• Bitcoin Surpasses Gold as Top Reserve Asset in…
  • Guatemala’s largest bank integrates blockchain for cross-border payments
  • VanEck Unveils Avalanche-Focused Digital Asset Fund Backing Real-World…
  • Bitcoin Nears ATH, But Retail Interest Lags Behind
  • Bitcoin Surpasses Gold as Top Reserve Asset in…
  • Guatemala’s largest bank integrates blockchain for cross-border payments
  • VanEck Unveils Avalanche-Focused Digital Asset Fund Backing Real-World…
  • Bitcoin Nears ATH, But Retail Interest Lags Behind
  • Bitcoin Surpasses Gold as Top Reserve Asset in…
  • Guatemala’s largest bank integrates blockchain for cross-border payments
  • VanEck Unveils Avalanche-Focused Digital Asset Fund Backing Real-World…
  • Bitcoin Nears ATH, But Retail Interest Lags Behind
Lets Talk Web3 Your trusted source for all things Web3
  • Latest Post
    • Bitcoin News
    • Ethereum News
    • Altcoin News
    • Blockchain News
  • About Us
  • AI News
  • Press Release
  • NFT News
  • Market Analysis
☰
Lets Talk Web3

We also offer the following services:

👉Global Media Coverage: We secure top-tier media placements worldwide. Need specific media houses? Let’s discuss your targets.
👉Content Strategies & Management: From crafting compelling narratives to managing your content, we ensure your message resonates.
👉Shilling Services: Drive constant visibility with strategic Twitter and Binance Square posts.
👉Organic Engagement Boosters: Amplify your presence on Twitter and Telegram with authentic, organic engagement.
👉Exchange Listings: We facilitate smooth and strategic exchange listings to help you reach the right markets.
👉Performance Marketing: Target Web3-focused websites with precision marketing that delivers results.
👉KOL (Key Opinion Leader) Partnerships: With connections to over 5,000 KOLs across various platforms, we can craft a strategy that suits your audience and goals.

Block a time here- https://lnkd.in/g7iCgq_b or email at Contact@letstalkweb3.com

North Korean hackers target crypto devs with fake recruitment tests

Nitin Gupta April 17, 2025
North Korean hackers target crypto devs with fake recruitment tests
Nitin Gupta Founder of LetsTalkWeb3.com, a full fledged media house for everything Web3.…
8 views 4 mins 0 Comments



North Korean hackers linked to the $1.4 billion Bybit exploit are reportedly targeting crypto developers using fake recruitment tests infected with malware. 

Cybersecurity outlet The Hacker News reported that crypto developers have received coding assignments from malicious actors posing as recruiters. The coding challenges have reportedly been used to deliver malware to unsuspecting developers.

Malicious actors approach crypto developers on LinkedIn and tell them about fraudulent career opportunities. Once they convince the developer, the hackers send a malicious document containing the details of a coding challenge on GitHub. If opened, the file installs stealer malware capable of compromising the victim’s system.

The scam is reportedly run by a North Korean hacking group known as Slow Pisces, also referred to as Jade Sleet, Pukchong, TraderTraitor and UNC4899. 

Cybersecurity professionals warn of fraudulent job offers 

Hakan Unal, senior security operations center lead at security firm Cyvers, told Cointelegraph that the hackers often want to steal developer credentials and access codes. He said these actors often look for cloud configurations, SSH keys, iCloud Keychain, system and app metadata, and wallet access. 

Luis Lubeck, service project manager at security firm Hacken, told Cointelegraph that they also try to access API keys or production infrastructure. 

Lubeck said that the main platform used by these malicious actors is LinkedIn. However, the Hacken team observed hackers using freelance marketplaces like Upwork and Fiverr as well.

“Threat actors pose as clients or hiring managers offering well-paid contracts or tests, particularly in the DeFi or security space, which feels credible to devs,” Lubeck added. 

Hayato Shigekawa, principal solutions architect at Chainalysis, told Cointelegraph that the hackers often create “credible-looking” employee profiles on professional networking websites and match them with resumes that reflect their fake positions. 

They make all this effort to ultimately gain access to the Web3 company that employs their targeted developer. “After gaining access to the company, the hackers identify vulnerabilities, which ultimately can lead to exploits,” Shigekawa added. 

Related: Ethical hacker intercepts $2.6M in Morpho Labs exploit

Be wary of unsolicited developer gigs

Hacken’s onchain security researcher Yehor Rudytsia noted that attackers are becoming more creative, imitating bad traders to clean funds and utilizing psychological and technical attack vectors to exploit security gaps. 

“This makes developer education and operational hygiene just as important as code audits or smart contract protections,” Rudytsia told Cointelegraph. 

Unal told Cointelegraph that some of the best practices developers can adapt to avoid falling victim to such attacks include using virtual machines and sandboxes for testing, verifying job offers independently and not running code from strangers. 

The security professional added that crypto developers must avoid installing unverified packages and use good endpoint protection. 

Meanwhile, Lubeck recommended reaching out to official channels to verify recruiter identities. He also suggested avoiding storing secrets in plain text format.

“Be extra cautious with ‘too-good-to-be-true’ gigs, especially unsolicited ones,” Lubeck added. 

Magazine: Your AI ‘digital twin’ can take meetings and comfort your loved ones



Source link

TAGS:
PREVIOUS
MapleStory Universe Launches Henesys Chain
NEXT
Bitcoin’s hashrate hits record high amid miner sell-offs
Comments are closed.

With a global network of contributors, LetsTalkWeb3 is committed to providing high-quality content that serves both newcomers and seasoned professionals. Whether you’re an investor, developer, or simply curious about the future of the internet, LetsTalkWeb3 is your trusted source for all things Web3

Scroll To Top
  • Home
  • About Us
  • AI News
  • Press Release
  • NFT News
  • Market Analysis
© Copyright 2025 - Lets Talk Web3 . All Rights Reserved
bitcoin
Bitcoin (BTC) $ 107,175.72
ethereum
Ethereum (ETH) $ 2,545.79
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.37
bnb
BNB (BNB) $ 655.26
solana
Solana (SOL) $ 169.76
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.227936
cardano
Cardano (ADA) $ 0.755105
tron
TRON (TRX) $ 0.270984
bitcoin
Bitcoin (BTC) $ 107,175.72
ethereum
Ethereum (ETH) $ 2,545.79
tether
Tether (USDT) $ 1.00
xrp
XRP (XRP) $ 2.37
bnb
BNB (BNB) $ 655.26
solana
Solana (SOL) $ 169.76
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.227936
cardano
Cardano (ADA) $ 0.755105
tron
TRON (TRX) $ 0.270984