đ¨ Urgent Security Alert: North Korean Hackers Target Crypto Firms with New "NimDoor" macOS Malware
A sophisticated new cyberattack campaign linked to North Korean hackers is infiltrating Apple devices at crypto companies through a stealthy malware called NimDoor. Hereâs what security experts have uncovered:
đ How the Attack Works
1ď¸âŁÂ Social Engineering Lure
Hackers pose as trusted contacts on Telegram
Victims are tricked into joining fake "Google Meet" calls (actually Zoom)
2ď¸âŁÂ Malware Delivery
Sent a malicious file disguised as a Zoom SDK update
Installs NimDoor malware that bypasses macOS protections
3ď¸âŁÂ Data Theft Phase
Steals crypto wallet keys & browser credentials
Targets Telegram data (extracts encrypted chats + decryption keys)
Activates after 10-minute delay to evade detection
đ Why This Malware Is Dangerous
Written in Nim language (rare for macOS attacks)
Cross-platform capability (works on Windows/Linux too)
Bypasses traditional security tools
Linked to Lazarus Group (responsible for $3B+ in crypto hacks)
đĄď¸ How to Protect Yourself
â
 Verify all meeting links (double-check URLs)
â
 Never install unsolicited "updates"
â
 Use hardware wallets for crypto storage
â
 Enable 2FA on all accounts
#CyberSecurity #Crypto #MacOS #HackAlert #NorthKorea
đŹÂ Has your company faced similar phishing attempts?
Share warnings to help others stay safe!