North Korea-Linked Hackers Deploy AI Deepfakes to Target Crypto Firms
-

North Korea-linked threat actors are escalating attacks on cryptocurrency and fintech companies using advanced social engineering tactics — including AI-generated deepfake videos and compromised Telegram accounts.
According to a new report from Mandiant (Google Cloud), the group tracked as UNC1069 deployed seven malware families in a recent campaign, including newly discovered tools called SILENCELIFT, DEEPBREATH, and CHROMEPUSH. These malware strains are designed to harvest sensitive data, bypass operating system protections, and exfiltrate digital assets. The activity marks a significant evolution in tactics, with AI-powered lures now actively used to scale operations.
#Cybersecurity #CryptoSecurity #NorthKorea #Blockchain #AIThreats