From 4e35f07097bfae1f701eddbeec19e3fb0ff5869c Mon Sep 17 00:00:00 2001 From: S3N4T0R <121706460+S3N4T0R-0X0@users.noreply.github.com> Date: Sun, 6 Jul 2025 02:08:21 -0400 Subject: [PATCH] Update README.md --- North Koreans APT/Famous Chollima/README.md | 2 ++ 1 file changed, 2 insertions(+) diff --git a/North Koreans APT/Famous Chollima/README.md b/North Koreans APT/Famous Chollima/README.md index 3a0392e..f77f2b6 100644 --- a/North Koreans APT/Famous Chollima/README.md +++ b/North Koreans APT/Famous Chollima/README.md @@ -8,6 +8,8 @@ This is a simulation of attack by (Famous Chollima) APT group targeting job seek This attack included several stages including During the interview, the threat actor convinces the victim to download and install an NPM-based package hosted on GitHub. The attackers likely presents the package to the victim as software to review or analyze, but it actually contains malicious JavaScript designed to infect the victim’s host with backdoor. +HackerNews: https://thehackernews.com/2023/11/north-korean-hackers-pose-as-job.html + 1. Social Engineering Technique: The Attackers attempts to infect software developers with malware through a fictitious job interview.