Trade Haven Hub - Investing and Stock News
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
  • Investment Tips
  • Trade Tips
  • Crypto News
  • Economy News
  • Stock Market
No Result
View All Result
Trade Haven Hub - Investing and Stock News
No Result
View All Result
Home Crypto News

North Korea Develops Novel, More Sophisticated Methods to Target Crypto Industry

by
April 25, 2025
in Crypto News
0
North Korea Develops Novel, More Sophisticated Methods to Target Crypto Industry
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

North Korean hackers have been developing fresh and increasingly sophisticated methods to steal crypto funds: Zoom meetings, hiding malware in GitHub and NPM packages, and establishing legal entities in the USA, to name just a few.

Registering an actual company is the rarest method among these, and it’s the most difficult one. Yet, researchers have found several instances of threat actors creating businesses in the US to attract crypto developers and spread a data-stealing code.

More specifically, according to researchers at the security firm Silent Push, they registered the companies Blocknovas LLC and Softglide LLC in New Mexico and New York using fake identities and addresses. The report has shared a list of the fake identities connected to the campaign.

Source: Silent Push

The researchers have discovered another business, Angeloper Agency, which has connections to this scheme. However, this one doesn’t seem to be registered in the US. Of the three, Blocknovas is the most active front company, the report says.

Notably, Kasey Best, director of threat intelligence at Silent Push, was quoted by Reuters as saying that, “this is a rare example of North Korean hackers actually managing to set up legal corporate entities in the US in order to create corporate fronts used to attack unsuspecting job applicants.”

Furthermore, this attack is similar – and may be linked – to the attempted data theft recently reported by a number of crypto industry insiders.

Nick Bax of the Security Alliance, shared last month that a threat group is working to steal data and funds through fake business calls on Zoom.

Having audio issues on your Zoom call? That’s not a VC, it’s North Korean hackers.

Fortunately, this founder realized what was going on.

The call starts with a few “VCs” on the call. They send messages in the chat saying they can’t hear your audio, or suggesting there’s an… pic.twitter.com/ZnW8Mtof4F

— Nick Bax.eth (@bax1337) March 11, 2025

The attackers’ goal is ‘simple.’ Attract crypto developers and infect their devices with malicious software via a link they send during the interview. They may be pretending to experience technical issues, for example, and will ask the target to click on a link.

Bax said the threat group stole “$10s of millions of dollars” using this tactic, and others continue to copy it.

You might also like
Lazarus Group Deposits 400 ETH to Tornado Cash, Hackers Target Crypto Vets on Zoom

Contagious Interviews and Malicious JavaScript

Silent Push says that what it found is a new campaign. The entity behind it is the North Korean APT (advanced persistent threat) group ‘Contagious Interview.’ This is a subgroup of the notorious state-sponsored Lazarus Group.

Best told Reuters that the job interviews “lead to sophisticated malware deployments in order to compromise the cryptocurrency wallets of developers.” Also, they target the developers’ passwords and credentials, possibly to use them in “further attacks on legitimate businesses.”

Per the report, Silent Push confirmed “multiple victims” of the latest interview campaign.

Source: blocknovas.com

However, the FBI has seized Blocknovas’ domain “as part of a law enforcement action against North Korean Cyber Actors who utilized this domain to deceive individuals with fake job postings and distribute malware.”

The other two websites are still operational at the time of writing.

But this is not all. Another highly sophisticated line of attack is inserting malicious JavaScript into GitHub repositories and NPM packages.

Lazarus began this campaign in August 2024, stealing funds and data through supply chain attacks. Furthermore, this attack vector is evolving.

Notably, the malware, called Marstech1, targets popular crypto wallets. Various reports have named MetaMask, Exodus, and Atomic.

Cybersecurity company SecurityScorecard found 233 victims who installed the Marstech1 implant between September 2024 and January 2025.

