BeyondMachines :verified:<p>North Korean hackers deploy malware during technical job interview via malicious software packages</p><p>North Korean state-sponsored threat actors are using malicious npm packages to deploy malware through the "Contagious Interview" campaign, which poses as fake job opportunities on LinkedIn to target developers and cryptocurrency holders. The malicious packages steal cryptocurrency wallets, browser data, and install backdoors.</p><p>**Never install "interview tools" or npm packages directly on your main computer - always use a virtual machine or isolated environment for any software a potential employer asks you to test. Before installing anything, verify the hiring organization by independently checking their website and public media, cross-reference to google maps and ask for other experiences on Reddit.**<br><a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> <a href="https://infosec.exchange/tags/scam" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>scam</span></a> <a href="https://infosec.exchange/tags/phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>phishing</span></a> <a href="https://infosec.exchange/tags/activephishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>activephishing</span></a><br><a href="https://beyondmachines.net/event_details/north-korean-hackers-deploy-malware-during-technical-job-interview-via-malicious-software-packages-x-r-l-4-t/gD2P6Ple2L" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">beyondmachines.net/event_detai</span><span class="invisible">ls/north-korean-hackers-deploy-malware-during-technical-job-interview-via-malicious-software-packages-x-r-l-4-t/gD2P6Ple2L</span></a></p>