Bleepingcomputer
Konni Hackers Target Blockchain Engineers with AI Malware
First seen 24 Jan 2026, 20:38 UTC
•



+2
•37.7
Export
Article Content
Browse articles
The North Korean hacker group Konni is utilizing AI-generated PowerShell malware to target developers and engineers in the blockchain sector. This campaign is linked to APT37 and Kimsuky activity clusters, with Konni having been active since at least 2014 and previously targeting organizations in South Korea, Russia, Ukraine, and various European countries.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
More articles in this cluster
Continue Reading
Persistent Firestarter Malware Targets Cisco Firepower Devices in US Agencies
MuddyWater Targets U.S. Entities Amid Geopolitical Tensions
ScarCruft's Supply-Chain Attack Targets Yanbian Gaming Platform with BirdCall Malware
New NarwhalRAT Malware Targets Korean Users via Phishing Emails
APT37 Launches Targeted Cyberattack Using Social Media and Tampered Software
North Korean Konni Group Uses KakaoTalk for Malware Distribution in Spear-Phishing Campaign