OtterCookie: The Malware That Watched the Developer
2026-06-06 • Red Asgard •
The episode focuses on OtterCookie, a second-stage malware family associated with DPRK-linked Contagious Interview activity. The source frames the real target as the developer workstation after code execution, including browser history, terminal residue, clipboard activity, authenticated sessions, wallets, cloud consoles, and source-control access. It explains why screenshots, keyboard capture, and wallet targeting have higher operational value on a real work machine than in a clean sandbox.
Related Actors
Related Reports
Shares tags: Podcast, Lazarus • Same author: Red Asgard • Published within a month
Shares tags: Podcast, Lazarus • Same author: Red Asgard • Published within a week
Shares tags: Podcast, Lazarus • Same author: Red Asgard • Published within a month
Shares tags: Lazarus, OtterCookie • Same author: Red Asgard • Published within a month
Shares tags: Podcast, Lazarus • Same author: Red Asgard • Published within a month
Shares tags: Lazarus, OtterCookie • Same author: Red Asgard • Published within a month