North Korean hackers tied to the WaterPlum campaign stole more than $10.5 million by posing as AI and blockchain recruiters to target job seekers and infect their devices. The operation overlapped with North Korean IT worker schemes and used malware such as BeaverTail, InvisibleFerret, OtterCookie, OtterCandy, and StoatWaffle to steal cryptocurrency wallet credentials and maintain access. #WaterPlum #BeaverTail #InvisibleFerret #OtterCookie #OtterCandy #StoatWaffle
Keypoints
- WaterPlum stole over $10.5 million from job seekers and crypto professionals.
- The campaign used fake AI and blockchain job offers to deliver malware.
- At least 30,000 devices in 100 countries were infected.
- Victims included web designers, engineers, and cryptocurrency specialists.
- The operation was linked to North Korean IT worker and laptop farm schemes.
Read More: https://therecord.media/north-korean-hackers-infect-thousands-of-devices-waterplum-scheme