Google Cloud Exposes North Korean Crypto Malware Operations

Mandiant reveals a North Korea-associated crypto malware scheme, enhanced by AI technology since 2025.

Mandiant, a subsidiary of Google Cloud, has been monitoring a crypto malware campaign allegedly linked to North Korea since 2018. Recent advancements in artificial intelligence have significantly escalated these malicious activities, particularly since November 2025.