North Korean hackers are using a new malware called OtterCookie to target software developers through fake job offers. The malware can establish secure communication with a command and control infrastructure and steal cryptocurrency wallet keys and other sensitive data. It was introduced in September, with a new variant appearing in November. The Contagious Interview operation, which has been active since December 2022, also uses malware like BeaverTail and InvisibleFerret.
FICORA and Kaiten Botnets Exploit Old D-Link Vulnerabilities for Global Attacks
Cybersecurity researchers warn about increasing malicious activity that uses vulnerable D-Link routers to create botnets, the FICORA and CAPSAICIN variants. These botnets use documented vulnerabilities