North Korean hackers linked to WaterPlum, also known as Contagious Interview, are posing as AI companies and other employers to target job seekers, especially software developers and IT professionals. The campaign has infected more than 30,000 devices worldwide and helped move nearly $11 million in cryptocurrency to North Korea through stolen credentials and fake recruiting schemes. #WaterPlum #ContagiousInterview #NorthKorea #FBI
Keypoints
- WaterPlum actors impersonate employers to lure software developers and IT professionals.
- The group often poses as AI, cryptocurrency, or NFT companies and uses recruiting services.
- WaterPlum overlaps significantly with North Korean IT workers and shares infrastructure.
- The campaign has compromised more than 30,000 devices in over 100 countries.
- Authorities have disrupted some operations, including a laptop farm in Japan.
Read More: https://cyberscoop.com/north-korea-waterplum-job-seeker-crypto-attacks/