Crypto Hack Exposed: How Lazarus APT Is Using DeFi Games to Steal Your Crypto!

Share This Post

Crypto Hack Exposed: How Lazarus APT Is Using DeFi Games to Steal Your Crypto!

The post Crypto Hack Exposed: How Lazarus APT Is Using DeFi Games to Steal Your Crypto! appeared first on Coinpedia Fintech News

Lazarus APT, especially its subgroup BlueNoroff, is attributed to the professional hack attacks on the financial sector, especially those related to cryptocurrencies. This North Korean-linked cyber group has conducted numerous attacks of high profile targeting organizations and businesses, and using sophisticated malware and exploits. 

Three of its tools, namely Manuscrypt, Cutwail, and Turk, have made it possible for over 50 successful campaigns to take place effectively since the year 2013.

Recent Attack Campaign: An Analysis of the Detankzone Exploit

Cybersecurity analysts with Kaspersky in May 2024 pinpointed a Manuscrypt in a Russian system that originated from detankzone[.]com. Though rationalizing itself as a genuine DeFi NFT game, this site was hiding a zero-day Chrome vulnerability. 

The exploit was implanted into a weakness in the V8 JavaScript engine that allows the attackers to take full control of the victim’s computer the moment they visit the site. When Kaspersky reported the case, Google immediately dealt with this critical bug and closed all related fake web pages.

Social Engineering Tactics: Social Media Identity Cloning

Adding to this, Lazarus utilized social engineering and opened fake LinkedIn and X (previously Twitter) accounts to endorse a fake game called “DeTankZone.” DeFiTankLand was another real game whose source was used to release a faithful copy of a game demo, trusting which users downloaded malware. 

This blended approach emphasizes Lazarus’ flexibility in switching between technical and social approaches to overcome crypto space defenses.

A New & Evolving Danger to Crypto Investors

What is crucial for understanding this campaign is that Lazarus is still capable of evading such cutting-edge security protections using zero-day vulnerabilities along with social engineering approaches. 

The event remains relevant to emphasize on the stock and alertness, updates of the applications, and the cautious tendency of the clients, who are involved in cryptocurrency investments, as the threat actors do not stop evolving and improving techniques of attacks.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Sunny Aggarwal’s vision for seamless cross-chain trading with Polaris

In a recent episode of the SlateCast, Sunny Aggarwal, Co-founder of Osmosis Labs and Polaris, joined CryptoSlate’s Editor in Chief Liam “Akiba” Wright to discuss the future of cross-chain

‘Election is Over’: Ripple Cofounder’s $10M Donation to Harris Raises Eyebrows

The post ‘Election is Over’: Ripple Cofounder’s $10M Donation to Harris Raises Eyebrows appeared first on Coinpedia Fintech News The cryptocurrency community is buzzing after Chris Larsen,

Trump’s No-Income-Tax Vision: What America Looked Like Without Income Taxes

In a lively exchange on Fox & Friends this week, former US President Donald Trump floated an intriguing idea: doing away with income taxes entirely ‘There is a Way’: Trump’s

New Blockchain From Kraken Expected To Debut In Early 2025

US-based cryptocurrency exchange Kraken, the sixth largest trading volume, is gearing up to launch its blockchain, Ink, in early 2025 This new platform aims to facilitate decentralized applications

Bitcoin To Hit $125,000 By Year-End If Trump Wins, Says Standard Chartered

In a research paper dated October 24, Geoff Kendrick, Global Head of Digital Assets Research at Standard Chartered Bank, predicts that Bitcoin could surge to $125,000 by the end of the year if former

MicroStrategy stock to BTC ratio hits all-time high, surpassing 2021 bull run

MicroStrategy’s (MSTR) stock has reached a new 25-year peak amid Bitcoin’s potential climb towards the $70,000 mark Google Finance data reveals that MicroStrategy’s stock, bolstered