City
Epaper

Lazarus hackers targeting Apple Mac users with fake job posts

By IANS | Published: August 22, 2022 10:39 AM

New Delhi, Aug 22 North Korea-based notorious Lazarus hacking group is back in action, targeting Apple Mac users ...

Open in App

New Delhi, Aug 22 North Korea-based notorious Lazarus hacking group is back in action, targeting Apple Mac users with fake job emails that contain malicious files.

Researchers at cyber-security firm ESET posted a screenshot on Twitter that showed fake job listings from leading crypto exchange Coinbase by Lazarus, famous for spreading the WannaCry ransomware globally in 2017.

The fake job listing was for an engineering manager, product security, at Coinbase.

"A signed Mac executable disguised as a job description for Coinbase was uploaded to VirusTotal from Brazil. This is an instance of Operation by Lazarus for Mac," the ESET researchers posted in a tweet.

The fake job emails have an attachment containing malicious files that can compromise both Intel and Apple chip-powered Mac computers.

"Malware is compiled for both Intel and Apple Silicon. It drops three files: a decoy PDF document, a bundle and a downloader," warned researchers.

The Mac malware campaign is new and not part of previous Lazarus campaigns.

This time, "the bundle is signed July 21 (according to the timestamp) using a certificate issued in February 2022 to a developer named Shankey Nohria. The application is not notarised and Apple has revoked the certificate on August 12," the researchers noted.

Last month, cyber-security researchers linked Lazarus with stealing $100 million worth digital tokens from Harmony, the crypto startup behind Horizon Blockchain Bridge.

The Lazarus Group has perpetrated several large cryptocurrency thefts totalling over $2 billion, and has recently turned its attention to Decentralised Finance (DeFi) services such as cross-chain bridges, according to London-based blockchain analysis provider Elliptic.

The same group is believed to be behind the $540 million hack of Ronin Bridge.

Disclaimer: This post has been auto-published from an agency feed without any modifications to the text and has not been reviewed by an editor

Tags: MacBookNew DelhiBrazilEsetThe new delhi municipal councilDelhi south-west
Open in App

Related Stories

MaharashtraBhima-Koregaon Case: Supreme Court Grants Bail to Gautam Navlakha in Elgar Parishad Case After Two Years of House Arrest

InternationalDeath Toll Hits 143 From Brazil’s ‘Worst-Ever’ Weather Catastrophe

NationalNew Delhi: 30-Year-Old Man Arrested for Demanding Rs 20 Lakh From Car Showroom Owner

NationalNew Delhi: 28-Year-Old Man Held for Molesting Minor Boy in Metro

InternationalCBI Arrests 4 for Trafficking Indians Into Russia-Ukraine Conflict Zone (See Tweet)

Technology Realted Stories

TechnologyWHO prequalifies Japanese drug maker Takeda's dengue vaccine

TechnologyOpenAI Loses Chief Scientist Ilya Sutskever: Sam Altman Reacts on His Departure

TechnologyLG launches next-gen AI TVs in different sizes in India

TechnologyWomen's internet adoption on mobile phones reach 37 pc in India: GSMA

TechnologyAWS plans to invest $8.4 bn into its European Sovereign Cloud in Germany