Contagious Interview: 30,000 devices infected by a fake job interview
2026-09-22T08:51:35Z•646f439cbe60f88d0039d01f6cbd3ff9b1fc1b44bffe1fcb0d14d43f70f1f540
AI hallucinationAI securityCISA KEVChainScriptClickFixContagious InterviewICSLinux kernelMicrosoft AzureNode.jsNorth KoreaPolygonSCADAWaterPlumblockchain C2cloud securityconnected vehiclescritical infrastructurefake job interviewmalwareoperational technologyphishingprompt injectionremote access trojanwater utilities
What happened
Security Affairs RSS items cover a North Korea-linked fake job interview campaign infecting more than 30,000 devices, attacks on Colorado water utility OT systems, a Node.js RAT using Polygon smart contracts for command-and-control discovery, connected-car compromise risks, AI-agent and AI-hallucination security concerns, cloud data sovereignty issues, and Linux kernel vulnerabilities added to CISA’s Known Exploited Vulnerabilities catalog. The collection includes active exploitation and potentially significant critical-infrastructure and supply-chain risks, but no specific CVE identifiers are
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- securityaffairs
- Record identifier
- 646f439cbe60f88d0039d01f6cbd3ff9b1fc1b44bffe1fcb0d14d43f70f1f540
- Enrichment time
- 2026-09-22T08:51:35Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.