A new social engineering attack, dubbed "Contagious Interview," is leveraging the technical assessment stage of job applications to install malware on candidate's computers. Attackers, posing as recruiters, instruct job seekers to clone and execute malicious code packages, often disguised within seemingly legitimate repositories, resulting in the theft of credentials and sensitive data like cryptocurrency wallet information. To mitigate this risk, organizations should provide candidates with isolated virtual machines for coding tests, and job seekers should always refuse to run unfamiliar code on their personal devices.
Read the full article at DEV Community
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.



