
North Korea Uses Self-Propagating "Contagious Interview" Malware in Fake Job Scams
North KoreaMalwareSocial EngineeringCyberattacksRATData ExfiltrationJob ScamRepository Compromise
North Korea-linked threat actors are using fake job scams to distribute malware through a self-propagating "contagious interview" technique, where a compromised developer's repository acts as a worm-like infection vector. The attack spreads remote access Trojans (RATs) and other malware without requiring additional user interaction. The campaign leverages social engineering tactics, including fraudulent job offers, to trick victims into executing malicious payloads. No specific dates, CVE IDs, or technical indicators (e.g., malware names, affected systems) were disclosed in the reported details. The primary impact involves unauthorized access, data exfiltration, and potential lateral movement within compromised networks.