Categories: MacNews

Threat group targeting blockchain engineers on cryptocurrency platform with macOS malware ‘KANDYKORN’

The Lazarus Group, a state-sponsored threat group from the Democratic People’s Republic of Korea, has been targeting blockchain engineers on a cryptocurrency exchange platform, using macOS malware dubbed “KANDYKORN.”

“The actions displayed by Lazarus Group show that the actor has no intent to slow down in their targeting of companies and individuals holding onto crypto-currency,” says Jaron Bradley, director of Jamf Threat Labs at Jamf. “They also continue to show that there is no shortage of new malware in their back pocket as well as familiarity with advanced attacker techniques. We continue to see them reach out directly to victims using different chat technology. It’s here they build trust before tricking them into running malicious software.”

Bradley is also part of the team behind the discovery of the BlueNoroff APT Group’s use of “RustBucket” malware targeting macOS.

KANDYKORN isn’t the first time the Lazarus Group has leveraged macOS malware in its attacks. Earlier this year, the threat actor was observed distributing a backdoored PDF application that culminated in the deployment of RustBucket, an AppleScript-based backdoor capable of retrieving a second-stage payload from a remote server.

According to The Hackers News, what makes the new campaign stand out is the attacker’s impersonation of blockchain engineers on a public Discord server, employing social engineering lures to trick victims into downloading and executing a ZIP archive containing malicious code.

Dennis Sellers

Dennis Sellers is the editor/publisher of Apple World Today. He’s been an “Apple journalist” since 1995 (starting with the first big Apple news site, MacCentral). He loves to read, run, play sports, and watch movies.

Recent Posts

I’ve eliminated most of the ads at ‘Apple World Today’, so I hope you’ll support the site

As you’ve probably noticed (at least I hope you have, or else I’ve made a…

11 hours ago

Top Apple-related stories this week (May 13-17)

Here are the top Apple-related articles at Apple World Today for the week of May…

11 hours ago

Optimizing Time Management: How AI Email Writer Can Help

One of the biggest reasons people are starting to lean on AI for knowledge and…

11 hours ago

What Are The Best Free Online Games to Play Directly From Your Browser?

The internet offers infinite forms of entertainment, and the world of on-line gaming isn't any…

11 hours ago

Today’s deal: PDF Expert Premium Plan: Lifetime Subscription (Mac) for $79.99

PDF Expert is a uniquely fast, reliable, easy-to-use PDF editor that is built with the…

11 hours ago

Apple rumored to be developing a ‘significantly thinner version’ of the iPhone

Apple is developing a “significantly thinner version” of the iPhone that could be released next…

1 day ago