Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Is California Reaching Critical Mass?

June 16, 2026

India’s NHRC Raises Alarm Over Digital Arrest Scams

June 16, 2026

Coinbase intoduces AI advisor, stock options, and pre-IPO markets in finance push

June 16, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»US Government: North Korean Threat Actors Are Targeting Cryptocurrency Organizations
US Government: North Korean Threat Actors Are Targeting Cryptocurrency Organizations
Security

US Government: North Korean Threat Actors Are Targeting Cryptocurrency Organizations

November 2, 2023No Comments3 Mins Read

The US government has warned that North Korean state-sponsored cyber actors are targeting organizations in the blockchain and cryptocurrency industries.

A joint advisory issued this week by the FBI, CISA and the US Treasury revealed that the notorious Lazarus APT group is targeting organizations operating in this sector using trojanized cryptocurrency applications. These include crypto exchanges, cryptocurrency trading companies, venture capital funds that have invested in cryptocurrency and individuals known to hold large amounts of cryptocurrency or valuable non-fungible tokens (NFTs) and play-to-earn video games.   

The government said the group is using social engineering techniques on various communication platforms to lure victims into downloading trojanized cryptocurrency applications on Windows or macOS operating systems. These are primarily targeting employees of cryptocurrency firms working in system administration or software development/IT operations, often impersonating recruiters offering high-paying job opportunities.

Once downloaded, the threat actors use the applications to gain access to the victim’s computer, propagate malware across the network environment and steal private keys or exploit other security gaps. These actions then enable further activities that initiate fraudulent blockchain transactions.

The advisory also set out a series of recommendations for organizations in the blockchain and cryptocurrency sectors to mitigate these threats. These cover areas like patch management, multifactor authentication, user education, email security tools and incident response.

Commenting on the story, Neil Jones, director of cybersecurity evangelism, Egnyte, said: “As the old saying goes, ‘Everything old is new again.’ In this particular case, cyber-attackers are leveraging the oldest tricks in the book to defraud users in the relatively new cryptocurrency and blockchain industries: too-good-to-be-true job offers, targeted spear-phishing research and email execution and user downloads of Trojanized applications.”

See also  US Treasury Sanctions Virtual Currency Mixer For Connections With Lazarus Group

He offered the following advice to mitigate the kind of social engineering attacks described in the advisory document: “The good news is that there are proven approaches to prevent such attacks: 1) Remember that if a communication sounds too good to be true, it probably is. Perform research on unanticipated email messages outside of your email platform, and you might even be able to find examples of scams that have leveraged similar messages in the past. 2) Limit the contact details that you provide on social media – particularly for business purposes – and confirm separately with the sender if you receive a message that just doesn’t ‘feel right.’ 3) Utilize effective anti-phishing, endpoint protection and data security solutions and keep them up-to-date. With the massive growth of cryptocurrency trading and the relative ease at which contact details can be found online, I anticipate this trend to increase in the future.”

North Korea has been heavily linked to cryptocurrency thefts recently amid the surging value of digital money. Earlier this week, GitHub traced a $618m crypto heist impacting dozens of organizations to North Korea.

Additionally, in January, a report by blockchain analysis firm Chainalysis found that North Korean cyber-criminals stole nearly $400m worth of cryptocurrency in 2021.

Source link

Actors cryptocurrency Government Korean North Organizations Targeting Threat

Related Posts

India’s NHRC Raises Alarm Over Digital Arrest Scams

June 16, 2026

Rokarolla Trojan Combines Banking Fraud With Device Surveillance

June 16, 2026

Pyra to Cease Operations Following Drift Hack, Launches Fund Withdrawal Portal

June 16, 2026

Oklahoma Raises Alarm Over Fake Crypto Returns

June 16, 2026
Top Posts

Meteora reports $1.5 million OTC scam loss in Q1 MET report

May 2, 2026

How will a US-Iran war impact Bitcoin?

February 28, 2026

XRP tops bitcoin, ether volumes on major South Korean exchanges

May 13, 2026

Type above and press Enter to search. Press Esc to cancel.