Thursday, July 31, 2025
  • Login
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
CRYPTO MARKETCAP
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result

Kaspersky’s report reveals new tactics used by North Korean crypto hackers

by SB Crypto Guru News
May 13, 2024
in Scam Alert
Reading Time: 3 mins read
0 0
A A
0


Kaspersky’s report reveals new tactics used by North Korean crypto hackers
  • North Korean hackers deploying “Durian” malware targeting South Korean crypto firms.
  • The resurgence of dormant hackers like Careto underscores the evolving cybersecurity landscape.
  • Hacktivist groups like SiegedSec escalate offensive operations amidst global socio-political events.

The first quarter of 2024 has proven particularly eventful, with notable findings and trends emerging from the frontline of cyber security. From the deployment of sophisticated malware variants to the resurgence of long-dormant threat actors, the landscape of cyber threats continues to shape-shift, presenting new challenges for security experts worldwide.

A recent report by the Global Research and Analysis Team (GReAT) at Kaspersky made a striking revelation shedding light on the activities of various advanced persistent threat (APT) groups.

The Durian malware targeting South Korean crypto firms

Among the findings made by GReAT is the emergence of the “Durian” malware, attributed to the North Korean hacking group Kimsuky. It has been used to target South Korean cryptocurrency firms and it has a high level of sophistication, boasting comprehensive backdoor functionality.

The Durian malware’s deployment marks a notable escalation in the cyber capabilities of Kimsuky, showcasing their ability to exploit vulnerabilities within the supply chain of targeted organizations.

By infiltrating legitimate security software exclusive to South Korean crypto firms, Kimsuky demonstrates a calculated approach to circumventing traditional security mechanisms. This modus operandi highlights the need for enhanced vigilance and proactive security strategies within the cryptocurrency sector, where the stakes are exceptionally high.

The connection between Kimsuky and the Lazarus Group

The Kaspersky report further unveils a nuanced connection between Kimsuky and another North Korean hacking consortium, the Lazarus Group. While historically distinct entities, the utilization of similar tools such as LazyLoad suggests a potential collaboration or tactical alignment between these crypto-threat actors.

This discovery underscores the interconnected nature of cyber threats, where alliances and partnerships can amplify the impact of malicious activities.

Resurgence of dormant crypto hacking groups

In parallel, the APT trends report reveals a resurgence of long-dormant threat actors, such as the Careto group, whose activities were last observed in 2013.

Despite years of dormancy, Careto resurfaced in 2024 with a series of targeted campaigns, employing custom techniques and sophisticated implants to infiltrate high-profile organizations. This resurgence serves as a stark reminder that cyber threats never truly disappear; they merely adapt and evolve.

Other crypto hacking groups terrorising the world

The Kaspersky report also highlights the emergence of new malware campaigns targeting government entities in the Middle East, such as “DuneQuixote”. Characterized by sophisticated evasion techniques and practical evasion methods, these campaigns underscore the evolving tactics of threat actors in the region.

There is also the emergence of the “SKYCOOK” implant utilised by the Oilrig APT to target internet service providers in the Middle East.

Meanwhile, in Southeast Asia and the Korean Peninsula, the activities of threat actors like DroppingElephant continue to pose significant challenges. Leveraging malicious RAT tools and exploiting platforms like Discord for distribution, these actors demonstrate a multifaceted approach to cyber espionage. The use of legitimate software as initial infection vectors further complicates detection and mitigation efforts, highlighting the need for enhanced threat intelligence and collaboration among stakeholders.

On the hacktivism front, groups like SiegedSec have ramped up their offensive operations, targeting companies and government infrastructure in pursuit of social justice-related goals. With a focus on hack-and-leak operations, these groups leverage current socio-political events to amplify their message and impact.


Share this article

Categories

Tags



Source link

Tags: Bitcoin NewsCryptoCrypto NewsCrypto UpdateshackersKasperskysKoreanLatest News on CryptoNorthReportRevealsSB Crypto Guru Newstactics
Previous Post

DOGE Price Prediction – Can Dogecoin Bulls Overcome This Hurdle?

Next Post

Philippines’ central bank greenlights pilot for Peso-backed stablecoin

Related Posts

Grok refuses to pick winner for Crypto Rover competition citing ZachXBT pump and dump evidence

Grok refuses to pick winner for Crypto Rover competition citing ZachXBT pump and dump evidence

by SB Crypto Guru News
July 21, 2025
0

X’s Grok chatbot declined to select a winner for a $1,000 Ethereum giveaway organized by crypto influencer Crypto Rover, citing...

XRP trading volume soars as new ATH attracts deepfake scam targeting investors

XRP trading volume soars as new ATH attracts deepfake scam targeting investors

by SB Crypto Guru News
July 18, 2025
0

XRP has hit a new all-time high of $3.65, driven largely by a spike in trading activity across South Korea...

Chinese industry group warns Web3 and DeFi high-return deals hide classic Ponzi engines

Chinese industry group warns Web3 and DeFi high-return deals hide classic Ponzi engines

by SB Crypto Guru News
July 10, 2025
0

The Beijing Internet Finance Industry Association (BIFA) issued a notice on July 9 urging retail investors to reject pitchbooks that...

Scam targets dormant Bitcoin wallets with fake legal notice

Scam targets dormant Bitcoin wallets with fake legal notice

by SB Crypto Guru News
July 8, 2025
0

Analysts at BitMEX Research have raised the alarm about a scam targeting early Bitcoin holders, particularly those with wallets dating...

Crypto firms paid .7M monthly to North Korean workers

Crypto firms paid $2.7M monthly to North Korean workers

by SB Crypto Guru News
July 2, 2025
0

An on-chain investigation has revealed that North Korea IT workers posing as foreign developers have earned nearly $17 million from...

Load More
Next Post
Philippines’ central bank greenlights pilot for Peso-backed stablecoin

Philippines’ central bank greenlights pilot for Peso-backed stablecoin

Climate protestors charged over Magna Carta attack in London

Climate protestors charged over Magna Carta attack in London

Facebook Twitter LinkedIn Tumblr RSS

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • Mining
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

SITE MAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - SB Crypto Guru News.
SB Crypto Guru News is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS

Copyright © 2022 - SB Crypto Guru News.
SB Crypto Guru News is not responsible for the content of external sites.