North Korean Hackers, Lazarus group, tied to the Atomic Wallet breach

TL;DR Breakdown

  • Elliptic Firm and its Investigative arm say that users of Atomic Wallet have fallen victim to Lazarus, the notorious North Korean cybercrime group. 
  • So far, $35 million has been stolen in bitcoin, ether, tether, Dogecoin, Litecoin, BNB coin, polygon, and Tron-based USDT.
  • The stolen assets are being laundered using specific services, such as the Sinbad mixer, which has also been used to launder the proceeds of Lazarus Group Hacks in the past.

Elliptic, a blockchain intelligence firm, said in a blog post on Tuesday that users of Atomic Wallet may have fallen victim to Lazarus, the notorious North Korean cybercrime group. Reportedly, illegal funds from the $35 million Atomic Wallet hack have been transferred to a crypto aggregator that is favored by North Korea’s most notorious cyber-hacking group.

The Lazarus Group financial terror hits the crypto industry hard

Lazarus Group is a North Korean cybercrime organization known for its cyber exploits, and it has been blamed for a number of attacks since 2010. The entity is thought to be funded by the North Korean government and consists of an unknown number of hackers. It has launched an increasing number of attacks through its various subgroups, including StoneFly, AndAriel, and BlueNoroff.

Since 2017, when it attacked South Korean crypto investors with Bitcoin and Monero holdings, the criminal group has terrorized the crypto community by using autonomous means of distributing new sorts of computer viruses that expose flaws in well-known software systems. Previously, Lazarus Group was notorious for conducting cyber espionage campaigns against South Korean government entities through distributed denial-of-service assaults.

Lazarus Group has also used the SWIFT network to undertake assaults on global organizations such as Sony and banking institutions, as well as a large-scale ransomware attack that affected thousands of machines in countries such as Russia, India, Taiwan, and Ukraine. During the COVID-19 pandemic in late 2020, the criminal group used spear-phishing techniques to get into computers and stole proprietary COVID-19 research.

The group began 2022 with a $600 million heist on Ronin, the blockchain protocol associated with the renowned crypto game Axie Infinity. Lazarus Group has been linked to a new type of crypto hacking, promoting fake crypto applications under the brand BloxHolder to spread the AppleJeus malware and steal crypto funds. The group is responsible for more than 25 notable attacks. 

Atomic Wallet suffers loss under cyber criminals

The team behind Atomic Wallet, a non-custodial crypto wallet, announced early Saturday morning that some users had their wallets compromised and funds stolen. The number of incidents reportedly did not exceed 1% of “monthly active users.” The announcement followed many complaints on Reddit from users whose wallets had been emptied.

ZachXBT, a pseudonymous blockchain detective, estimated that approximately $35 million worth of crypto had been stolen, including bitcoin, ether, tether, dogecoin, Litecoin, BNB coin, polygon, and Tron-based USDT.

Elliptic wrote that the stolen crypto was transferred to a mixer called Sindbad.io. This mixer, which Elliptic believes is a successor to the previously sanctioned mixer Blender.io, has frequently been used to launder money from other hacks attributed to Lazarus, according to Elliptic, who noted that the utilization pattern is identical. According to the blog post, the company also discovered connections between the wallets containing the stolen funds from Atomic and some of the Lazarus breaches.

Non-custodial wallets, such as Atomic, allow users to retain their crypto autonomously, without relying on a centralized entity, which means that if users lose their wallet’s device or password, they can only recover funds using the seed phrase. Anyone with access to the seed phrase, on the other hand, can clone the wallet and steal the funds.

Three hours ago, Elliptic Investigations updated that Atomic Wallet hack funds have just been swapped for USDT and bridged to TRON.

It’s probable that the stolen crypto assets were mixed in wallets containing the proceeds of previous Lazarus Group attacks. This would be the first large crypto theft openly traced to Lazarus Group since the $100 million Horizon Bridge breach in June 2022. 

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decision.

文章来源于互联网:North Korean Hackers, Lazarus group, tied to the Atomic Wallet breach

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年6月12日 11:23
Next 2023年6月12日 12:06

Related articles

  • NFT gas consumption decreases – What does this mean?

