CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data

  • CONTACT
  • MARKETCAP
  • BLOG
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
  • BOOKMARKS
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Reading: There’s More to North Korea’s Hacking Ops Than Just Lazarus Group: Paradigm
Share
You have not selected any currencies to display
CoinRSS: Bitcoin, Ethereum, Crypto News and Price DataCoinRSS: Bitcoin, Ethereum, Crypto News and Price Data
0
Font ResizerAa
  • Blockchain
  • Crypto
  • Market
  • News
Search
  • Blockchain
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
  • News
    • Coinbase
    • Mining
    • NFT
    • Stocks
Have an existing account? Sign In
Follow US
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data > Blog > News > There’s More to North Korea’s Hacking Ops Than Just Lazarus Group: Paradigm
News

There’s More to North Korea’s Hacking Ops Than Just Lazarus Group: Paradigm

CoinRSS
Last updated: April 1, 2025 3:47 pm
CoinRSS Published April 1, 2025
Share

Contents
A hacking bureauThere’s still hopeDaily Debrief Newsletter

In February, North Korean hackers broke headlines with what is now regarded as the largest single hack in crypto history.

The Lazarus Group stole at least $1.4 billion from Bybit and later funneled those funds to crypto mixers.

“Someone had pulled off the biggest hack in [crypto] history, and we had a front-row seat,” Samczsun, Research Partner at Paradigm, recalled in a blog post.

The researcher said they witnessed the theft in real-time and collaborated with Bybit to confirm the unauthorized access.

Samczsun was working with SEAL 911, an emergency response unit affiliated with the Security Alliance, a nonprofit organization dedicated to securing decentralized systems.

But these attacks aren’t all just about the Lazarus Group. There’s more to North Korea’s cyber offensives than previously thought.

There’s a misconception about how to “classify and name” the group’s operations.

While the term “Lazarus Group” is “colloquially acceptable,” discussing how the DPRK (Democratic People’s Republic of Korea) runs its cyber operations on the offensive needs more rigor, Samczsun claimed.

Lazarus Group has become the preferred term by the media when describing DPRK cyberactivity. Cybersecurity researchers “created more precise designations” to show which ones are working on specific activities, they added.

A hacking bureau

The DPRK’s hacking ecosystem operates under the Reconnaissance General Bureau (RGB), which houses several distinct groups: AppleJeus, APT38, DangerousPassword, and TraderTraito

These groups operate with specific targeting methodologies and technical capabilities.

TraderTraitor, identified as the most sophisticated DPRK actor targeting the crypto industry, focuses on exchanges with large reserves and employs advanced techniques, successfully compromising Axie Infinity through fake job offers and manipulating WazirX.

AppleJeus specializes in complex supply chain attacks, including the 2023 3CX hack that potentially affected 12 million users.

Dangerous Password, meanwhile, conducts lower-end social engineering through phishing emails and malicious messaging on platforms like Telegram.

Another subgroup, APT38, spun out of Lazarus in 2016 and focused on financial crimes. It first targeted traditional banks before shifting attention to crypto platforms.

In 2018, the OFAC first mentioned “North Korean IT workers,” which in 2023 were identified by researchers as “Contagious Interview” and “Wagemole,” operating through schemes where the threat actors either pose as recruiters or attempt to get hired by target companies.

There’s still hope

While the DPRK has shown its ability to deploy zero-day attacks, there have been “no recorded or known incidents” of it deploying directly against the crypto industry, Samczsun said.

The researcher urged crypto companies to implement basic security practices such as least privilege access, two-factor authentication, and device segregation. If preventive measures fail, connecting with security groups like SEAL 911 and the FBI’s DPRK unit would also be helpful.

“DPRK hackers are an ever-growing threat against our industry, and we can’t defeat an enemy that we don’t know or understand,” Samczsun wrote.

Edited by Sebastian Sinclair

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Source link

You Might Also Like

This Week in Crypto Games: Ethereum Network Ronin Opens Up, and GameStop Goes Bitcoin?

Ethereum DEX volume slumps 50% – Are cheaper trading platforms the future?

Bitcoin Dominance drops to 60%: DOGE, XRP to lead the altcoin rally?

Is Ripple eyeing a $20B deal with Circle? – Strategy, risks, and what’s at stake

Cardano to $3 in 2025? Here’s how ADA’s latest correction can end!

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Copy Link Print
Previous Article How Binance’s market dominance could help BNB rally to $618
Next Article California empowers 40M with ‘Bitcoin Rights’ in groundbreaking Digital Assets Bill
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recipe Rating




Follow US

Find US on Socials
FacebookLike
TwitterFollow
YoutubeSubscribe
TelegramFollow
Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
Sui validators approve fund recovery plan as Cetus revenue hits ATH
BTC Price will Hit $100K before Bitcoin Sweeps $30K Lows
Crypto Bahamas: Regulations Enter Critical Stage as Gov’t Shows Interest

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data coin-rss-logo

We influence 20 million users and is the number one business blockchain and crypto news network on the planet.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad imageAd image
© CoinRSS: Bitcoin, Ethereum, Crypto News and Price Data. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?