North Korean Hackers Used Fake U.S. Crypto Firms in Malware Scam

Last Updated on April 25, 2025

Adam Headshot
Written by

Key Takeaways:

  • North Korea-linked hackers, including the Lazarus Group, created fake U.S.-registered consulting firms to deploy malware targeting crypto developers.
  • Malware was delivered through staged job interviews, involving AI-modified fake profiles and social engineering via hiring platforms.
  • The campaign, active since 2024, led to confirmed compromises, including a MetaMask wallet, prompting FBI intervention.

A North Korea-linked hacking group, part of the notorious Lazarus Group, has launched a new cyber campaign targeting cryptocurrency developers through fake consulting firms.

Cybersecurity firm Silent Push revealed that the hackers created three front companies—BlockNovas, Angeloper Agency, and SoftGlide—with two officially registered in the U.S.

The group, dubbed Contagious Interview, uses fake job postings to lure developers into malware traps disguised as interview processes.

Victims are asked to submit an introduction video, triggering a fake error that instructs them to run a command, unknowingly installing malware.

Tools like BeaverTail, InvisibleFerret, and OtterCookie are used to steal sensitive data, including crypto wallet credentials.

The hackers employ AI-generated images and stolen photos to create fake employee profiles, adding legitimacy to their scheme.

Platforms like GitHub and freelance job boards are being exploited to find new victims.

Silent Push confirmed at least two developers were targeted, one of whom had their MetaMask wallet compromised.

The FBI has seized BlockNovas’ domain, but other parts of the network remain active.

This is the latest in a series of crypto attacks linked to North Korea, including the $600 million Ronin bridge hack and a $1.4 billion breach at Bybit.

About The Author

Adam Headshot
Written by

Co-Founder / Managing Editor

Adam Morris, the co-founder of Crypto Head and a respected crypto expert, offers insightful commentary and analysis on cryptocurrency, NFTs, and the evolving digital landscape.

His extensive experience and features in top-tier publications like Forbes and CNN underscore his deep understanding of the crypto world and its future potential.

Check Adam out on: