Ethereum

The FBI confirmed that the hacker hacker stole $ 1.5 billion from BYBIT as a North Korean support screw.

The FDEDERAL BUREAU OF INVESTIGATION (FBI) has been confirmed by North Korea as a culprit of $ 1.5 billion.

At the PSA on February 26, the agency was attributed to an attack on Tradertraitor, a malicious cyber campaign related to North Korean threats.

Tradertraitor is an application that is infected with a series of malware disguised as an encryption transaction and price prediction tool.

These applications, built using the cross platform JavaScript and Electron Framework, come from various open source projects. Cyber ​​criminals in the campaign use a well -designed website to seduce victims to show fake functions to build trust.

Laundry

The FBI reported that the stolen funds are already being washed and the attacker has converted some of the assets to Bitcoin and distributed them to several blockchain networks.

The agency expects that funds will eventually exchange money through illegal channels.

To respond to this, the FBI announced a list of large blockchain addresses with flags connected to hackers. Virtual asset service providers, including exchange, Defi platforms and blockchain analysis companies, urged them to prevent additional funds by blocking these addresses.

This confirmed the preliminary report of the blockchain analysis company, SPOTONCHAIN, and the hacker was washed less than $ 250 million in less than four days.

Spotonchain pointed out that washing funds accounted for 20%of 499,000 ETH. According to the company, cyber criminals use the assets into several addresses and use thorchain as Bitcoin, DAI and other cryptocurrencies in cross chain swaps.

North Korea’s cyber threat expansion

This attack shows North Korea’s success in raising funds to the main operation using cyber crime. Lazarus Group, a notorious hacking unit supported by the government, is behind several major digital asset raids.

The FBI noted that the Lazarus Group is responsible for some previous attacks on the encryption platform. The group attacked Horizon Bridge in June 2022, attacked Ronin Bridge in March 2022 and performed other attacks.

According to the report, North Korea hackers stole more than $ 1.3 billion in 2023 and exceeded $ 660 million in 2023.

Analysts believe that these theft funds can bypass international sanctions by supporting the state nuclear weapons program.

Both BYBIT and Safe have been checked more cryptoslate The North Korean hacking group screw is that the group is responsible for this attack. Developer machines can be damaged so that hackers can deceive the owner of the multi -place cold wallet to sign a malicious deal. Safe safety,

“Safe Wallet team completely reconstructed and reconstructed all infrastructure and rotated all the credentials so that the attack vector was completely removed.”

BYBIT also confirmed that most of the safe assets were withdrawn from the safe to prevent further vulnerability.

Blog scaleBlog scale

Related Articles

Back to top button