TLDR North Korean hackers are utilizing blockchain technology to develop decentralized command systems. Fake job offers are a common tactic for North Korean cyberattacks. Malware like BeaverTail and OtterCookie is used for credential theft. EtherHiding malware hides payloads on public blockchains for stealth. North Korea-linked hackers are increasing their global cyberattacks using new decentralized and [...] The post North Korean Hackers Expand Global Cyberattacks Using Blockchain Tools appeared first on CoinCentral.TLDR North Korean hackers are utilizing blockchain technology to develop decentralized command systems. Fake job offers are a common tactic for North Korean cyberattacks. Malware like BeaverTail and OtterCookie is used for credential theft. EtherHiding malware hides payloads on public blockchains for stealth. North Korea-linked hackers are increasing their global cyberattacks using new decentralized and [...] The post North Korean Hackers Expand Global Cyberattacks Using Blockchain Tools appeared first on CoinCentral.

North Korean Hackers Expand Global Cyberattacks Using Blockchain Tools

TLDR

  • North Korean hackers are utilizing blockchain technology to develop decentralized command systems.
  • Fake job offers are a common tactic for North Korean cyberattacks.
  • Malware like BeaverTail and OtterCookie is used for credential theft.
  • EtherHiding malware hides payloads on public blockchains for stealth.

North Korea-linked hackers are increasing their global cyberattacks using new decentralized and evasive malware tools, according to recent reports from Cisco Talos and Google’s Threat Intelligence Group (GTIG). These campaigns target individuals and companies through fake job recruitment schemes, aiming to steal cryptocurrency, access networks, and evade detection. Researchers warn that the use of blockchain-based command systems is making these operations harder to disrupt.

Expanding Cyber Operations Using Advanced Malware

Cisco Talos has identified a North Korean threat group known as Famous Chollima, which continues to evolve its tactics and tools. The group has been observed using two related malware families named BeaverTail and OtterCookie, both developed to steal credentials and collect sensitive data. These updated variants now share functions that improve communication and efficiency during attacks.

In one case investigated by Cisco Talos, a Sri Lankan organization was indirectly affected when a job seeker was deceived into installing a malicious program as part of a fake technical test. The malware included modules for recording keystrokes and taking screenshots. The collected information was then sent to remote servers controlled by the attackers. Researchers said that this method shows how individuals can be compromised even when organizations are not direct targets.

Blockchain as a Decentralized Command System

Google’s Threat Intelligence Group reported that a North Korean-linked actor, known as UNC5342, has deployed a new malware called EtherHiding. This malware hides malicious JavaScript payloads on public blockchains. By using this approach, attackers build a decentralized command and control (C2) system that is difficult for authorities to remove.

According to GTIG, EtherHiding allows attackers to modify malware behavior remotely without relying on traditional servers. This technique reduces the chances of disruption since blockchain data cannot be easily taken down. Google researchers connected this operation to a broader campaign named Contagious Interview, where fake job offers were used to infect victims. The findings reveal that North Korean groups are integrating decentralized technology to maintain persistence across multiple operations.

Fake Recruitment Campaigns as a Primary Entry Point

Both Cisco and Google observed that these cyber operations often start with fraudulent job postings aimed at professionals in the cryptocurrency and cybersecurity industries. Victims are contacted with supposed interview offers and asked to complete fake assessments that include files embedded with malware.

The infections involve a mix of malware families such as JadeSnow, BeaverTail, and InvisibleFerret, which together enable attackers to steal credentials, deploy ransomware, and gain deeper access into systems. Researchers believe the campaigns seek both financial gain and long-term access to corporate environments for espionage and future exploitation.

Defensive Measures and Ongoing Threats

Cisco Talos and Google have released indicators of compromise (IOCs) to help organizations detect related malicious activity. These indicators include technical markers that security teams can use to monitor and block suspicious behavior linked to these campaigns.

Analysts say that the combination of social engineering and blockchain-based tools is creating new challenges for cybersecurity defense. Since public blockchains cannot be easily controlled or shut down, they are becoming a preferred infrastructure for threat actors seeking to maintain access and conceal their operations.

Researchers from both companies continue to track these campaigns and share findings with the global cybersecurity community. They recommend that organizations verify job offers carefully, restrict file downloads during hiring processes, and update monitoring systems to detect evolving malware families like BeaverTail, OtterCookie, and EtherHiding.

The post North Korean Hackers Expand Global Cyberattacks Using Blockchain Tools appeared first on CoinCentral.

Market Opportunity
Wink Logo
Wink Price(LIKE)
$0.003358
$0.003358$0.003358
+2.53%
USD
Wink (LIKE) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Will XRP Price Increase In September 2025?

Will XRP Price Increase In September 2025?

Ripple XRP is a cryptocurrency that primarily focuses on building a decentralised payments network to facilitate low-cost and cross-border transactions. It’s a native digital currency of the Ripple network, which works as a blockchain called the XRP Ledger (XRPL). It utilised a shared, distributed ledger to track account balances and transactions. What Do XRP Charts Reveal? […]
Share
Tronweekly2025/09/18 00:00
Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be

The post Why The Green Bay Packers Must Take The Cleveland Browns Seriously — As Hard As That Might Be appeared on BitcoinEthereumNews.com. Jordan Love and the Green Bay Packers are off to a 2-0 start. Getty Images The Green Bay Packers are, once again, one of the NFL’s better teams. The Cleveland Browns are, once again, one of the league’s doormats. It’s why unbeaten Green Bay (2-0) is a 8-point favorite at winless Cleveland (0-2) Sunday according to betmgm.com. The money line is also Green Bay -500. Most expect this to be a Packers’ rout, and it very well could be. But Green Bay knows taking anyone in this league for granted can prove costly. “I think if you look at their roster, the paper, who they have on that team, what they can do, they got a lot of talent and things can turn around quickly for them,” Packers safety Xavier McKinney said. “We just got to kind of keep that in mind and know we not just walking into something and they just going to lay down. That’s not what they going to do.” The Browns certainly haven’t laid down on defense. Far from. Cleveland is allowing an NFL-best 191.5 yards per game. The Browns gave up 141 yards to Cincinnati in Week 1, including just seven in the second half, but still lost, 17-16. Cleveland has given up an NFL-best 45.5 rushing yards per game and just 2.1 rushing yards per attempt. “The biggest thing is our defensive line is much, much improved over last year and I think we’ve got back to our personality,” defensive coordinator Jim Schwartz said recently. “When we play our best, our D-line leads us there as our engine.” The Browns rank third in the league in passing defense, allowing just 146.0 yards per game. Cleveland has also gone 30 straight games without allowing a 300-yard passer, the longest active streak in the NFL.…
Share
BitcoinEthereumNews2025/09/18 00:41
Bank of Canada cuts rate to 2.5% as tariffs and weak hiring hit economy

Bank of Canada cuts rate to 2.5% as tariffs and weak hiring hit economy

The Bank of Canada lowered its overnight rate to 2.5% on Wednesday, responding to mounting economic damage from US tariffs and a slowdown in hiring. The quarter-point cut was the first since March and met predictions from markets and economists. Governor Tiff Macklem, speaking in Ottawa, said the decision was unanimous. “With a weaker economy […]
Share
Cryptopolitan2025/09/17 23:09