Google has announced the successful thwarting of two state-linked North Korean hacking groups that have been targeting crypto firms and tech job hunters.
The two exploited a bug on Google’s Chrome browser that was first discovered and patched earlier this year.
Two hacking groups that were targeting cryptocurrency firms and job hunters through a Google Chrome zero-day attack have been stopped by the search engine giant’s threat analysis team.
In a blog post, Google’s Threat Analysis Group’s (TAG) Adam Weidemann revealed that the two groups had been exploiting a remote code execution vulnerability in Chrome, CVE 2022-0609. The two groups’ activities have been tracked as Operan Dream Job and Operation AppleJeus. The earliest evidence that the Google TAG team gathered of these group’s activities using the Chrome vulnerabilities dates back to January 4 this year.
Weidemann noted:
We observed the campaigns targeting U.S. based organizations spanning news media, IT, cryptocurr