EncryptHub Targets Web3 Developers Using Fake AI Platforms to Deploy Fickle Stealer Malware
The financially motivated threat actor known as EncryptHub (aka
LARVA-208 and Water Gamayun) has been attributed to a new campaign
that's targeting Web3 developers to infect them with information
stealer malware. "LARVA-208 has evolved its tactics, using fake AI
platforms (e.g., Norlax AI, mimicking Teampilot) to lure victims
with job offers or portfolio review requests," Swiss cybersecurity
Read more https://thehackernews.com/2025/07/encrypthub-targets-web3-developers.html