# North Korean hackers deepfake execs in Zoom call to spread Mac malware

**URL:** https://discuss.privacyguides.net/t/north-korean-hackers-deepfake-execs-in-zoom-call-to-spread-mac-malware/28474
**Category:** General
**Tags:** article
**Created:** 2025-06-19T13:21:25Z
**Posts:** 1

## Post 1 by @anonymous261 — 2025-06-19T13:21:25Z

> **[North Korean hackers deepfake execs in Zoom call to spread Mac malware](https://www.bleepingcomputer.com/news/security/north-korean-hackers-deepfake-execs-in-zoom-call-to-spread-mac-malware/)**
>
> North Korean advanced persistent threat (APT) 'BlueNoroff' (aka 'Sapphire Sleet' or 'TA444') are using deepfake company executives during fake Zoom calls to trick employees into installing custom malware on their computers.

> Like previous attacks, the primary goal was most likely cryptocurrency theft  
> The attacker sent a message containing a Calendly link for what appeared to be a Google Meet session, but the invite link was actually a fake Zoom domain controlled by the attackers.  
> During the meeting, the victim encountered issues with their microphone, which didn’t work, seemingly due to technical problems. The deepfakes advised the victim to download a supposed Zoom extension that would fix the problem.
