North Korean hackers known as the Lazarus Group are manipulating MacOS malware KandyKorn to attack cryptocurrency exchange platforms. By pretending to be blockchain engineers on Discord, the hackers convince victims to download a malicious file instead of crypto trading software. The malware waits for commands from the server, allowing it to access computers, run additional destructive payloads, and steal data. These attacks aim to bypass international sanctions and generate revenue for North Korea.

eScan antivirus distributes backdoor in latest supply chain attack – Risky Business Newsletters
eScan antivirus distributes backdoor in latest supply chain attack Risky Business Newsletters

