Bleeping Computer
Google’s Threat Analysis Group (TAG) says that North Korean government-sponsored hackers are once again targeting security researchers using fake Twitter and LinkedIn social media accounts.
The hackers also created a website for a fake company named SecuriElite (located in Turkey) and supposedly offering offensive security services as the Google security team focused on hunting down state-backed hackers discovered on March 17.
All LinkedIn and Twitter accounts created by the North Korean hackers and associated with this new campaign were reported by Google and are now disabled.
Just as in the attacks detected during January 2021, this site was also hosting the attackers’ PGP public key, which was used as bait to infect security researchers with malware after triggering a browser exploit on opening the page.