    TL;DR Breakdown Ethereum gas consumption by NFTs has significantly declined since 2021. Major NFT projects and marketplaces that once led in gas consumption have dropped sharply. Current gas consumption by leading NFT marketplaces accounts for roughly 1.85% of the entire Ethereum network. Description If you were navigating the Ethereum landscape two years ago, NFTs might have seemed to you like the fuel-hungry SUVs of the blockchain. Fast forward to today, and those very same NFT marketplaces are sipping gas like a hybrid economy car. This stark shift doesn’t just signify a change in numbers but mirrors a possible … Read more If you were navigating the Ethereum landscape two years ago, NFTs might have seemed to you like the fuel-hungry SUVs of the blockchain. Fast forward to today, and those very same NFT marketplaces are sipping gas like a hybrid economy car. This stark shift doesn’t just signify a change in numbers but mirrors a possible cultural and strategic transformation in the entire nonfungible token ecosystem. From market leaders to market leavers In the heyday of 2021, nonfungible tokens were…

    Article 2023年8月4日
  • U.S., South Korea and Japan gang up on China

    Description A display of strengthened unity and alignment was evident at Camp David, as the U.S. President Joe Biden convened with Asian allies, South Korean President Yoon Suk Yeol and Japanese Prime Minister Fumio Kishida. The key aim? To mount a formidable front against China’s increasing dominance in the South China Sea and nuclear intimidations from … Read more A display of strengthened unity and alignment was evident at Camp David, as the U.S. President Joe Biden convened with Asian allies, South Korean President Yoon Suk Yeol and Japanese Prime Minister Fumio Kishida. The key aim? To mount a formidable front against China’s increasing dominance in the South China Sea and nuclear intimidations from North Korea. Contents hide 1 A Bold Trilateral Gesture 2 China: Caught in the Crosshairs 3 Riding the Waves of Politics 4 Not a NATO Replica A Bold Trilateral Gesture The outcome of the summit saw the three nations pledging to bolster their military and economic collaborations. This includes annual military drills, the establishment of a real-time communication channel concerning North Korean missile activities, and routinely…

    Article 2023年8月22日
  • Fantom Feels the Tremors of Multichain’s Demise: A Deep Dive

    TL;DR Breakdown Andre Cronje, co-founder of Fantom, referred to the downfall of Multichain as a “massive setback” for the smart contract platform. Fantom’s Total Value Locked (TVL) fell sharply from $364 million in early May to just $70 million by July 14, as per data from DefiLlama. The value of it’s native token (FTM) also dropped from $0.41 to $0.28 in the same period. Cronje expressed regret over trusting the Multichain team’s assurances on server decentralization, access, and geolocation distribution, underlining the need for verification rather than blind trust. Description Andre Cronje, the co-founder of Fantom, painted a grim picture of the state of the smart contract platform, following the controversial demise of Multichain. He labelled Multichain’s downfall as a “massive setback” for Fantom, which has recently witnessed a significant decrease in activity due to Multichain’s issues. Fantom’s Drastic Decline in Total Value Locked DefiLlama’s … Read more Andre Cronje, the co-founder of Fantom, painted a grim picture of the state of the smart contract platform, following the controversial demise of Multichain. He labelled Multichain’s downfall as a “massive setback”…

    Article 2023年7月16日
  • Top 8 crypto exchanges dominate 91.7% of market depth, analytics firm reports

    TL;DR Breakdown Analytics firm Kaiko reports that the top eight cryptocurrency exchanges control 91.7% of the market depth and 89.5% of trading volume, with Binance leading at 30.7% of global market depth and 64.3% of global trade volume. The concentration of liquidity in the crypto market has both advantages and disadvantages, according to Kaiko. While it benefits average traders, it also poses risks such as lack of safeguards against failures, hacks, or market manipulation. Description New data from analytics firm Kaiko reveals that the top eight cryptocurrency exchanges now control about 91.7% of market depth and 89.5% of trading volume. Binance, the leading exchange, accounted for 30.7% of global market depth and 64.3% of global trade volume in 2023. This concentration of liquidity has intensified over time, raising questions about … Read more New data from analytics firm Kaiko reveals that the top eight cryptocurrency exchanges now control about 91.7% of market depth and 89.5% of trading volume. Binance, the leading exchange, accounted for 30.7% of global market depth and 64.3% of global trade volume in 2023. This concentration of…

    Article 2023年9月11日
  • BitGo cancels acquisition of Prime Trust amid uncertainty in crypto custodian landscape

    TL;DR Breakdown BitGo cancels its planned acquisition of Prime Trust, a crypto custodian, just two weeks after announcing the deal. Uncertainty surrounds Prime Trust as rumors of a cease and desist order and a bankruptcy filing by its subsidiary, Banq, emerge. Prime Trust suspends deposits and withdrawals, leaving customers in limbo, while BitGo emphasizes its commitment to trust in digital assets. Description BitGo, a digital asset custodian, has announced the termination of its planned acquisition of Prime Trust, a crypto custodian. The decision comes just two weeks after BitGo shared its non-binding letter of intent to acquire Prime Trust, citing significant efforts to find a way forward with the company. The cancellation raises questions about the future … Read more BitGo, a digital asset custodian, has announced the termination of its planned acquisition of Prime Trust, a crypto custodian. The decision comes just two weeks after BitGo shared its non-binding letter of intent to acquire Prime Trust, citing significant efforts to find a way forward with the company. The cancellation raises questions about the future of both firms and the…

    Article 2023年6月25日
TOP