#GolangGhost
Malware/Tool
2025-01-05 • North Korea-nexus Golang Backdoor/Stealer from Contagious Interview campaign
GolangGhost is a Go-based macOS remote-access Trojan delivered in the Famous Chollima ClickFake Interview campaign. Operators posing as recruiters targeted cryptocurrency and Web3 professionals with fraudulent skill assessments, then installed GolangGhost on macOS and established persistence through a LaunchAgent. The malware supports remote access and collection from valuable developer and cryptocurrency environments; reporting links its delivery to deceptive recruitment infrastructure. Its Windows counterpart in the same campaign is the Nuitka-compiled PylangGhost RAT.
-
6
Tagged Reports
-
6
Unique Authors
-
562
Active Days
Tagged Reports
2025-08-25
Bloo