EddieJayonCrypto
6 Apr 25
A recent cybersecurity report by Sekoia revealed that the Lazarus Group, a North Korea-linked hacking group, is using a new tactic called "ClickFix" to target job seekers in the cryptocurrency sector, particularly within centralized finance (CeFi). This approach involves impersonating major crypto f...
A recent cybersecurity report by Sekoia revealed that the Lazarus Group, a North Korea-linked hacking group, is using a new tactic called "ClickFix" to target job seekers in the cryptocurrency sector, particularly within centralized finance (CeFi). This approach involves impersonating major crypto firms to lure candidates with fake interview invitations, leading to the download of malware through PowerShell commands. The report also attributes a $1.5 billion attack on Bybit to the Lazarus Group, where hackers used fake job offers to install tainted trading software. The group's evolving tactics demonstrate increased sophistication in social engineering and targeting criteria, expanding beyond technical professionals to individuals handling sensitive data. Despite the emergence of ClickFix, Sekoia reported that the original Contagious Interview campaign remains active, indicating the group's continued testing and deployment of different strategies. The FBI officially attributed the Bybit attack to the Lazarus Group, highlighting the group's ongoing impact on the cybersecurity landscape.