FBI and CSIA issue alert over North Korean cyberattacks on crypto targets

Share This Post

The cybersecurity agency believes that the threat from North Korean hackers will not go away unless crypto firms take necessary but simple steps to ensure their security.

The Cybersecurity and Infrastructure Security Agency (CISA) and FBI have issued an alert on North Korean state-sponsored cyber threats that target blockchain companies in response to the Ronin Bridge hack last month.

The alert was issued on April 18 in conjunction with the Federal Bureau of Investigation and the Treasury Department which had warnings and mitigation suggestions for blockchain and crypto firms to ensure their own operations remain safe from hackers.

Lazarus is not the only hacker group listed by name as an advanced persistent threat (APT). Included among Lazarus are APT38, BlueNoroff, and Stardust Chollima. These groups and others like them have been observed targeting what the bulletin called “a variety of organizations in the blockchain technology and cryptocurrency industry,” such as exchanges, decentralized finance (DeFi) protocols, and play-to-earn games.

Their efforts filled their coffers with $400 million in stolen crypto funds in 2021 according to a report from Chainalysis. The regime has already topped that amount this year with the Ronin Bridge hack from which it extracted about $620 million in crypto in late March.

The CSIA does not believe the rate of thefts will see a downturn any time soon as it stated that groups are using spearphishing and malware to steal crypto. It added that:

“These actors will likely continue exploiting vulnerabilities of cryptocurrency technology firms, gaming companies, and exchanges to generate and launder funds to support the North Korean regime.”

Kim Jong Eun’s staunch refusal to dismantle his nuclear weapons program forced the U.S. to levy some of the harshest economic sanctions ever against his country. This has led him to turn to cryptocurrency to fund the nuclear weapons program since his cash flows through traditional means have been almost entirely sealed off.

While the alert goes into greater detail about exactly how these groups use malware such as AppleJeus to target blockchain and crypto firms, it also offers suggestions on how users can mitigate the risk to themselves and their users’ funds. Most of the recommendations are common sense security procedures such as using multi-factor authentication on private accounts, educating users on common social engineering threats, blocking newly registered domain emails, and endpoint protection.

Related: The aftermath of Axie Infinity’s $650M Ronin Bridge hack

The laundry list of mitigation strategies firms should take to ensure they are secure from harm include all sensible suggestions, however, the CSIA believes that education and awareness of the existent threat is one of the best strategies.

“A cybersecurity aware workforce is one of the best defenses against social engineering techniques like phishing,” it concluded.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Unlocking Bitcoin’s Future: GoBTC Foundation’s Jeremy Dreier on the Crucial Role of Onchain Growth

GoBTC Foundation supports innovative Layer 1 and Layer 2 projects to grow the Bitcoin onchain ecosystem By providing investment, strategic guidance, and a platform for launching new tokens, this new

Here’s Why The Bitcoin Price Could Hit $100,000 Before The End Of The Year

Crypto analyst Ash Crypto has outlined several reasons why the Bitcoin price is poised to reach $100,000 by the end of the year This price level is one that other market experts like Standard

Polymarket Shows Trump Leading in US Election, Backed by Elon Musk

The post Polymarket Shows Trump Leading in US Election, Backed by Elon Musk appeared first on Coinpedia Fintech News The race for the next president of the United States has narrowed down to two

Top Meme Coins Eyeing 100% Surge Amid Bitcoin’s Jump to $63k!

The post Top Meme Coins Eyeing 100% Surge Amid Bitcoin’s Jump to $63k! appeared first on Coinpedia Fintech News With Bitcoin heading above the $63k mark after a bearish first week of October,

BGB Token Crash: What Caused the Shocking 50% Crash?

The post BGB Token Crash: What Caused the Shocking 50% Crash appeared first on Coinpedia Fintech News On October 7, Bitget’s platform token, BGB, experienced a sudden and sharp drop in value The

How the Ethereum EIP-7781 Proposal Could Revolutionize the Network

The post How the Ethereum EIP-7781 Proposal Could Revolutionize the Network appeared first on Coinpedia Fintech News A new proposal, named EIP-7781, has been introduced in Ethereum It is expected to