This story was first posted on 25 March 2022
This story This attack used classic social engineering tactics – the hackers posed as recruiters for a dream job or set up a bogus websites aimed at financial and crypto-currency industries – to exploit a remote code vulnerability in Google Chrome. The hack was then distributed by email to targeted people in those categories.
These actions were spotted in the wild on February 10 and Google acted to quickly to issue a patch on February 14.
We blocked North Korea exploiting Chrome, says Google • The Register
Chrome Zero-Day from North Korea – Schneier on Security
This story shows why training and patching are an essential part of your cyber security plan.