North Korea’s Lazarus Group now using crypto gifts to breach security defenses

North Korea’s Lazarus Group now using crypto gifts to breach security defenses
фото показано с : cryptoslate.com

2025-2-22 02:00

The North Korean-linked Lazarus Group has adopted a new method of breaching crypto firms: sending cryptocurrency to their targets as part of an elaborate social engineering scheme.

According to 23pds, the pseudonymous Chief Information Security Officer (CISO) at Web3 security firm SlowMist, this tactic aims to gain the victim’s trust before deploying malicious code.

23pds revealed that one recipient received at least $400 in USDT, but actual payouts can reach thousands.

He said:

“Lazarus hackers make hundreds or even thousands of dollars in direct payments to their victims in advance… Just to gain the victim’s trust.”

These payments are designed to make the attackers seem legitimate, increasing the likelihood of victims complying with their requests.

Social engineering hacks

Unlike traditional cyberattacks that exploit technical vulnerabilities, the social engineering hack approach focuses on manipulating human behavior.

The hackers identify employees working for crypto firms, establish contact, and send them digital assets to gain credibility. Once trust is established, they trick victims into executing malicious code embedded with backdoors.

These interactions often occur through private GitHub repositories or live chat tools. Once access is granted, the attackers manipulate victims into running compromised code, allowing unauthorized entry into company systems.

Considering this, 23pds warned that crypto firms must strengthen internal security measures and train employees to recognize such deceptive tactics.

He added:

“All platforms, pls check yourself and make sure you pay attention to safety and train your staff on safety awareness.”

North Korean hackers

The incident highlights the evolving nature of crypto-related crimes as security concerns in the industry grow. It also suggests that the Lazarus Group may be preparing for a resurgence after reduced activity in late 2024.

In 2024, North Korean-backed hackers stole $1.34 billion of the total $2.2 billion pilfered from the crypto sector. This marked a staggering 103% increase from the $660 million attributed to North Korea in 2023.

However, their attack frequency declined significantly following a late June 2024 summit between Russian President Vladimir Putin and North Korean leader Kim Jong Un.

The post North Korea’s Lazarus Group now using crypto gifts to breach security defenses appeared first on CryptoSlate.

origin »

SherLOCK Security (LOCK) на Currencies.ru

$ 0.1387 (+1.71%)
Объем 24H $13
Изменеия 24h: 10.06 %, 7d: -33.06 %
Cегодня L: $0.1387 - H: $0.1387
Капитализация $0 Rank 3458
Доступно / Всего 0 LOCK / 4.969m LOCK

security crypto north group lazarus web3 firm

security crypto → Результатов: 126


Amber Group boosts its crypto trading infrastructure security with AnChain.AI

CryptoNinjas » Amber Group boosts its crypto trading infrastructure security with AnChain. AI AnChain. AI, a blockchain data analytics firm providing AI-powered security, risk, and compliance solutions, today announced a new partnership with crypto finance company Amber Group to bring greater transparency and security to its crypto trading platform ecosystem.

2021-2-24 00:36


Фото:

Congressman Tom Emmer praised the SEC for clarifying that Ether is not a security

Congressman Tom Emmer has praised the U.S. Securities and Exchange Commission (SEC) for clarifying that ethereum’s native cryptocurrency, ether, is not a security. As previously reported, the SEC’s director of Corporation Finance, William Hinman, told the audience at the Yahoo! All Markets Summit: Crypto conference last week that “current offers and sales of ether are

2018-6-23 22:16


Japan’s Biggest Crypto Exchange Halts New Account Signups As Regulators Demand Improvements

Japanese cryptocurrency exchange BitFlyer suspended new account registrations on June 21, after regulators demanded it improves its security arrangements. BitFlyer Hit With AML/KYC Cleanup A tweet and statement confirmed the move, which officials implemented as part of a Business Improvement Order from Japan’s Financial Services Authority (FSA).

2018-6-22 13:00


Фото:

Korea begins probe into crypto-currency hacking attacks

Regulation Following the alleged hacks of South Korean crypto exchanges, the government has formally launched an investigation into the cause of the hacks. Japan Confirms Entrance Into the Crypto Space Government’s Response The South Korean government announced on Wednesday, June 20, that it has formally launched an investigation into the cause of the alleged security

2018-6-22 09:11


Фото:

Spacemesh Code Review: PoST Consensus

Actually quite hard to describe from their website what this Spacemesh code review is all about. A post on their page talks about the PoST consensus (more in a second) but the core seems to be that they expect to deliver scaling, security, decentralization (yes, all three) PLUS, wait for it, fairness and inclusiveness, and […] The post Spacemesh Code Review: PoST Consensus appeared first on Crypto Briefing.

2018-6-22 00:35


Фото:

Confirmation Regarding Ripple XRP As A Security, What’s Been Said?

The security debate continues to surround Ripple and Ripple XRP, the native currency to the Ripple network. Very recently, the United States Securities and Exchange Commission (SEC) have spoken out stating that both Bitcoin and Ethereum do not carry the necessary attributes to be considered a security however, there’s still no official news regarding XRP.

2018-6-18 14:00