Security News

Founder of Bitzlato Cryptocurrency Exchange Pleads Guilty in Money-Laundering Scheme
2023-12-08 05:41

The Russian founder of the now-defunct Bitzlato cryptocurrency exchange has pleaded guilty, nearly 11 months after he was arrested in Miami earlier this year. Anatoly Legkodymov (aka Anatolii...

North Korea's Lazarus Group Rakes in $3 Billion from Cryptocurrency Hacks
2023-11-30 11:55

Threat actors from the Democratic People's Republic of Korea (DPRK) are increasingly targeting the cryptocurrency sector as a major revenue generation mechanism since at least 2017 to get around...

U.S. Treasury Sanctions Sinbad Cryptocurrency Mixer Used by North Korean Hackers
2023-11-30 06:09

The U.S. Treasury Department on Wednesday imposed sanctions against Sinbad, a virtual currency mixer that has been put to use by the North Korea-linked Lazarus Group to launder ill-gotten...

New macOS 'KandyKorn' malware targets cryptocurrency engineers
2023-11-02 19:22

A new macOS malware dubbed 'KandyKorn' has been spotted in a campaign attributed to the North Korean Lazarus hacking group, targeting blockchain engineers of a cryptocurrency exchange platform. At the final stage of the attack, a loader known as HLoader is used, which impersonates Discord and uses macOS binary code-signing techniques seen in past Lazarus campaigns.

North Korea's Lazarus Group Launders $900 Million in Cryptocurrency
2023-10-06 14:56

As much as $7 billion in cryptocurrency has been illicitly laundered through cross-chain crime, with the North Korea-linked Lazarus Group linked to the theft of roughly $900 million of those...

Mixin suspends deposits and withdrawals after $200m cryptocurrency heist
2023-09-25 18:34

Mixin Network confirmd on Monday that it has "Temporarily suspended" all deposit and withdrawal services after hackers broke into a database and stole about $200 million in funds from the Hong-Kong based cryptocurrency firm. In a statement posted on the social media platform formerly known as Twitter, the digital biz said the incident happened early Saturday morning, when "The database of Mixin Network's cloud service provider was attacked by hackers. After initial verification, the funds involved are approximately US$200 million."

Using Hacked LastPass Keys to Steal Cryptocurrency
2023-09-18 11:02

Remember last November, when hackers broke into the network for LastPass-a password database-and stole password vaults with both encrypted and plaintext data for over 25 million users? Well, they're now using that data break into crypto wallets and drain them: $35 million and counting, all going into a single wallet.

TikTok flooded by 'Elon Musk' cryptocurrency giveaway scams
2023-09-17 18:34

TikTok is flooded by a surge of fake cryptocurrency giveaways posted to the video-sharing platform, with almost all of the videos pretending to be themes based on Elon Musk, Tesla, or SpaceX. Threat actors have created fake cryptocurrency giveaways on social media platforms like Instagram and Twitter for years. These scams pretend to be giveaways from celebrities, cryptocurrency exchanges, and, more commonly, impersonating Elon Musk or SpaceX. The scammers set up hundreds of websites that pretend to be crypto exchanges or giveaway sites that prompt users to register an account to receive free cryptocurrency.

Hackers steal $53 million worth of cryptocurrency from CoinEx
2023-09-13 14:11

A report from blockchain security firm PeckShield says that the attack drained CoinEx of about $19 million in $ETH, $11 million in $TRON, $6.4 million in Smart Chain Coin, $6 million in Bitcoin , and approximately $295,000 in. A more recent estimation on the CoinEx losses coming from CertiK Alert raises the figure to $53 million, analyzed as seen in this document.

Google Looker Studio abused in cryptocurrency phishing attacks
2023-09-07 19:07

Cybercriminals are abusing Google Looker Studio to create counterfeit cryptocurrency phishing websites that phish digital asset holders, leading to account takeovers and financial losses. Check Point researchers have discovered that hackers are exploiting the trusted service of Google Looker Studio to craft cryptocurrency phishing pages.