零儲存危機隱私保護:您上傳的證據影像僅在記憶體中進行瞬時神經分析,完成後立即徹底銷毀。無日誌、無雲端備份。
LinkedIn Fake Recruiter & Headhunter Detector: Spotting Infiltration Bots
Defending engineers and defense contractors from North Korean and state-sponsored recruiter malware campaigns.
使用 Sealed Rose 驗證媒體真實性
即時神經網路檢測 · 免費 · 無需註冊 · 零儲存 · 記憶體瞬時處理
State-sponsored threat actors (such as Lazarus Group) create thousands of fake LinkedIn recruiter profiles with AI-generated headshots. They reach out to software developers, defense contractors, and Web3 engineers with lucrative job offers, asking them to clone a GitHub repo or execute a coding challenge that installs remote access trojans (RATs).
關鍵警訊與破綻特徵
1AI Headshot with Perfectly Centered Eyes
Headshot aligns with the StyleGAN/Midjourney eye-centering rule: pupils sit at the exact horizontal midpoint of the image canvas.
2Urgent Request to Run a Coding Challenge on Your Local Machine
They send a zip file or GitHub link containing obfuscated npm/pip dependencies with post-install malware scripts.
The "Contagious Interview" Malware Attack
- Malicious Dependency Poisoning: The coding test includes a `package.json` with a malicious `preinstall` hook that exfiltrates browser cookies and SSH keys.
防範措施與應對步驟
Run Recruiter Headshot Through Sealed Rose
Check for GAN/Diffusion face synthesis markers.
Never Run Unvetted Candidate Code on Your Bare Metal
Always sandbox coding challenges in ephemeral cloud VMs or isolated containers.
常見問題
Why are fake recruiters sending coding tests?▼
They use coding tests as a trojan horse to deliver malware directly onto developer laptops, stealing API keys, crypto wallets, and proprietary source code.
支援 23 種語言: