Illustration of Upbit crypto exchange cyber breach by suspected North Korean Lazarus hackers, showing digital coins leaking from building amid investigation.
AI 生成的图像

North Korean Lazarus group suspected in Upbit crypto hack

AI 生成的图像

North Korea's hacking group Lazarus is suspected of being behind a recent breach of around 45 billion won ($30.6 million) in cryptocurrency from South Korea's largest exchange Upbit. Authorities plan an on-site investigation, while Upbit operator Dunamu will cover the full loss with its own assets. The incident resembles a 2019 hack at Upbit attributed to the same group.

Government and business sources said on Friday that North Korea's Lazarus group is suspected in the theft of 44.5 billion won worth of Solana-affiliated assets from Upbit, South Korea's largest cryptocurrency exchange. Dunamu, Upbit's operator, confirmed the transfer to an unauthorized wallet address on Thursday and pledged to cover the full amount using its own assets.

Authorities intend to conduct an on-site investigation at the exchange, believing Lazarus is responsible. A government official said, "Instead of attacking the server, it is possible that hackers compromised administrators' accounts or posed as administrators to make the transfer."

The methods mirror a 2019 incident where Lazarus was suspected of stealing 58 billion won in Ethereum from Upbit. A security official noted, "It is the tactic of Lazarus to transfer crypto to wallets at other exchanges and attempt money laundering," which complicates tracking.

The hack occurred amid Pyongyang's efforts to raise funds due to a foreign currency shortage. Experts suggest hackers timed the attack for Thursday, following Naver Corp.'s Wednesday announcement to acquire Dunamu as a wholly owned subsidiary through a share-swap deal. Another security official remarked, "Hackers have a strong tendency toward self-display."

This incident highlights ongoing North Korean cyber threats targeting cryptocurrency, prompting heightened responses from South Korean authorities.

人们在说什么

X users widely discuss suspicions linking North Korea's Lazarus group to the $30M Upbit hack, noting similarities to the 2019 incident. Concerns over CEX vulnerabilities dominate, with promotions for DEX security. Upbit's pledge to fully reimburse users receives positive mentions. Some express skepticism about North Korean involvement and question ongoing threats. Authorities' investigation is anticipated.

相关文章

Illustration of North Korean hackers in a cyber command center stealing a record $2 billion in cryptocurrency from global exchanges like Bybit.
AI 生成的图像

North Korea steals record $2 billion in cryptocurrency in 2025

由 AI 报道 AI 生成的图像

North Korean hackers stole a record $2.02 billion in cryptocurrency in 2025, according to a new Chainalysis report, surpassing the previous year's haul by 51 percent and bringing their total to $6.75 billion. The thefts, which accounted for 60 percent of the global total of $3.4 billion stolen, were driven by fewer but larger attacks, including a $1.5 billion breach of the Dubai-based Bybit exchange in February. Experts attribute the success to sophisticated tactics like embedding IT workers in crypto firms and impersonating recruiters.

基于Chainalysis报告记录的朝鲜黑客在2025年窃取20.2亿美元加密货币,美国国务院官员在联合国会议上表示,平壤去年很可能窃取了超过20亿美元,以支持其核与导弹计划。该数字与多边制裁监测小组发现的2025年1月至9月窃取超过16亿美元的结论一致。

由 AI 报道

韩国海关当局周一宣布,他们破获了一个国际犯罪团伙,该团伙被指控通过未经授权的外汇交易计划洗钱约1500亿韩元(1.017亿美元)的加密货币。三名中国籍嫌疑人因违反外汇交易法被移送检察机关。嫌疑人据称在2021年9月至去年6月期间,使用国内外加密货币账户和韩国银行账户洗钱1489亿韩元。

韩国总统府将于12月25日就电商巨头Coupang发生的大规模数据泄露召开紧急会议。此次泄露影响了3370万名客户,破坏了该公司基于社会信任的配送模式。一位前美国安全顾问批评韩国的审查是对一家美国上市公司的激进行为。

由 AI 报道

A South Korean man in his 30s who laundered $68,000 in cryptocurrency for a voice phishing gang has had his suspended sentence revoked. The Suwon High Court imposed a four-year prison term after he appealed for leniency. The ruling highlights his key role in the scam operations.

A 2022 data breach at password manager LastPass has resulted in prolonged cryptocurrency thefts, according to blockchain intelligence firm TRM Labs. The incident involved stolen user vaults that facilitated around $35 million in losses extending into 2025.

由 AI 报道

North Korean hackers have begun exploiting a critical vulnerability known as React2Shell in malware attacks. This follows similar actions by Chinese hackers, indicating a growing interest in this security flaw. The issue poses significant risks to affected systems.

 

 

 

此网站使用 cookie

我们使用 cookie 进行分析以改进我们的网站。阅读我们的 隐私政策 以获取更多信息。
拒绝