logo

Fake LinkedIn Interview Used by Lazarus Hackers to Target AllSecure CEO

ID: 76057fca-9b77-5915-a25e-8116ca9a5f86

STIX ID: report--76057fca-9b77-5915-a25e-8116ca9a5f86

Feed Name: HackRead

Threat Score
85/100

Date Published: 2026-03-10

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

The report describes a Lazarus Group operation that lured a CEO via a fake LinkedIn job interview, used a deepfake-style video and a malicious project folder containing BeaverTail malware with three independent infection methods; the malware fingerprinted machines and attempted repeated callbacks to a command server to steal crypto wallets, browser-stored credentials, SSH keys and other secrets, and attribution was supported by code similarities and reused servers.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.