• About
  • Landing Page
  • Buy JNews
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS
No Result
View All Result
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse
No Result
View All Result

Lazarus hacker forgets VPN, gets exposed

SB Crypto Guru News by SB Crypto Guru News
June 2, 2025
in Altcoin
0 0
0
Lazarus hacker forgets VPN, gets exposed


If you know anything about a crypto hack, you’ve probably heard of the Lazarus Group.

They’re pretty much the final boss of crypto cybercrime – a North Korean state-backed hacking group responsible for some of the biggest thefts in the industry, including the Bybit hack earlier this year.

They’ve always carried this boogeyman of blockchain, mysterious vibe. But a new BitMEX report pulled back the curtain a bit.

And turns out… they’re not as flawless as some might think.

Tea

Over time, Lazarus seems to have split into smaller teams, and not all of them are equally skilled. Some are pros. Others – not so much.

Case in point: a BitMEX employee got a message on LinkedIn about joining a crypto project.

If you’ve followed Lazarus’ past scams, you know this is something they’ve done before – so the employee flagged it to the security team.

They were sent a GitHub repo with a Next.js/React project that – surprise – contained malware.

The attacker wanted them to run the code locally, which would’ve let malicious scripts execute on the employee’s computer.

Now, here’s what BitMEX found in the code:

  • It used JavaScript’s eval() function, which takes a piece of text and treats it like code. So if it says “delete everything,” your computer will actually try to run that command – and that opens the door for attackers to sneak in harmful code;

  • The malware tried to connect to suspicious URLs to download even more code – the kind of infrastructure Lazarus has used before in past attacks;

  • It collected data like usernames, IP addresses, operating systems, and uploaded all of it to… wait for it… a public Supabase database 😀👍

Yes. Public.

This is like using Google Sheets to store stolen data… and then leaving the spreadsheet unlocked.

Think smart

The BitMEX team took a look and found nearly 900 logs from infected machines.

And in one of them, they caught a big oopsie: a hacker forgot to turn on their VPN and exposed their real location in Jiaxing, China.

Instead of treating this oopsie as a one-off discovery, BitMEX saw an opportunity here – they built a tool to keep checking the database.

This lets BitMEX:

  • Track new infections as they happen;

  • Figure out who’s being targeted – devs, exchange workers, or random users;

  • Watch for repeat mistakes by the hackers (like more IP leaks);

  • Potentially map out patterns – like locations, time zones, or organizational targets.

Lazarus is still dangerous – no doubt about it.

But the more we learn about their tricks (and their mistakes), the easier it becomes to protect people from falling for them.

Now you’re in the know. But think about your friends – they probably have no idea. I wonder who could fix that… 😃🫵

Spread the word and be the hero you know you are!



Source link

Tags: Bitcoin NewsCrypto NewsCrypto UpdatesExposedforgetsHackerLatest News on CryptoLazarusSB Crypto Guru NewsVPN
Previous Post

Pi bets on games to bolster ecosystem amidst price struggles

Next Post

Ethereum Poised For A 5-Figure Breakout – Volatility Is Shaking ‘Weak Hands’

Next Post
Ethereum Poised For A 5-Figure Breakout – Volatility Is Shaking ‘Weak Hands’

Ethereum Poised For A 5-Figure Breakout – Volatility Is Shaking ‘Weak Hands’

  • Trending
  • Comments
  • Latest
Meta Pumps a Further  Million into Horizon Metaverse

Meta Pumps a Further $50 Million into Horizon Metaverse

February 24, 2025
How to Get Token Prices with an RPC Node – Moralis Web3

How to Get Token Prices with an RPC Node – Moralis Web3

September 3, 2024
The Metaverse is Coming Back! – According to Meta

The Metaverse is Coming Back! – According to Meta

February 7, 2025
Chiliz Chain Deep Dive – Why Build on Chiliz Chain? – Moralis Web3

Chiliz Chain Deep Dive – Why Build on Chiliz Chain? – Moralis Web3

September 10, 2024
How to Get NFT Balances with One RPC Call – Moralis Web3

How to Get NFT Balances with One RPC Call – Moralis Web3

August 30, 2024
Meta Quest Pro Discontinued! Enterprise-Grade MR Headset is No Longer Available

Meta Quest Pro Discontinued! Enterprise-Grade MR Headset is No Longer Available

January 6, 2025
As art market regulations tighten, international dealer association calls for ‘unity’ across trade

As art market regulations tighten, international dealer association calls for ‘unity’ across trade

0
BNB Price Gathers Strength — Upside Potential Looms

BNB Price Gathers Strength — Upside Potential Looms

0
Ark Invest’s Cathie Wood dumps 0M more Circle shares amid valuation surge flipping Robinhood

Ark Invest’s Cathie Wood dumps $110M more Circle shares amid valuation surge flipping Robinhood

0
Israel, Iran Ceasefire Ignites Crypto Surge As Bitcoin Tops 6k

Israel, Iran Ceasefire Ignites Crypto Surge As Bitcoin Tops $106k

0
What the Road Ahead May Hold for This Layer-2 Project

What the Road Ahead May Hold for This Layer-2 Project

0
Solana Memecoin About To ‘Blast Through’ All-Time Highs, According to Veteran Crypto Trader

Solana Memecoin About To ‘Blast Through’ All-Time Highs, According to Veteran Crypto Trader

0
As art market regulations tighten, international dealer association calls for ‘unity’ across trade

As art market regulations tighten, international dealer association calls for ‘unity’ across trade

June 24, 2025
Ark Invest’s Cathie Wood dumps 0M more Circle shares amid valuation surge flipping Robinhood

Ark Invest’s Cathie Wood dumps $110M more Circle shares amid valuation surge flipping Robinhood

June 24, 2025
Israel, Iran Ceasefire Ignites Crypto Surge As Bitcoin Tops 6k

Israel, Iran Ceasefire Ignites Crypto Surge As Bitcoin Tops $106k

June 24, 2025
Kindlymd and Nakamoto Secure .5 Million to Expand Bitcoin Holdings

Kindlymd and Nakamoto Secure $51.5 Million to Expand Bitcoin Holdings

June 24, 2025
DePIN: How Tokens Are Funding Real-World Hardware-from 5G Radios to Dash-Cam Maps

DePIN: How Tokens Are Funding Real-World Hardware-from 5G Radios to Dash-Cam Maps

June 24, 2025
Ethereum Sees Slight Drop But Whales Show No Signs Of Selling – Details

Ethereum Sees Slight Drop But Whales Show No Signs Of Selling – Details

June 24, 2025
SB Crypto Guru News- latest crypto news, NFTs, DEFI, Web3, Metaverse

Find the latest Bitcoin, Ethereum, blockchain, crypto, Business, Fintech News, interviews, and price analysis at SB Crypto Guru News.

CATEGORIES

  • Altcoin
  • Analysis
  • Bitcoin
  • Blockchain
  • Crypto Exchanges
  • Crypto Updates
  • DeFi
  • Ethereum
  • Metaverse
  • Mining
  • NFT
  • Regulations
  • Scam Alert
  • Uncategorized
  • Web3

SITE MAP

  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • HOME
  • BITCOIN
  • CRYPTO UPDATES
    • GENERAL
    • ALTCOINS
    • ETHEREUM
    • CRYPTO EXCHANGES
    • CRYPTO MINING
  • BLOCKCHAIN
  • NFT
  • DEFI
  • WEB3
  • METAVERSE
  • REGULATIONS
  • SCAM ALERT
  • ANALYSIS

© 2025 JNews - Premium WordPress news & magazine theme by Jegtheme.