Microsoft experts warn North Korean attackers are targeting macOS users with ‘a highly reliable infection chain’ to steal passwords, financial data and more – here’s how to stay safe


  • Microsoft warns North Korean Sapphire Sleet (APT38) against Western companies with fake job scams
  • Malicious Zoom lookalike drops info stealers to steal cryptocurrency
  • The campaign focuses on macOS users; Apple pushed automatic protection to block attacks

North Korean state-sponsored threat actors called Sapphire Sleet are targeting companies in the West with infostealer malware in a bid to capture their cryptocurrencies, experts have warned.

Security analysts from Microsoft said the group, also known as APT38 and most likely a spinoff of the infamous Lazarus Group, has been at work since at least 2020 and has used one of the most successful techniques in its arsenal – fake jobs.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top