashil Pattni

1/ Deep dive case study of the kind of open source contributions and #GitHub astroturfing that North Korean hackers employ to try get jobs as devs at crypto companies, this time in an attempt to infiltrate #onlyDust.

tl;dr DPRK hackers use contributions to FOSS projects to build cred, after which, armed with AI video avatars, they try to leverage the cred into success in interviews for blockchain development jobs.

I've said it before but i'll say it again: the one real upside of crypto is that the industry draws close to 100% of the incoming fire from sophisticated #DPRK threat actors like Lazarus Group who would otherwise be hacking banks.

ketman.org/dprk-it-workers-in-

🚨 OKX Suspends DEX Aggregator Amid Security Concerns 🚨
OKX has temporarily halted its DEX aggregator to prevent misuse by Lazarus Group after regulatory consultations. Will this move enhance security?

#OKX #CryptoSecurity #LazarusGroup #DeFi #dexaggregator

cryptosnewss.com/okx-suspends-

OKX
cryptosnewss.com · OKX Suspends DEX Aggregator to Prevent Misuse by Lazarus GroupBy Bhavesh Parmar

#ZachXBT is probably world's greatest crypto detective. He's pro-crypto but has busted a *ton* of frauds and scams.

Recently he's been working on tracking #NorthKorea's massive money laundering operation in the wake of the #Bybit hack and seems to have concluded that the entire crypto industry is fucked (which some of us have known all along).

* Telegram link: t.co/7Fi2sk1cqF