List of Flash News about North Korean hackers
Time | Details |
---|---|
2025-08-17 01:58 |
Binance Exchange Security and Hiring Risks: North Korean Hacker Infiltration Warnings and 6,000 Staff Scale Cited — Trading Risk Takeaways
According to @ai_9684xtpa, asset security is the most critical safeguard for a top crypto exchange, with Binance’s scale cited at roughly 6,000 employees based on a prior remark attributed to Richard Teng, highlighting the operational focus required to protect user funds; source: @ai_9684xtpa. U.S. Treasury, State Department, and FBI have formally warned that DPRK-linked actors, including IT workers and Lazarus Group, target crypto companies via remote hiring, fake resumes, and social engineering, elevating infiltration risk at exchanges; source: U.S. Treasury, State Department, and FBI joint advisory on DPRK IT workers and DPRK cyber threats, published May 2022 and updated 2023. For traders, these verified threat vectors mean exchange counterparty risk and security posture directly affect withdrawal reliability, liquidity conditions, and short-term volatility during incidents, so venue selection and fund allocation should account for security controls and hiring vetting practices; source: U.S. Treasury, State Department, and FBI joint advisory as above, and the operational risk emphasis noted by @ai_9684xtpa. |
2025-07-08 17:15 |
DeFi Security Alert: North Korean Hackers Exploit Human Weakness as Polygon (MATIC) Revamps Strategy & Retires zkEVM
According to dydxfoundation, decentralized finance (DeFi) protocols are increasingly soft targets for North Korean hackers who exploit operational security (OPSEC) failures rather than complex smart contract vulnerabilities. The source, citing insights from over 600 audits by Oak Security, warns that many projects suffer from poor key management, unvetted contributors, and insecure governance processes conducted on platforms like Discord, creating systemic risks for traders and the potential for sudden, preventable losses. This operational negligence in teams managing hundreds of millions of dollars poses a significant threat to token stability and investor assets. In related market-moving news, Polygon (MATIC) is undergoing a major strategic overhaul as co-founder Sandeep Nailwal takes over as CEO of the Polygon Foundation. The organization will now focus on its AggLayer cross-chain liquidity protocol and is retiring its zkEVM network, a significant pivot for the project. Separately, the Ethereum Foundation has implemented a new treasury policy, capping annual operational expenses at 15% to ensure long-term sustainability for the Ethereum (ETH) ecosystem. These developments occur as market data shows ETH, trading around $2,611, is outperforming Bitcoin (BTC), indicating shifting dynamics for major cryptocurrencies. |
2025-07-04 03:35 |
Crypto Security Alert: North Korean Hackers Target Coinbase & Uniswap Staff as DOJ Seizes $225M from Scams
According to @timnitGebru, the cryptocurrency sector faces significant security and regulatory pressures. A North Korean hacking group, Famous Chollima, is actively targeting crypto professionals with malware hidden in fake job applications impersonating firms like Coinbase and Uniswap, as reported by Cisco Talos. This Python-based malware, PylangGhost, is designed to steal credentials and wallet data from over 80 extensions, including MetaMask and Phantom, creating a direct threat to user assets. Concurrently, the U.S. Department of Justice has seized $225 million in crypto linked to 'pig butchering' scams. Former U.S. Attorney Phil Selden described this as a 'tone-setting case' demonstrating the DOJ's commitment to protecting victims and recovering funds, even before arrests are made. These developments unfold as major assets like Ethereum (ETH), priced around $2,549, and Chainlink (LINK), at $13.32, experience downward price pressure, highlighting market sensitivity to security breaches and enforcement actions. |
2025-07-02 12:35 |
North Korean Hackers Target Crypto Firms with PylangGhost Malware, Exposing Critical DeFi Operational Security (OPSEC) Failures
According to @zachxbt, a North Korean hacking group known as Famous Chollima is deploying a new Python-based malware called PylangGhost through fake job applications impersonating top firms like Coinbase and Robinhood. This remote access trojan (RAT) is designed to steal credentials and wallet data from over 80 browser extensions, including MetaMask and Phantom, by tricking applicants into running malicious commands. The analysis highlights that the primary vulnerability in Web3 is not smart contract code but poor operational security (OPSEC), such as inadequate key management and a lack of contributor vetting. This operational negligence in DeFi contrasts sharply with the mature, layered security culture of traditional finance (TradFi). Despite these significant security threats, market data shows major assets trading higher, with ETHUSDT up 6.285% and SOLUSDT up 4.172% in the last 24 hours, suggesting the market may be underpricing these systemic risks. |
2025-07-01 19:06 |
Crypto Security Alert: Phishing Scams and North Korean Malware Target Investors Amidst Ethereum (ETH) Price Drop
According to @phantom, traders should be on high alert due to escalating security threats. A recent front-end exploit on a major crypto media website and a similar attack on CoinMarketCap used fake airdrop pop-ups to deploy wallet drainers, tricking users into connecting their wallets. Simultaneously, researchers at Cisco Talos report that a North Korean hacking group, Famous Chollima, is targeting crypto professionals with new Python-based malware called PylangGhost. The attackers use fake job applications from prominent firms like Coinbase and Uniswap to distribute the malware, which is designed to steal credentials and data from over 80 browser extensions, including MetaMask and Phantom wallets. These security risks are unfolding as the market sees a downturn, with Ethereum (ETH) trading at approximately $2405, down 3.6%, and Chainlink (LINK) at $12.84, down 3.45% over the last 24 hours, based on provided market data. |
2024-12-23 10:20 |
North Korean Hackers Suffer Major Loss in Ethereum Trade on Hyperliquid
According to Lookonchain, North Korean hackers experienced a significant financial loss after attempting a long position on Ethereum (ETH) using the Hyperliquid platform. They deposited $476,489 in USDC to go long on ETH at a price of $3,791.8. However, the market moved against them, leading to the liquidation of their position when the ETH price dropped to $3,251.8. This resulted in a substantial loss of $458,000, leaving them with only $18,187. |
2024-12-23 10:20 |
North Korean Hackers Suffer Major Loss on ETH Trade via Hyperliquid
According to Lookonchain, North Korean hackers experienced a significant financial loss on the Hyperliquid platform. They invested $476,489 USDC to go long on Ethereum (ETH) at a price of $3,791.8. However, due to a price drop to $3,251.8, their position was liquidated, resulting in a drastic loss of $458,000, leaving them with only $18,187. |