DPRK Contagious Interview Lure - Go Backdoor & Swift App

2025-11-23 L0Psec

https://www.youtube.com/watch?v=VdW_e72cQw8

Thumbnail for DPRK Contagious Interview Lure - Go Backdoor & Swift App

The video examines a newly observed DPRK Contagious Interview lure targeting job seekers, primarily in the cryptocurrency sector. The lure uses a related Swift application and leads victims to download a ZIP archive containing a Golang backdoor. The author notes that the Swift app resembles a sample they previously reverse engineered and that a related X/Twitter thread contains IOCs. The activity is relevant to DPRK tracking because it aligns with the long-running fake-recruitment tradecraft used to compromise job seekers and cryptocurrency-adjacent targets.

Related Actors

Related Reports

« Back