North Korean Hackers, Lazarus group, tied to the Atomic Wallet breach

TL;DR Breakdown

  • Elliptic Firm and its Investigative arm say that users of Atomic Wallet have fallen victim to Lazarus, the notorious North Korean cybercrime group. 
  • So far, $35 million has been stolen in bitcoin, ether, tether, Dogecoin, Litecoin, BNB coin, polygon, and Tron-based USDT.
  • The stolen assets are being laundered using specific services, such as the Sinbad mixer, which has also been used to launder the proceeds of Lazarus Group Hacks in the past.

Elliptic, a blockchain intelligence firm, said in a blog post on Tuesday that users of Atomic Wallet may have fallen victim to Lazarus, the notorious North Korean cybercrime group. Reportedly, illegal funds from the $35 million Atomic Wallet hack have been transferred to a crypto aggregator that is favored by North Korea’s most notorious cyber-hacking group.

The Lazarus Group financial terror hits the crypto industry hard

Lazarus Group is a North Korean cybercrime organization known for its cyber exploits, and it has been blamed for a number of attacks since 2010. The entity is thought to be funded by the North Korean government and consists of an unknown number of hackers. It has launched an increasing number of attacks through its various subgroups, including StoneFly, AndAriel, and BlueNoroff.

Since 2017, when it attacked South Korean crypto investors with Bitcoin and Monero holdings, the criminal group has terrorized the crypto community by using autonomous means of distributing new sorts of computer viruses that expose flaws in well-known software systems. Previously, Lazarus Group was notorious for conducting cyber espionage campaigns against South Korean government entities through distributed denial-of-service assaults.

Lazarus Group has also used the SWIFT network to undertake assaults on global organizations such as Sony and banking institutions, as well as a large-scale ransomware attack that affected thousands of machines in countries such as Russia, India, Taiwan, and Ukraine. During the COVID-19 pandemic in late 2020, the criminal group used spear-phishing techniques to get into computers and stole proprietary COVID-19 research.

The group began 2022 with a $600 million heist on Ronin, the blockchain protocol associated with the renowned crypto game Axie Infinity. Lazarus Group has been linked to a new type of crypto hacking, promoting fake crypto applications under the brand BloxHolder to spread the AppleJeus malware and steal crypto funds. The group is responsible for more than 25 notable attacks. 

Atomic Wallet suffers loss under cyber criminals

The team behind Atomic Wallet, a non-custodial crypto wallet, announced early Saturday morning that some users had their wallets compromised and funds stolen. The number of incidents reportedly did not exceed 1% of “monthly active users.” The announcement followed many complaints on Reddit from users whose wallets had been emptied.

ZachXBT, a pseudonymous blockchain detective, estimated that approximately $35 million worth of crypto had been stolen, including bitcoin, ether, tether, dogecoin, Litecoin, BNB coin, polygon, and Tron-based USDT.

Elliptic wrote that the stolen crypto was transferred to a mixer called Sindbad.io. This mixer, which Elliptic believes is a successor to the previously sanctioned mixer Blender.io, has frequently been used to launder money from other hacks attributed to Lazarus, according to Elliptic, who noted that the utilization pattern is identical. According to the blog post, the company also discovered connections between the wallets containing the stolen funds from Atomic and some of the Lazarus breaches.

Non-custodial wallets, such as Atomic, allow users to retain their crypto autonomously, without relying on a centralized entity, which means that if users lose their wallet’s device or password, they can only recover funds using the seed phrase. Anyone with access to the seed phrase, on the other hand, can clone the wallet and steal the funds.

Three hours ago, Elliptic Investigations updated that Atomic Wallet hack funds have just been swapped for USDT and bridged to TRON.

It’s probable that the stolen crypto assets were mixed in wallets containing the proceeds of previous Lazarus Group attacks. This would be the first large crypto theft openly traced to Lazarus Group since the $100 million Horizon Bridge breach in June 2022. 

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decision.

文章来源于互联网:North Korean Hackers, Lazarus group, tied to the Atomic Wallet breach

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年6月12日 11:23
Next 2023年6月12日 12:06

Related articles

  • Biden claims the debt deal averted a major economic disaster

    TL;DR Breakdown Biden signed a crucial bill raising the debt ceiling, averting a potential economic crisis. The bill passed with bipartisan support after intense negotiations. Despite the bill’s approval, the U.S.’s “AAA” credit rating remains on negative watch. President Biden stood before the nation on Friday evening, providing his initial address from the hallowed Oval Office. His words emphasized the significance of the recently approved debt ceiling bill, and the importance of its timely enactment in preventing an imminent fiscal meltdown. This “critical” accord, as Biden tagged it, successfully navigated the perilous waters of partisan politics and arrived at his desk, ready for the presidential signature that would push it into law the following day. Biden makes move to save U.S. from major disaster “The outcome wasn’t an all-or-nothing victory, yet it delivered the essential economic safeguard the American populace required. We successfully sidestepped a financial catastrophe,” stated Biden, reflecting on the gravity of the crisis that loomed before the bill’s passage. In a demonstration of political collaboration overcoming the routine congressional standoff, the bill navigated Senate approval with a…

    Article 2023年6月8日
  • $120M crypto scam unveiled in India

    TL;DR Breakdown Law enforcement authorities in India managed to apprehend the key figures responsible for orchestrating a multi-million dollar fraudulent venture that exploited the cryptocurrency space.  The extent of the deception is staggering, as reports suggest that this scheme managed to amass a staggering Rs 1,000 crore (equivalent to 10 billion rupees or approximately $120 million) from unsuspecting victims. Description The Indian Express reported a significant breakthrough in the ongoing battle against cryptocurrency-related Ponzi schemes in India on August 8th. Law enforcement authorities managed to apprehend the key figures responsible for orchestrating a multi-million dollar fraudulent venture that exploited the cryptocurrency space. The scam, centered around a cryptocurrency initiative named STA Crypto Token, claimed to … Read more The Indian Express reported a significant breakthrough in the ongoing battle against cryptocurrency-related Ponzi schemes in India on August 8th. Law enforcement authorities managed to apprehend the key figures responsible for orchestrating a multi-million dollar fraudulent venture that exploited the cryptocurrency space. The scam, centered around a cryptocurrency initiative named STA Crypto Token, claimed to combine cutting-edge solar technologies with the power…

    Article 2023年8月9日
  • Investors uncertain as central banks interest rates reach apex

    TL;DR Breakdown Both European Central Bank (ECB) and the US Federal Reserve hint at a possible end to the continual rise in interest rates, creating investor uncertainty. The steady decline in inflation across the US and the Eurozone signals a potential peak in interest rates. The Eurozone economy is weakening, while the US shows relative resilience despite uncertainties. Description It’s a tense time for investors as central banks’ interest rates appear to be plateauing. The European Central Bank (ECB) and the US Federal Reserve have recently cast doubt on the previously inexorable rise of interest rates, signaling a potential peak. Steadying the ship: No more ascending rates? There’s a change in the air at … Read more It’s a tense time for investors as central banks’ interest rates appear to be plateauing. The European Central Bank (ECB) and the US Federal Reserve have recently cast doubt on the previously inexorable rise of interest rates, signaling a potential peak. Steadying the ship: No more ascending rates? There’s a change in the air at the ECB. After a consistent upward trajectory in…

    Article 2023年7月29日
  • Binance Connect unexpectedly shuts down after 2 years in operation

    TL;DR Breakdown Binance Connect, a subsidiary of the Binance platform, is set to end operations by Aug. 16, as revealed by a company representative. The decision follows payment gateway issues and scrutiny from regulatory bodies, including the UK’s Financial Conduct Authority over Binance Group’s ties with another firm, Bifinity. While facing challenges globally, including a denied license in Germany, Binance Connect achieved a significant win by securing a broker-dealer license in Dubai. Description Binance, a dominant force in the cryptocurrency industry, is once again making waves. Binance Connect, a key segment of the Binance trading universe specializing in regulated cryptocurrency transactions, is slated to cease its operations by Aug. 16.  Binance Connect’s evolving business trajectory Amidst the news of this shutdown, Biswap, a decentralized exchange powered by the … Read more Binance, a dominant force in the cryptocurrency industry, is once again making waves. Binance Connect, a key segment of the Binance trading universe specializing in regulated cryptocurrency transactions, is slated to cease its operations by Aug. 16.  Dear Biswappers, The Biswap team keeps abreast of the latest DeFi news…

    Article 2023年8月17日
  • U.S. court freezes assets of Ex-Celsius CEO amid fraud probe

    TL;DR Breakdown Federal authorities have frozen the financial assets of Alex Mashinsky, the former CEO of cryptocurrency lending platform Celsius. The U.S. District Court for the Southern District of New York unsealed a restraining order on September 5. Celsius has entered into a non-prosecution agreement with the DOJ and is under new management. Description Federal authorities have escalated actions against Alex Mashinsky, the embattled former CEO of Celsius (CEL), a once-prominent cryptocurrency lending platform. On September 5, the U.S. District Court for the Southern District of New York unsealed a restraining order that froze Mashinsky’s financial assets. This move comes as part of an ongoing criminal probe led by … Read more Federal authorities have escalated actions against Alex Mashinsky, the embattled former CEO of Celsius (CEL), a once-prominent cryptocurrency lending platform. On September 5, the U.S. District Court for the Southern District of New York unsealed a restraining order that froze Mashinsky’s financial assets. This move comes as part of an ongoing criminal probe led by the Department of Justice (DOJ) and follows allegations of securities fraud and market…

    Article 2023年9月7日
TOP