Rust Team Members and Popular Crate Owners Targeted via Video Calls
A social engineering campaign targets Rust developers via video calls to steal credentials and deploy malicious packages.
An ongoing social engineering campaign targets Rust-lang team members and popular crate owners via video calls. Attackers lure targets with job offers, then trick them into installing malicious software or executing clipboard code. The campaign is linked to North Korean threat actors and has previously compromised crates.