🚨 Urgent Security Alert: North Korean Hackers Target Crypto Firms with New "NimDoor" macOS Malware

A sophisticated new cyberattack campaign linked to North Korean hackers is infiltrating Apple devices at crypto companies through a stealthy malware called NimDoor. Here’s what security experts have uncovered:

🛑 How the Attack Works

1️⃣ Social Engineering Lure

Hackers pose as trusted contacts on Telegram

Victims are tricked into joining fake "Google Meet" calls (actually Zoom)

2️⃣ Malware Delivery

Sent a malicious file disguised as a Zoom SDK update

Installs NimDoor malware that bypasses macOS protections

3️⃣ Data Theft Phase

Steals crypto wallet keys & browser credentials

Targets Telegram data (extracts encrypted chats + decryption keys)

Activates after 10-minute delay to evade detection

🔍 Why This Malware Is Dangerous

Written in Nim language (rare for macOS attacks)

Cross-platform capability (works on Windows/Linux too)

Bypasses traditional security tools

Linked to Lazarus Group (responsible for $3B+ in crypto hacks)

🛡️ How to Protect Yourself

✅ Verify all meeting links (double-check URLs)
✅ Never install unsolicited "updates"
✅ Use hardware wallets for crypto storage
✅ Enable 2FA on all accounts

$BTC $ETH $SOL

#CyberSecurity #Crypto #MacOS #HackAlert #NorthKorea

💬 Has your company faced similar phishing attempts?
Share warnings to help others stay safe!