Developers Tricked In Fake Job Interviews To Download Malware
Cybersecurity company Securonix has discovered a new ongoing social engineering attack campaign that targets software developers with bogus npm packages on the pretext of fake job interviews and tricks them into downloading a Python-based remote access trojan (RAT). Based on the observed tactics, the Securonix Threat Research Team, which has tracked the activity under “DEV#POPPER,” has allegedly linked the campaign to North Korean threat actors. “During these fraudulent interviews, the developers are often asked to perform tasks that involve downloading and running software from sources that appear legitimate, such as GitHub....