North Korea Becomes Epicentre for NFT Thefts via 500 Phishing Domains: SlowMist

The report has highlighted that this NFT stealth campaign has been going on for months.

Advertisement
Written by Radhika Parashar, Edited by Siddharth Suvarna | Updated: 26 December 2022 14:09 IST
Highlights
  • Cyber criminals from N. Korea have been infamous for crypto scams
  • Lazarous Group has been staling NFTs for the last seven month
  • The hackers leave the victim’s wallet susceptible to more attacks

The hacker records visitors’ info to an external domain and conducts the hack

Photo Credit: Larva Labs

North Korea's notorious Lazarous Group, infamous for triggering cyber-attacks, has yet again come under the limelight, for striking the NFT sector with back-to-back strikes. The group of hackers have launched around 500 phishing domains using which, they are duping unsuspecting victims, who are also enthusiastic NFT buyers. The claims against the Lazarous Group have been noted in the recent report by SlowMist, a blockchain security firm. The report has highlighted that this NFT stealth campaign has been going on for months with the earliest malicious domain having been registered around May-June.

NFTs or non-fungible tokens are blockchain-built digital collectibles, most of which are also functional in compatible metaverse experiences. More often than not, NFTs are valuable and their blockchain-based creation transfers the complete ownership of these virtual collectibles to the buyers and are held in crypto wallets.

The Lazarous Group has been deploying ‘decoy websites' pretending to be legit NFT projects, to get them to engage with these infected sites.

Advertisement

Phishing websites will record visitor data and save it to external sites. The hacker records visitors' information to an external domain through an HTTP GET request. Our investigation revealed that the hackers utilised multiple tokens, such as WETH, USDC, DAI, and UNI, etc. in their phishing attacks,” said the official post from SlowMist.

This year, despite not having been ideally profitable for the NFT industry, did manage to see several scammers flocking to the sector to conduct attacks.

Advertisement

Last week, for instance, anti-theft platform Harpie said that a new kind of scam is looming over the visitors of OpenSea, that offers ‘gasless sales' on the platform and eventually redirects the victims to phishing sites.

As part of the reportedly ongoing scam, hackers are tricking people to sign an unreadable message. Gasless NFTs are likely to attract first-time buyers signature request.

Advertisement

In its report, SlowMist has said that North Korea's Advanced Persistent Threat (APT) groups have been leaving the wallets of the victims susceptible to more hack attacks.

Not just traditional phishing, but scammers have been using the ice-phishing technique also, to steal themselves digital collectibles, useable in the Web3 sector.

Last week, 14 NFTs of the expensive and famous Bored Apes Yacht Club (BAYC) collection, were stolen in an ice-phishing attack.

Advertisement

Ice phishing scams are cyber-attacks that manoeuvre Web3 users into manually signing and approving permissions that allow notorious actors to spend their tokens.

In traditional phishing scams, hackers manage to steal private keys or passwords by luring in unsuspecting people into clicking on malicious links or having them visit infected fake websites.


Will crypto tax hurt the industry in India? We discuss this on Orbital, the Gadgets 360 podcast. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Nothing Announces Offers on Phones, Wearables During Flipkart Sale
  2. Oppo F31 Series Launched With 7,000mAh Battery: Check Price, Features
  3. Realme P3 Lite 5G With 6,000mAh Battery Launched in India at This Price
  4. Xiaomi 17 Pro Max Tipped to Come With a Secondary Display
  5. Samsung Galaxy S25 FE With 50-Megapixel Camera Launched in India: See Price
  6. Gemini Overtakes ChatGPT on App Store, Reaches the Top Spot
  7. Vivo Y31 Series With 6,500mAh Battery Launched in India: See Price
  8. iPhone 17 Models See Higher Pre-Order Demand Than iPhone 16 Series: Kuo
  9. iQOO 15 Live Image Leaked; Company Reveals Display Details
  10. iOS 26 Update for iPhone Releases Today: Everything You Need to Know
  1. Marvel's Wolverine Will Reportedly Launch in 2026; Insomniac's Venom Game in 'Active Development'
  2. US President Donald Trump Challenges Block on Removing US Fed’s Lisa Cook
  3. iPhone 17 Series Outpaces iPhone 16 in Demand While iPhone 17 Pro Max Tops Pre-Orders, Analyst Says
  4. iPhone 16 Remained Top Selling Smartphone For Second Consecutive Quarter Globally: Report
  5. Samsung Galaxy S25 FE Launched in India With 6.7-Inch AMOLED Screen, 50-Megapixel Camera: Price, Features
  6. iPhone 18 Series Tipped to Feature Smaller Dynamic Island, Might Launch Without Under-Display Face ID
  7. OnePlus 15 Leaked Image Hints at Redesigned Camera Module, Three Colourways
  8. Xiaomi 17 Pro Max Leaked Image Reveals Rear Display in a Nod to the 11 Ultra Ahead of September Debut
  9. Treasure Hunters Season 1 Now Streaming on JioHotstar: Everything You Need to Know
  10. London Stock Exchange Completes First Blockchain-Powered Fundraising via DMI Platform
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.