Chinese smartphone manufacturer OPPO is among more than 1,600 global organizations compromised by a sophisticated, years-long hacking campaign linked to North Korean state-sponsored actors targeting software developers.
Key Points
- Cybersecurity researcher Vangelis Stykas identified the breach, which spans 57 countries and includes targets like Coinbase, Uniswap Labs, and Boston Children’s Hospital.
- Attackers utilized fake high-paying job interviews to trick developers into downloading malware during coding tests.
- The campaign, dubbed "Contagious Interview" by Microsoft, granted hackers privileged access to internal corporate networks.
- While the primary objective was stealing cryptocurrency and blockchain assets, researchers warn the persistent access poses significant long-term espionage risks.
- Approximately 700 to 800 of the affected organizations suffered severe intrusions, according to findings presented at the Black Hat security conference.