More

    North Korean Hackers Begin Campaign That Poses a ‘Hidden Danger’ to Cryptocurrency Companies

    North Korean Hackers Begin Campaign That Poses a ‘Hidden Danger’ to Cryptocurrency Companies

    The post North Korean Hackers Begin Campaign That Poses a ‘Hidden Danger’ to Cryptocurrency Companies appeared first on Coinpedia Fintech News

    Researchers have identified a new attack campaign tagged “Hidden Risk”, it exposed that state-sponsored hackers from North Korea have shifted gears towards attacking the crypto industry which they were linked to the Lazarus Group. Unlike what these hackers used to do by profiling their targets on social networking sites, they have now adopted very complex phishing emails. 

    New research conducted by the cybersecurity firm, SentinelLabs showed that this change is to mask malware as it was ordinary financial reports while aiming at weak-link individuals within the crypto sphere. 

    The group especially BlueNoroff has been credited with defying millions of dollars to fund North Korea’s nuclear and weapons programs, especially through exploiting weaknesses in decentralised financial platforms and the whole blockchain industry. 

    In response, the FBI has put out alert messages asking players in the financial industry to be on guard against phishing and other social engineering by North Korean cyber actors particularly involving decentralised finance and ETF companies.

    Phishing E-mails and advanced malware techniques

    In a rather shocking touch, the “Hidden Risk” campaign impersonates email notifications of new articles or updates regarding the BTC and current trends in the DeFi market. These emails, originating from seemingly legitimate organisations, urge victims to click on links with promises of PDFs, which in fact install malware on the victim’s macOS computer. 

    In the same regard, SentinelLabs points out that this malware, avoids the company’s inherent security measures, by utilising genuine Apple Developer IDs and essentially getting around the macOS’s Gatekeeper system. Once entrenched, the malware runs in the background without ceasing, even through reboots while creating concealed links to other servers controlled by North Korea.

    The complexity of this malware allows it to bypass even the most robust security measures, a new worrying trend in the Korean cyber threat landscape. SentinelLabs therefore recommends macOS users particularly those within crypto firms to tighten their security and approach any email they receive with suspicion.

    Conclusion: Concerns over increasing threats in Arena

    The “Hidden Risk” operation is yet another wake-up call for the crypto industry, with the DPRK as active actors not decreasing efforts and constantly improving their skills. This campaign is a sign of an even bigger problem as these kinds of cyber-attacks become more sophisticated, organisations need to continue tightening up their cybersecurity and staying forever vigilant against phishing and social engineering.

    Related articles

    No More Relying on Crypto Mining: 6 Ways to Make Money and Boost Your Return On Investment

    The cryptocurrency landscape is undergoing a significant transformation. Bitcoin mining profitability has plummeted due to soaring energy costs and heightened competition, pushing many investors to seek sustainable alternatives. Ethereum’s full transition to PoS has...

    Orbis86 Brings AI & Web3 to GDC 2025 – Powering the Next Era of Gaming

    Gaming is no longer just pixels and play—it’s evolving into a living, breathing digital universe. The gaming industry is undergoing a seismic shift, and Orbis86 is bringing AI and Web3 to the forefront of...

    Crypto Staking vs. Cloud Mining: Why Staking Becomes the First Choice for Investors

    With the top cryptocurrencies plummeting, crypto enthusiasts are turning to staking crypto as a profitable alternative to cloud mining. Recent data show over $80 billion in assets are now staked across PoS networks. Cloud...

    Block your dates for The Global Blockchain Show 2025 hosted by VAP Group in Riyadh, Saudi Arabia

    Fuel the Future with Web3 with industry leaders, visionaries and innovators of the Blockchain industry all under one roof at four different regions – Riyadh – June’2025 | Hongkong – Nov’2025| Abu Dhabi –...

    VAP Group to host 5000+ AI futurists at The Global AI Show in Riyadh, Saudi Arabia on 23-24th June’2025

    Preview: The exhibition reinforces Saudi Arabia’s Vision 2030 to establish itself as the destination for AI and other emerging technologies. Following the resounding success of past two editions, VAP Group in association with Times of AI  is set to host...

    Latest articles

    LEAVE A REPLY

    Please enter your comment!
    Please enter your name here