Threat intelligence researchers created a fake DeFi startup to entrap suspected North Korean IT workers. The team recruited three developers who passed interviews and watched them work from the inside. The operation reversed the usual infiltration playbook: instead of catching operatives trying to break in, researchers monitored them after they were hired. This proactive approach allowed them to document their behavior once inside the organization.
Source: Read the original article

