North Korean hackers recently set up two shell companies in the U.S. specifically to target cryptocurrency developers. These hackers are linked to the Lazarus Group, using fake job postings to lure 'interviewees' into installing and deploying malware, in violation of U.S. sanctions and exposing vulnerabilities in the U.S. business registration system.
Inducing attack software under the guise of recruitment
Cybersecurity company Silent Push found that hackers established two companies, Blocknovas LLC and Softglide LLC, using fake names, fake addresses, and fake documents. They pretended to be legitimate employers and contacted developers through platforms like LinkedIn. Once developers were hooked, they were induced to download malware disguised as recruiting software or technical assessments.