North Korea’s BlueNoroff Group Reportedly Targeting Crypto Community Members on MacOS

The malware is triggered through suspicious emails, according to SentinelLabs.

Advertisement
Written by Radhika Parashar, Edited by Siddharth Suvarna | Updated: 8 November 2024 18:48 IST
Highlights
  • The malicious campaign is reportedly called ‘Hidden Risk’
  • MacOS users said to receive malicious URLs in the form of emails
  • The FBI saw 45 percent rise in crypto frauds last year compared to 2022

Apple has yet to respond to the report

Photo Credit: Unsplash/ Towfiqu Barbhuriya

Cybersecurity firm SentinelLabs has raised an alert over a significant threat targeting crypto community members using macOS. According to their findings, the North Korean group BlueNoroff is distributing fake crypto news to entice users into downloading a multi-storage malware infection onto their MacBook. Dubbed the "Hidden Risk" campaign, this attack has been circulating since early 2024. Once activated, the malware can phish victims, leading to potential financial losses.

The malware is triggered via suspicious mails, SentinelLabs said in its report. These emails feature fake crypto news that appears to have been sent from the identity of a legitimate influencer.

“The emails hijack the name of a real person in an unrelated industry as a sender and purport to be forwarding a message from a well-known crypto social media influencer,” the report said.

Advertisement

If the target macOS user opens the malicious URL attached to the email it redirects users to a PDF with the ‘delphidigital[.]org' domain, which is reportedly controlled by the BlueNoroff groups.

Advertisement

“The full URL currently serves a benign form of the Bitcoin ETF document with titles that differ over time. However, at some point, this URL has or does switch to serving the first stage of a malicious application bundle entitled ‘Hidden Risk Behind New Surge of Bitcoin Price.app',” the report noted.

According to SentinelLabs, BlueNoroff has established a network of infrastructure focused on cryptocurrency interests, mimicking legitimate Web3 solutions. This enables the group to target individuals engaged in crypto, extracting their information for phishing attacks.

Advertisement

So far, Apple has not responded to the findings published by the cybersecurity firm.

In September, the FBI reported that crypto consumers lost over $5.6 billion (roughly Rs. 47,029 crore) to cryptocurrency-related fraud in 2023, marking a 45 percent increase from 2022. The agency also noted a rise in crypto-focused hacks attributed to North Korea.

Advertisement

In October, crypto tracking firm Arkham Intelligence revealed that an unknown hacker had compromised a US government crypto wallet containing assets seized from the 2016 Bitfinex hack. Arkham reported that around $20 million (roughly Rs. 168 crore) had been stolen from the wallet.

Crypto community insiders have repeatedly warned individuals to avoid engaging with crypto-related content from unfamiliar or unverified sources.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. OnePlus 15R, OnePlus 15R Ace Edition Launch Today: All You Need to Know
  2. Xiaomi's HyperOS 3 Update Is Rolling Out to These Phones, Tablets
  3. Realme Narzo 90 Series With 7,000mAh Battery Launched in India: See Pricing
  4. Dhruv64: India's First Homegrown 64-Bit Dual-Core Microprocessor Unveiled
  5. Filmfare OTT Awards 2025: Check out Full List of Winners
  6. OpenAI Says ChatGPT Will Soon Become an Operating System
  1. OnePlus 15R, OnePlus 15R Ace Edition Launching Today: Know Price in India, Features, Specs and More
  2. Astronomers Witness Longest-Lasting Gamma-Ray Burst in History, 8 Billion Light-Years Away
  3. Sub-Millimeter Robots Can Sense, Think, and Act Autonomously, New Study Finds
  4. Earth’s Atmosphere Has Been Leaking Onto the Moon for Billions of Years, Study Finds
  5. New Orbital Clues Reveal How Hot Jupiters Moved Close to Their Stars
  6. Heartiley Battery Out on OTT: Know Where to Watch This Tamil Sci-Fi Series Online
  7. Raat Akeli Hai: The Bansal Murders OTT Release Date: When and Where to Watch it Online?
  8. Private Satellites Pinpoint Methane Emissions from Oil, Gas, and Coal Facilities Worldwide
  9. Ishq Vishk Rebound Out on OTT: Know Where to Watch This Rohit Saraf Starrer Romcom
  10. Theeyavar Kulai Nadunga Now Streaming Online: Where to Watch This Dark Psychology Thriller
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.