Hunting North Korea’s Contagious Interview Operation

Hunting North Korea’s Contagious Interview Operation

Source: YouTube · SANS Digital Forensics and Incident Response · published Apr 2, 2026 · 35:12

Cybersecurity
No ratings yet Log in to rate
Transcript Available
Description

North Korean state-sponsored threat actors, known as Contagious Interview, target developers through the software supply chain, demonstrating significant reach despite geographical distances 0:24.

Key Takeaways:
• The presentation introduces research on North Korean actors infiltrating software supply chains to compromise developer environments 0:28.
• Despite being over 6,800 miles apart and separated by a 14-hour time difference, these actors successfully bridge the gap to target US infrastructure 0:42.
• The speaker outlines the journey from the Democratic People's Republic of Korea (DPRK) to the attackers' operational methods 1:17.

This threat landscape highlights the critical need for supply chain security and vigilance against state-sponsored actors.

Sources:

  • 0:24 Introduction of Contagious Interview research topic.
  • 0:28 Description of targeting developers via supply chain.
  • 0:42 Discussion of geographical and temporal distance.
  • 1:17 Overview of the journey from DPRK to attacks.

Generate CPE Credits

Generate a professional CPE document from this video's transcript.

Estimated credit: 0.5 CPE hours

Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.

Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.

CISSP Domain Mapping
Learning Objectives
Self-Assessment Questions
PDF Export Ready

Free account. One generation at a time, with a daily limit.

CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.

Watch on YouTube

Transcript Preview

First 800 characters of the transcript

Good afternoon everyone. Um, such an honor to be here. I'm a big fan of SANS CTI summit. Um, many thanks to organizers and it's great to be here. Let's get started. I would like to present today my research on contagious interview North Korean state sponsored thread actors who target developers via the software supply chain. So we're not exactly close. Uh if you look at where we are today, Washington DC and Pyongyang, North Korea, there is more than 6,800 miles. That's how far apart we are. And we uh we are also apart by 14 hours time zone. And yet uh North Korean threat actors managed to infiltrate software supply chains and get into uh developer environments. So today we'll take this journey from North Korea or officially Democratic People's Republic of Korea DPRK to the US and back. We'…