North Korean Hackers Caught Hiding Blockchain Cryptocurrency Theft Malware




  • UNC5342 uses blockchain smart contracts to deliver cryptocurrency theft malware via EtherHiding
  • Fake Jobs and Coding Challenges Lure Developers to Activate JadeSnow Loader and Backdoor
  • Blockchain Immutability Makes Malware Hosting Resilient

North Korean state-sponsored threat actors are now using public blockchains to host malicious code and deploy malware to target endpoints.

This is according to Google’s Threat Intelligence Group (GTIG), who said they observed UNC5342 using Ethereum and BNB to host droppers and ultimately deploy cryptocurrency theft malware against software and blockchain developers.



Leave a Comment

Your email address will not be published. Required fields are marked *