North Korean Hackers Use EtherHiding to Hide Malware Inside Blockchain Smart Contracts
October 16, 2025
1 min read
●
The Hacker News

A threat actor with ties to the Democratic People's Republic of Korea (aka North Korea) has been observed leveraging the EtherHiding technique to distribute malware and enable cryptocurrency theft. The activity has been attributed by Google Threat Intelligence Group to a threat cluster it tracks as UNC5342.