You might also like
New Malicious Campaign Targets Atomic and Exodus Wallets

The post North Korea Develops Novel, More Sophisticated Methods to Target Crypto Industry appeared first on Cryptonews.

Previous Post

SEC Moves to Dismiss Lawsuit Against Blockchain Firm Dragonchain, DRGN Surges 100%

Next Post

Trillion-Dollar Giant Fidelity Triggers Bitcoin Price Prediction Surge – $200,000 Incoming?

Next Post
Trillion-Dollar Giant Fidelity Triggers Bitcoin Price Prediction Surge – $200,000 Incoming?

Trillion-Dollar Giant Fidelity Triggers Bitcoin Price Prediction Surge – $200,000 Incoming?

  • Trending
  • Comments
  • Latest
Dogecoin Price Skyrockets 17.7% This Week: DOGE’s $27.8B Market Cap Now Towers Over Cardano – What’s Next?

Dogecoin Price Skyrockets 17.7% This Week: DOGE’s $27.8B Market Cap Now Towers Over Cardano – What’s Next?

April 27, 2025
On air, ’60 Minutes’ reporter says ‘none of us is happy’ about changes that led top producer to quit

On air, ’60 Minutes’ reporter says ‘none of us is happy’ about changes that led top producer to quit

April 28, 2025
‘Wouldn’t tolerate it’: House Republican calls second Hegseth Signal report ‘unacceptable’

‘Wouldn’t tolerate it’: House Republican calls second Hegseth Signal report ‘unacceptable’

April 21, 2025
Solana Rockets 11% in 7 Days as Solaxy Presale Enters New Orbit at $31.4M

Solana Rockets 11% in 7 Days as Solaxy Presale Enters New Orbit at $31.4M

April 24, 2025
Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Quantum Computing: its Evolution and its Potential Future

Quantum Computing: its Evolution and its Potential Future

0
Air Direct Capture – Reducing CO2 from the Atmosphere

Air Direct Capture – Reducing CO2 from the Atmosphere

0
Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

May 22, 2025
Brazil’s Méliuz Announces Plans to Buy Another $26.5M Worth of Bitcoin

Brazil’s Méliuz Announces Plans to Buy Another $26.5M Worth of Bitcoin

May 22, 2025
Peter Goodburn: Silver “Very Undervalued” vs. Gold — Price Targets and What’s Next

Peter Goodburn: Silver “Very Undervalued” vs. Gold — Price Targets and What’s Next

May 21, 2025
Stallion Uranium Provides Corporate Update

Stallion Uranium Provides Corporate Update

May 21, 2025

    Stay updated with the latest news, exclusive offers, and special promotions. Sign up now and be the first to know! As a member, you'll receive curated content, insider tips, and invitations to exclusive events. Don't miss out on being part of something special.


    By opting in you agree to receive emails from us and our affiliates. Your information is secure and your privacy is protected.

    Recent News

    Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

    Lawmakers, Activists Rally to Protest Trump’s Meme Coin Event – Is Crypto Becoming a Political Flashpoint?

    May 22, 2025
    Brazil’s Méliuz Announces Plans to Buy Another $26.5M Worth of Bitcoin

    Brazil’s Méliuz Announces Plans to Buy Another $26.5M Worth of Bitcoin

    May 22, 2025
    Peter Goodburn: Silver “Very Undervalued” vs. Gold — Price Targets and What’s Next

    Peter Goodburn: Silver “Very Undervalued” vs. Gold — Price Targets and What’s Next

    May 21, 2025
    Stallion Uranium Provides Corporate Update

    Stallion Uranium Provides Corporate Update

    May 21, 2025
    • About us
    • Contact us
    • Privacy Policy
    • Terms & Conditions

    Copyright © 2025 tradehavenhub.com | All Rights Reserved

    No Result
    View All Result
    • Investment Tips
    • Trade Tips
    • Crypto News
    • Economy News
    • Stock Market

    Copyright © 2025 tradehavenhub.com | All Rights Reserved