Radiant Capital Says North Korean Hackers Behind $50 Million Attack in October

2024-12-10 12:41

DeFi protocol Radiant Capital has attributed a <a href="https://www.coindesk.com/tech/2024/10/16/radiant-capital-loses-50m-to-blockchain-exploit" target="_blank">$50 million exploit</a> it suffered in October to North Korean hackers.

According to a <a href="https://medium.com/@RadiantCapital/radiant-capital-incident-update-e56d8c23829e" target="_blank">report published on Dec. 6</a>, the attackers started laying the groundwork for the Oct. 16 attack in mid-September, when a Telegram message from what appeared to be a trusted former contractor was sent to a Radiant Capital developer.

The message said the contractor was pursuing a new career opportunity related to smart contract auditing and was seeking feedback. It included a link to a zipped PDF file, which the developer opened and shared with other colleagues.

The message is now believed to have come from a “DPRK-aligned threat actor” who was impersonating the contractor, according to the report. The file contained a piece of malware called INLETDRIFT that established a persistent macOS backdoor while displaying a legitimate-looking PDF to the user.

Radiant Capital said that traditional checks and simulations showed no obvious discrepancies, making the threat virtually invisible during normal review stages.

Through access to the computers, the hackers were able to gain control of several private keys.

The North Korean link was identified by cybersecurity firm Mandiant, although the investigation is still incomplete. Mandiant said it believes the attack was orchestrated by UNC4736, a group aligned to the country’s Reconnaissance General Bureau. It is also known as AppleJeus or Citrine Sleet.

The group has been implicated in several other attacks linked to cryptocurrency companies. It has previously used fake crypto exchange websites to trick people into downloading malicious software through links to job openings and fake wallets.

The incident followed an earlier unrelated hack against Radiant Capital in January, during which it lost $4.5 million.

Similar to Notcoin - Blum - Airdrops In 2024

origin »

Know Your Developer (KYD) на Currencies.ru

$ 0.0030039 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 0.00 %
Cегодня L: $0.0030039 - H: $0.0030039
Капитализация $0 Rank 3603
Доступно / Всего 0 KYD / 21m KYD

hackers computer developer access gained former posing

hackers computer → Результатов: 65


Фото:

US preps voting systems against ransomware attacks ahead of 2020 elections

The US government is looking to protect voter registration databases and systems from ransomware threats ahead of the 2020 presidential election. The Cybersecurity Infrastructure Security Agency (CISA) — a division of the Homeland Security department instituted by president Donald Trump in November last year — fears the databases could be at the receiving end of a ransomware attack.

2019-8-27 09:31


Фото:

Cryptojacking malware found in 11 RubyGem language repositories

Malware designed to surreptitiously infect victims’ computer systems and mine cryptocurrency on behalf of hackers has been found in 11 code libraries on programming language manager RubyGems. Hackers exploited RubyGems – a package manager for the Ruby programming language that devs use to upload and distribute new versions of software – by downloading Ruby libraries, adding the malicious code, and re-uploading them under new names Decrypt reports.

2019-8-22 10:20


Фото:

Microsoft: Russian government hackers are targeting IoT devices

Microsoft today warned that Russian government hackers have been using video decoders, printers, and internet of things devices to breach computer networks. In a blog post, the Microsoft Threat Intelligence Center wrote that the “devices became points of ingress from which the actor established a presence on the network and continued looking for further access.

2019-8-6 03:36


Фото:

New York City College Struck by Ransomware, $1.9 Million in Bitcoin Demanded

Munroe College in Manhattan has been hit by a ransomware attack that has shut down the college’s computer systems. The hackers are demanding 170 bitcoin (BTC), which is roughly $1. 9 million. The malware infection came to light on the morning of July 10, but the specifications of the infection are still largely unknown, as reportedRead MoreRead More.

2019-7-15 13:00


Фото:

Hackers target major UK supermarket’s Twitter with phoney Bill Gates Bitcoin scam

Hackers took control of British multinational retailer Tesco’s Twitter account yesterday, urging followers to send Bitcoin to a wallet address and promising to return twice the value received. Luckily, though, Tesco’s followers did not fall for the Bitcoin scheme as no funds were deposited in the wallet address shared by the hackers.

2019-6-25 19:32


[Security Alert] Update Firefox Browser Now as Hackers Exploit a Serious Bug Targeting Major Crypto Exchanges Users

Mozilla has issued a security alert warning that hackers are taking advantage of a serious bug in their Firefox browser, which can be used to take over the entire computer. The company has warned that crypto owners face the highest level of an imminent attack, the Next Web reports. Firefox users have been asked to […]

2019-6-19 21:03


Фото:

Hackers hid malware in a fake trading app to steal your cryptocurrency

Security researchers have uncovered a knock-off cryptocurrency trading website designed to steal the funds of unwitting victims. Cybercriminals have created a website that imitates the Cryptohopper cryptocurrency trading platform to distribute malware that could steal personal information, hijack your clipboard, and crypto-jack your system, Bleeping Computer reports.

2019-6-6 16:16


Фото:

Hackers Seeding Ransomware via Bitcoin and Ether Giveaways

While the entire cryptospace is busy celebrating the return of the “bulls,” bad actors have formulated a new scheme aimed at stealing victims’ cryptos and injecting ransomware into their systems. These hackers are now using several websites to push their fake bitcoin (BTC) and ether (ETH) giveaway programs, according to a Bleeping Computer report onRead MoreRead More.

2019-5-28 13:00


Чанпен Чжао подвергся критике из-за своего совета по хранению криптоактивов

Комментируя новость о взломе новозеландской криптобиржи Cryptopia, генеральный директор Binance Чанпен Чжао (Changpeng Zhao) написал в Twitter свое мнение о трех вариантах хранения цифровых активов: самостоятельном, на централизованных биржах и децентрализованных.

2019-1-16 20:04


Five South Korean Hackers Get Arrested for Infecting Crypto Mining Malware into Over 6,000 Computers

The South Korean police have arrested five people for injecting malware in the computer of over 6,000 people. The local police have joined efforts with the Korean National Police Agency Cyber Bureau to arrest a group of five hackers led by Kim Amu-Gae, 24, which have released 32,435 emails containing a crypto mining malware. These […]

2018-11-9 01:56


Фото:

Town In Canada Meets Hackers Demands With Bitcoin Ransom

In the Ontario province of Canada, holds the town of Midland which has a population of more than 16,000 people and has recently had its computer systems hacked and infected with ransom malware. The town of Midland has come to conclusion that they are going to meet the hackers wants and pay them (as per their demands) in Bitcoin, in order to get the computer system up and running again.

2018-9-12 13:00