Threat Intelligence / Actor / Contagious Interview - G1052

Contagious Interview - G1052

As of 2026-08-25, Contagious Interview - G1052 is a North Korea (DPRK)-nexus threat actor tracked by Threadlinqs Intelligence across 19 threats spanning supply chain, malware, apt. Also known as DEV#POPPER (PolinRider, deceptivedevelopment, dev#popper, g1052.

Nation: North Korea (DPRK) · 19 tracked threat(s) · Categories: SUPPLY_CHAIN, MALWARE, APT, PHISHING

Also known as: Contagious Interview - G1052, DEV#POPPER (PolinRider, contagious interview, deceptivedevelopment, dev#popper, g1052, gwisin gang, purplebravo, tag-121, tenacious pungsan, Contagious Interview cluster, DPRK-linked)

Tracked threats

Full actor intelligence — infrastructure, IOCs, detection coverage and operator fingerprints — is available via the Threadlinqs MCP server (Purple tier). View plans →

Threadlinqs Intelligence