North Korea Lures Engineers to Rent Identities in Fake IT Worker Scheme

North Korea's Famous Chollima, linked to the Lazarus group, exploits developers by recruiting them to rent their identities for illicit purposes. This scheme involves deceiving engineers into acting as fronts for North Korean agents in high-profile companies, often using AI for interviews. Engineers provide sensitive personal information and use their computers as proxies, risking legal consequences. Recent findings include spamming job listings on GitHub to attract candidates. Researchers monitored these tactics using sandbox environments, discovering tools like AI for job applications and communication methods that help agents maintain anonymity.

https://www.bleepingcomputer.com/news/security/north-korea-lures-engineers-to-rent-identities-in-fake-it-worker-scheme/

Scroll to Top