North Korean hackers are using a new malware called OtterCookie to target software developers through fake job offers. The malware can establish secure communication with a command and control infrastructure and steal cryptocurrency wallet keys and other sensitive data. It was introduced in September, with a new variant appearing in November. The Contagious Interview operation, which has been active since December 2022, also uses malware like BeaverTail and InvisibleFerret.

Noodlophile Malware Campaign Expands Global Reach with Copyright Phishing Lures
The threat actors behind the Noodlophile malware are leveraging spear-phishing emails and updated delivery mechanisms to deploy the information stealer in attacks aimed at enterprises