North Korean hackers target Microsoft Virtual Studio code


  • Lazarus Group’s Contagious Interview campaign abuses Visual Studio Code via malicious Git repositories
  • Attackers serve JavaScript payloads to macOS, enabling persistent data collection and C2 communication.
  • Jamf recommends enabling advanced threat controls and being careful with untrusted repositories

As part of the infamous Contagious Interview campaign, North Korean actors were seen abusing legitimate Microsoft Visual Studio code in their attacks.

Contagious Interview is a hacking campaign in which the Lazarus Group (and other state-sponsored North Korean actors) creates fake jobs and invites software and blockchain developers in Western countries for interviews.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top