Security News > 2023 > January > FBI Says North Korean Hackers Behind $100 Million Horizon Bridge Crypto Theft

The U.S. Federal Bureau of Investigation on Monday confirmed that North Korean threat actors were responsible for the theft of $100 million in cryptocurrency assets from Harmony Horizon Bridge in June 2022.
The law enforcement agency attributed the hack to the Lazarus Group and APT38, the latter of which is a North Korean state-sponsored threat group that specializes in financial cyber operations.
The FBI further stated the Harmony intrusion leveraged an attack campaign dubbed TraderTraitor that was disclosed by the U.S. Cybersecurity and Infrastructure Security Agency in April 2022.
"On Friday, January 13, 2023, North Korean cyber actors used RAILGUN, a privacy protocol, to launder over $60 million worth of ethereum stolen during the June 2022 heist," the FBI said.
The cryptocurrency heists are part of malicious cyber activity orchestrated by North Korea's intelligence apparatus, the Reconnaissance General Bureau, to generate substantial revenue for the sanctions-hit nation by stealing money from financial institutions.
Data gathered by blockchain analytics company Chainalysis shows that ransomware actors extorted at least $456.8 million from victims in 2022, down from a high of $765 million and $766 million in 2020 and 2021, respectively.
News URL
https://thehackernews.com/2023/01/fbi-says-north-korean-hackers-behind.html
Related news
- Hackers Exploit Aviatrix Controller Vulnerability to Deploy Backdoors and Crypto Miners (source)
- FBI: North Korean IT workers steal source code to extort employers (source)
- North Korean IT workers are extorting employers, FBI warns (source)
- North Korean Hackers Deploy FERRET Malware via Fake Job Interviews on macOS (source)
- North Korean Hackers Exploit PowerShell Trick to Hijack Devices in New Cyberattack (source)
- zkLend loses $9.5M in crypto heist, asks hacker to return 90% (source)
- North Korean hackers spotted using ClickFix tactic to deliver malware (source)
- Hackers pose as employers to steal crypto, login credentials (source)
- North Korean Hackers Target Freelance Developers in Job Scam to Deploy Malware (source)