🚨 Urgent Security Alert: North Korean Hackers Target Crypto Firms with New "NimDoor" macOS Malware
A sophisticated new cyberattack campaign linked to North Korean hackers is infiltrating Apple devices at crypto companies through a stealthy malware called NimDoor. Here’s what security experts have uncovered:
🛑 How the Attack Works
1️⃣ Social Engineering Lure
Hackers pose as trusted contacts on Telegram
Victims are tricked into joining fake "Google Meet" calls (actually Zoom)
2️⃣ Malware Delivery
Sent a malicious file disguised as a Zoom SDK update
Installs NimDoor malware that bypasses macOS protections
3️⃣ Data Theft Phase
Steals crypto wallet keys & browser credentials
Targets Telegram data (extracts encrypted chats + decryption keys)
Activates after 10-minute delay to evade detection
🔍 Why This Malware Is Dangerous
Written in Nim language (rare for macOS attacks)
Cross-platform capability (works on Windows/Linux too)
Bypasses traditional security tools
Linked to Lazarus Group (responsible for $3B+ in crypto hacks)
🛡️ How to Protect Yourself
✅ Verify all meeting links (double-check URLs)
✅ Never install unsolicited "updates"
✅ Use hardware wallets for crypto storage
✅ Enable 2FA on all accounts
$BTC $ETH $SOL #CyberSecurity #Crypto #MacOS #HackAlert #NorthKorea 💬 Has your company faced similar phishing attempts?
Share warnings to help others stay safe!