North Korean hackers target US AI, crypto job applicants with fake listing platforms

Source Cryptopolitan

North Korean hackers are now creating fake job application platforms to pick out applicants to major United States artificial intelligence and crypto firms, researchers have uncovered. While the hackers have been at it for years, the researchers claimed that they have added a new twist to their operations.

According to security outfit Validin, which uncovered the new twist to their operations, North Korean hackers are now working to gain long-term access to the computers of applicants before they join any company, instead of simply impersonating the employees of those companies.

In an operation that researchers with Validin call “Contagious Interview,” North Korean hackers are now targeting individuals and stealing the know-how for the Kim Jong Un regime, doing it with the help of a fake job platform.

North Korean hackers are now targeting applicants

Speaking to CNN, Kenneth Kinion, the CEO of Validin, mentioned that going after job seekers is expected to provide an advantage for North Korean actors. Now, instead of trying to slip past an employer’s defenses, they take over the entire hiring process and make it feel completely legitimate to individuals seeking employment. This way, applicants assume they are taking a standard coding test or following the steps for a job opportunity.

Kinion noted that if the job applicant believes that everything they are being asked to do is legitimate, they are much more likely to open any files the supposed interview sends to them. Specifically, candidates are lured into fake job opportunities, guided to record video responses, and prompted to fix their webcam by using a helper tool. These steps seem easy and simple, but they are the steps that the hacker uses to deliver malware directly to a target’s system.

The fake platform, hosted at lenvnydotcom, mimics the style of Lever, a popular headhunting website boasting tens of thousands of users.

According to the description made by Validin, the illicit job platform is a “campaign designed to socially engineer and compromise people seeking jobs in a variety of roles, including software developers, AI researchers, cryptocurrency professionals, and other technical and non-technical job seekers while mimicking leading brands in these areas.”

Among the fictional jobs advertised by the North Korean hackers on the website is a “product manager” related to Claude, an AI chatbot developed by artificial intelligence firm Anthropic. Validin noted that identifying confirmed victims of the scheme is quite challenging because many candidates either refuse to disclose or lie to their current employers that they are applying for positions elsewhere and are therefore less likely to report any suspicious activities that they discover.

North Korean actors ramp up attacks

Over the past few years, North Korean actors have used fake identities and sometimes passed interview screenings to infiltrate companies in the United States, especially firms in the IT sector. The bad actors then send the funds obtained from their callous activities back home to support the regime’s rogue weapons program.

Last week, the United States Department of Justice announced that five people pleaded guilty to helping North Korean hackers.

These people were accused of helping the hackers obtain remote IT employment with US companies to commit fraud. The scheme affected more than 136 companies in general, generating more than $2.2 million in illicit funds that have been sent back to the Kim Jong Un regime.

In addition, the identities of more than 18 Americans were compromised, with the report noting that their activities spanned several industries.

Audricus Phagnasay, 24, Jason Salazar, 30, and Alexander Paul Travis, 34, were part of those arrested. They all pleaded to one count of wire fraud conspiracy. The court mentioned that they provided their identities to external IT workers to help them obtain employment with US companies. They also hosted work laptops at their homes and installed remote access software on them without authorization, making it as if IT workers were working remotely from their residences.

If you're reading this, you’re already ahead. Stay there with our newsletter.

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Bitcoin Plunges Below $100,000: Market Panic Intensifies as Analysts Warn of Bear Market AheadBitcoin's price has plummeted beneath the $100,000 mark, reflecting increased caution in the market toward risk assets. With large investment funds and corporate treasuries pulling back, signs of a bear market are becoming apparent, leading analysts to note a significant decline in market sentiment. Concurrently, demand for protective options in the derivatives market has surged, indicating heightened investor fears about future price movements. Despite Bitcoin maintaining some gains since the beginning of the year, recent trends raise concerns, necessitating close attention to upcoming critical support levels.
Author  Mitrade
Nov 14, Fri
Bitcoin's price has plummeted beneath the $100,000 mark, reflecting increased caution in the market toward risk assets. With large investment funds and corporate treasuries pulling back, signs of a bear market are becoming apparent, leading analysts to note a significant decline in market sentiment. Concurrently, demand for protective options in the derivatives market has surged, indicating heightened investor fears about future price movements. Despite Bitcoin maintaining some gains since the beginning of the year, recent trends raise concerns, necessitating close attention to upcoming critical support levels.
placeholder
Yen Plummets to Nine-Month Low as Fed Rate Cut Bets FadeThe yen hits a nine-month low against the dollar, driven by declining expectations for a Federal Reserve rate cut. Japanese officials express concern over the rapid currency depreciation and economic impact.
Author  Mitrade
Nov 18, Tue
The yen hits a nine-month low against the dollar, driven by declining expectations for a Federal Reserve rate cut. Japanese officials express concern over the rapid currency depreciation and economic impact.
placeholder
Bitcoin Breaks Below $92,000 as Traders Debate Whether 4-Year Cycle Pattern Is Driving Sell-OffBitcoin (BTC-USD) extended its losses on Monday, slipping below the $92,000 mark and pushing its decline from October’s all-time high to more than 26%. The ongoing downturn has reignited a key debate among traders: Is this a short-term correction, or the start of a prolonged bear market driven by Bitcoin’s historical four-year cycle?
Author  Mitrade
Nov 18, Tue
Bitcoin (BTC-USD) extended its losses on Monday, slipping below the $92,000 mark and pushing its decline from October’s all-time high to more than 26%. The ongoing downturn has reignited a key debate among traders: Is this a short-term correction, or the start of a prolonged bear market driven by Bitcoin’s historical four-year cycle?
placeholder
Nvidia's Earnings Surge Sparks Asian Market Rally and U.S. Dollar GainsNvidia's impressive earnings, fueled by robust AI chip demand, lifted Asian stocks and boosted the U.S. dollar as investors anticipate delayed jobs data impacting Federal Reserve policy decisions.
Author  Mitrade
Nov 20, Thu
Nvidia's impressive earnings, fueled by robust AI chip demand, lifted Asian stocks and boosted the U.S. dollar as investors anticipate delayed jobs data impacting Federal Reserve policy decisions.
placeholder
Asian Markets Plummet as U.S. Jobs Data Raises Rate Cut Concerns Despite Strong Nvidia EarningsAsian stock markets faced sharp declines following ambiguous U.S. jobs data, fueling uncertainty over interest rate cuts. Investors offloaded riskier assets, overshadowing Nvidia's positive earnings as focus shifts to the Fed's next steps.
Author  Mitrade
Yesterday 01: 35
Asian stock markets faced sharp declines following ambiguous U.S. jobs data, fueling uncertainty over interest rate cuts. Investors offloaded riskier assets, overshadowing Nvidia's positive earnings as focus shifts to the Fed's next steps.
goTop
quote