Hunter Strategy
  • Trending Topics
  • Threat Intelligence
  • Contact Us
  • Hunter Website
Sign in Subscribe

DeceptiveDevelopment

DeceptiveDevelopment (UNC5342, DEV#POPPER, Void Dokkaebi) is a North Korean-linked cluster targeting developers with fake job offers and coding assessments, part of the broader Contagious Interview campaign, now using EtherHiding to embed malware in blockchain smart contracts.

Trending Topics
Microsoft

Trending Topics

Fake Microsoft CAPTCHA pages lead to tech support scams. WaterPlum's ClickFake campaign deploys updated OtterCandy RAT. DeceptiveDevelopment (UNC5342, DEV#POPPER, Void Dokkaebi) hides malware in blockchain smart contracts via EtherHiding.
Read more
William Elchert and Antonio Rivera
Trending Topics
Hacktivists

Trending Topics

Hacktivist ICS attacks intensify globally. HazyBeacon backdoor abuses AWS Lambda for C2 in Southeast Asia. AsyncRAT forks fuel a sprawling RAT ecosystem. DeceptiveDevelopment (UNC5342, Void Dokkaebi) escalates npm supply chain attacks with XORIndex.
Read more
William Elchert and Antonio Rivera
Hunter Strategy © 2026
Powered by Ghost