North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle Malware

North Korean hackers exploit VS Code tasks.json auto-run since Dec 2025 to deploy StoatWaffle malware, stealing data and enabling remote control.

The Hacker News
North Korean Hackers Deploy BeaverTail–OtterCookie Combo for Keylogging Attacks

Researchers at Cisco Talos have uncovered a sophisticated campaign by the Famous Chollima subgroup of Lazarus, wherein attackers deploy blended JavaScript tools.

GBHackers Security | #1 Globally Trusted Cyber Security News Platform

North Korean hackers are taking stealth to a new level: embedding malware into blockchain smart contracts and tricking devs with fake job interviews. Are we ready for a world where your next code review could be a trap?

https://thedefendopsdiaries.com/north-korean-hackers-leverage-etherhiding-malware-distribution-via-blockchain-smart-contracts/

#etherhiding
#northkoreanhackers
#blockchainsecurity
#malwaredistribution
#smartcontracts
#cyberthreats
#socialengineering
#infosec

North Korean Hackers Target Web3 with Nim Malware and Use ClickFix in BabyShark Campaign

North Korean cyber group targets Web3 businesses with Nim-based malware, exploiting AppleScript and Telegram for persistent attacks.

The Hacker News
North Korean Hackers Deploy Malware Using Weaponized Calendly and Google Meet Links

The North Korean state-sponsored threat actor group, identified as TA444, has unleashed a sophisticated malware campaign.

GBHackers Security | #1 Globally Trusted Cyber Security News Platform

A Zoom call that feels too real? North Korean hackers are now using deepfakes of execs to trick macOS users into installing malware. Ever seen cybercrime get this smart?

https://thedefendopsdiaries.com/north-korean-hackers-use-deepfakes-to-target-macos-users/

#northkoreanhackers
#deepfakes
#macossecurity
#cybersecuritythreats
#bluenoroff

🚀🤡 If you believe this crypto-heist tale by WSJ, North Korean hackers are apparently the unsung heroes keeping their regime afloat. The only thing more impressive than their hacking skills is WSJ's ability to make every article feel like a broken record stuck on repeat. 🙄💰
https://www.wsj.com/world/asia/north-korea-cryptocurrency-580d7d3f #cryptoheist #NorthKoreanHackers #WSJnews #hackingtalent #satire #HackerNews #ngated
North Korean hackers adopt ClickFix attacks to target crypto firms

The notorious North Korean Lazarus hacking group has reportedly adopted 'ClickFix' tactics to deploy malware targeting job seekers in the cryptocurrency industry, particularly centralized finance (CeFi).

BleepingComputer
KoSpy: Unmasking the North Korean Spyware Threat

Discover KoSpy, a North Korean spyware infiltrating Android devices via Google Play, posing significant cybersecurity threats.

The DefendOps Diaries
Moonstone Sleet's Shift to Ransomware-as-a-Service: A New Era in Cyber Threats

Moonstone Sleet shifts to RaaS, marking a new era in cyber threats with financial motives driving North Korean hacking strategies.

The DefendOps Diaries