ClickFake Interview Campaign by Lazarus Targets Crypto Job Seekers
ID: e9091ee7-4c08-5bfc-8d15-111ba0154a74
STIX ID: report--e9091ee7-4c08-5bfc-8d15-111ba0154a74
Feed Name: Infosecurity Magazine (News)
Threat Score
Sekoia uncovered the "ClickFake Interview" campaign attributed to North Korea's Lazarus Group in which attackers pose as recruiters to lure cryptocurrency professionals into interviews and deliver ClickFix malware via malicious documents or links, enabling remote access and theft of wallet credentials; the report lists IOCs and recommends verification of recruiters, cautious handling of attachments/links, and layered endpoint defenses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
