North Korean Hackers Intensifying Attacks on Crypto Sector, FBI Warns

North Korean crypto hackers can affect several crypto sectors including virtual digital assets, decentralised finance (DeFi), and crypto ETFs.

Advertisement
Written by Radhika Parashar, Edited by David Delima | Updated: 5 September 2024 18:00 IST
Highlights
  • North Korean hackers are using more sophisticated crypto attacks
  • Detailed pre-operation research lets them execute silent attacks
  • DeFi, crypto ETF firms can also be affected by these hackers

The FBI has listed measures that crypto firms can take to increase safety of their platforms

Photo Credit: Pexels/ Sora Shimazaki

The US Federal Bureau of Investigation (FBI) has warned crypto investors about the increasing danger posed by sophisticated North Korean hackers. The aim of these cybercriminals, according to the US investigative agency, is to steal hefty crypto reserves from firms that are operating services related to digital assets. These hack attacks have been described as highly tailored social engineering campaigns that are tough to detect. The agency had issued a similar warning in March, when it observed a rise in crypto investment scams.

The danger of North Korean crypto hackers is persistent across all firms operating across the verticals of virtual digital assets, decentralised finance (DeFi), and crypto-related exchange traded funds (ETFs). “Before initiating contact, the actors scout prospective victims by reviewing social media activity, particularly on professional networking or employment-related platforms,” the FBI said, adding that hackers are using tactics like convincing impersonation tricks, creating fake scenarios, and conducting pre-operational research before chalking out roadmaps to deploying the hacks.

The FBI has listed a number of ways, that crypto-related companies can keep their platforms safe from North Korean hackers. These include the creation of personal, unique mechanisms of verification – that could filter out suspicious contactors.

Advertisement

“Do not store information about cryptocurrency wallets — logins, passwords, wallet IDs, seed phrases, private keys, etc. — on Internet-connected devices. Avoid taking pre-employment tests or executing code on company owned laptops or devices,” the FBI warns.

Advertisement

Enabling multi-factor authentication (MFA), establishing regular rotations of security checks, limiting access to internal network-related documentation, and funnelling business-related communication have also been listed by the FBI as safety measures that Web3 firms are incorporate in their operations.

“If you suspect you or your company have been impacted by a social engineering campaign, disconnect the impacted device or devices from the Internet immediately. Leave impacted devices powered on to avoid the possibility of losing access to recoverable malware artifacts,” the law enforcement agency added, also suggesting immediate reporting of such suspicions.

Advertisement

Interestingly, this announcement from the FBI follows a major breach of Indian exchange WazirX last month, which was reportedly executed by North Korea's infamous Lazarus Group of hackers. The attack led to the theft of $230 million (roughly Rs. 1,900 crore) from WazirX reserves.

In a recent conversation with Gadgets 360, WazirX co-founder Nischal Shetty said, “most of the research community says that the pattern matches with Lazarus group. We've got, like, one of the best researchers in the industry, saying that the pattern exactly matches. We got some credible information that, you know, that's a possibility.”

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Airtel-Perplexity Free Offer Now Requires a Card to Continue
  2. Xiaomi 17 Ultra's Leica Camera Confirmed to Support Continuous Optical Zoom
  3. Realme Narzo 90x 5G Sale in India Begins Today
  4. ChatGPT Gets Spotify Wrapped-Like End-of-Year Experience
  5. Oppo Reno 15 Pro Mini Confirmed to Launch in India Alongside These Models
  6. Asus VM670KA AiO All-in-One Desktop PC With 27-Inch Display Launched in India
  7. OnePlus Turbo Key Specifications Surface Ahead of Launch
  8. Microsoft 365 Accounts Targeted in OAuth Device Code Phishing Attacks
  9. Here's When the Samsung Galaxy S26 Series Could Reach Stores in 2026
  10. OnePlus Pad Go 2 Review
  1. Shine On Me Now Streaming on Netflix: Know Everything About This Korean Romance Drama Series
  2. Hogwarts Legacy 2 Could Feature Online Multiplayer, Warner Bros. Games Job Listing Suggests
  3. Samsung Galaxy S26 Series Said to Feature External Modem on Models With Exynos 2600 SoC
  4. OpenAI Says Prompt Injections a Challenge for AI Browsers, Builds an Attacker to Train ChatGPT Atlas
  5. Microsoft 365 Accounts Reportedly Breached After Hackers Exploit Legitimate Microsoft OAuth Feature
  6. Oppo Reno 15 FS 5G Price and Specifications Surface on Retailer's Website, Could Launch Soon
  7. Idol I Streaming Now Online: Know Everything About Streaming, Plot, Cast, and More
  8. Mufti Police Out on OTT: Know Where to Watch This Telugu Thriller Film Online
  9. Spotify Reportedly Removes ‘Nefarious’ Accounts Used to Scrape About 86 Million Music Files
  10. Xiaomi 17 Ultra to Launch With Upgraded Leica Camera System Featuring Continuous Optical Zoom
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.