SlowMist CISO: HexagonalRodent under Lazarus Group is launching attacks against Web3 developers

robot
Abstract generation in progress

Golden Finance reports that on April 24th, Chief Information Security Officer 23pds of SlowMist tweeted that HexagonalRodent, affiliated with Lazarus Group, is targeting Web3 developers through social engineering methods such as “high-paying remote positions” and “well-known project recruitment” to induce the execution of malicious code, ultimately stealing users’ crypto assets.
On March 9, 2026, a user with the same name as the developer of the fast-draft extension was infected with OtterCookie malware, which was used to distribute malicious programs. The attacker extensively used ChatGPT and Cursor to assist in executing attacks, further enhancing disguise and deception.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin