North Korean Hackers Are Hiding Malware Servers Inside Empty Crypto Transfers

North Korean-linked attackers are using a new way to hide the servers that control malware. The method places a command server address inside an empty Ethereum transaction, making the activity look like a normal crypto transfer rather than a malware signal. The technique was found in two malicious npm packages, bianira-ui version 1.27.0 and fluid-type-ui version 2.0.8. Both packages […]

This article has been indexed from Cyber Security News

Read the original article: