Illustration of Upbit crypto exchange cyber breach by suspected North Korean Lazarus hackers, showing digital coins leaking from building amid investigation.
AIによって生成された画像

North Korean Lazarus group suspected in Upbit crypto hack

AIによって生成された画像

North Korea's hacking group Lazarus is suspected of being behind a recent breach of around 45 billion won ($30.6 million) in cryptocurrency from South Korea's largest exchange Upbit. Authorities plan an on-site investigation, while Upbit operator Dunamu will cover the full loss with its own assets. The incident resembles a 2019 hack at Upbit attributed to the same group.

Government and business sources said on Friday that North Korea's Lazarus group is suspected in the theft of 44.5 billion won worth of Solana-affiliated assets from Upbit, South Korea's largest cryptocurrency exchange. Dunamu, Upbit's operator, confirmed the transfer to an unauthorized wallet address on Thursday and pledged to cover the full amount using its own assets.

Authorities intend to conduct an on-site investigation at the exchange, believing Lazarus is responsible. A government official said, "Instead of attacking the server, it is possible that hackers compromised administrators' accounts or posed as administrators to make the transfer."

The methods mirror a 2019 incident where Lazarus was suspected of stealing 58 billion won in Ethereum from Upbit. A security official noted, "It is the tactic of Lazarus to transfer crypto to wallets at other exchanges and attempt money laundering," which complicates tracking.

The hack occurred amid Pyongyang's efforts to raise funds due to a foreign currency shortage. Experts suggest hackers timed the attack for Thursday, following Naver Corp.'s Wednesday announcement to acquire Dunamu as a wholly owned subsidiary through a share-swap deal. Another security official remarked, "Hackers have a strong tendency toward self-display."

This incident highlights ongoing North Korean cyber threats targeting cryptocurrency, prompting heightened responses from South Korean authorities.

人々が言っていること

X users widely discuss suspicions linking North Korea's Lazarus group to the $30M Upbit hack, noting similarities to the 2019 incident. Concerns over CEX vulnerabilities dominate, with promotions for DEX security. Upbit's pledge to fully reimburse users receives positive mentions. Some express skepticism about North Korean involvement and question ongoing threats. Authorities' investigation is anticipated.

関連記事

Illustration of North Korean hackers in a cyber command center stealing a record $2 billion in cryptocurrency from global exchanges like Bybit.
AIによって生成された画像

北朝鮮、2025年に過去最高の20億ドルの暗号通貨を盗む

AIによるレポート AIによって生成された画像

北朝鮮のハッカーが2025年に過去最高の20億2000万ドルの暗号通貨を盗んだと、新たなChainalysisレポートが明らかにした。前年の収穫を51%上回り、総額を67億5000万ドルに押し上げた。これらの盗難は、世界全体で34億ドル盗まれたうちの60%を占め、回数は少ないものの大規模攻撃によるもので、2月のドバイ拠点のBybit取引所に対する15億ドルの侵害が含まれる。専門家は、暗号企業にITワーカーを潜り込ませたり、採用担当者を装ったりする洗練された戦術による成功だと指摘している。

Building on a Chainalysis report documenting $2.02 billion in 2025 cryptocurrency thefts by North Korean hackers, a U.S. State Department official told a U.N. meeting that Pyongyang likely stole more than $2 billion last year to support its nuclear and missile programs. The figure aligns with Multilateral Sanctions Monitoring Team findings of over $1.6 billion stolen from January to September 2025.

AIによるレポート

South Korea's customs authorities announced on Monday that they have uncovered an international crime ring accused of laundering about 150 billion won ($101.7 million) worth of cryptocurrency through an unauthorized foreign exchange scheme. Three Chinese nationals have been referred to the prosecution for violations of the foreign exchange transactions act. The suspects allegedly laundered 148.9 billion won between September 2021 and June of last year using domestic and overseas cryptocurrency accounts and South Korean bank accounts.

South Korea's presidential office is set to hold an emergency meeting on December 25 over a massive data breach at e-commerce giant Coupang. The leak affected 33.7 million customers, undermining the company's delivery model built on social trust. A former U.S. security adviser has criticized Korean scrutiny as aggressive targeting of a U.S.-listed firm.

AIによるレポート

ボイスフィッシング集団のために6万8000ドルの暗号通貨をマネーロンダリングした30代の韓国人男性の執行猶予判決が取り消された。水原高裁は彼が情状酌量を求めて控訴した後、懲役4年の実刑判決を下した。この判決は彼の詐欺運営における主要な役割を強調している。

パスワードマネージャーLastPassの2022年のデータ侵害が、数年にわたる暗号通貨窃盗を引き起こした。ブロックチェーンインテリジェンス企業TRM Labsによると。この事件では盗まれたユーザーのボールトが、2025年まで続く約3,500万ドルの損失を可能にした。

AIによるレポート

北朝鮮のハッカーがマルウェア攻撃でReact2Shellとして知られる重大な脆弱性を悪用し始めました。これは中国のハッカーによる同様の行動に続き、このセキュリティ欠陥への関心の高まりを示しています。この問題は影響を受けたシステムに重大なリスクをもたらします。

 

 

 

このウェブサイトはCookieを使用します

サイトを改善するための分析にCookieを使用します。詳細については、プライバシーポリシーをお読みください。
拒否