• Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Coming Soon
  • Intelligence
    • Job Board
    • Events
    • Contract Awards
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
  • Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Coming Soon
  • Intelligence
    • Job Board
    • Events
    • Contract Awards
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
Login
Join Free
Home
Asia
Africa
Europe
Latin America
Middle East
North America
Asia
Africa
Europe
Latin America
Middle East
North America
Asia
Africa
Europe
Latin America
Middle East
North America
Coming Soon
Job Board
Events
Contact Awards
USMC Deception Manual
Login
Join Free
Home Global Operations

North Korean APTs Engage in Covert Cyber Attacks to Steal Crypto and Security Research

  • Editor Staff
  • January 16, 2024
Selective focus on man hand typing laptop/PC/computer keyboard in night dark tone low key
(Shutterstock / Photo Contributor silvabom)
Share on FacebookShare on TwitterLinkedIn

Security experts at Phylum have uncovered a complex cyber campaign involving npm packages, which has been active since November. These packages, when installed, trigger a series of covert operations including downloading remote files, executing functions, and then carefully erasing evidence of their activities. This leaves the package directories appearing harmless, effectively concealing the malicious actions that have taken place. Further investigation has identified nearly two dozen more packages linked to this ongoing campaign, which is believed to be orchestrated by a North Korean APT group, namely Lazarus.

This campaign, characterized by crypto-themed package names, is designed to establish persistent access to the systems of developers installing these packages and, by extension, to penetrate the larger organizations they are part of, particularly in the cryptocurrency sector. The dual objective of this operation, as identified by Recorded Future, is to amass substantial cryptocurrency assets and evade the stringent international sanctions on North Korea. Since 2017, the North Korean APT has allegedly stolen around $3 billion in cryptocurrency, underlining the significant impact of these thefts on the nation’s economy and military funding.

According to another report by SecurityWeek from mid-2023, North Korean APTs were caught hacking security researchers. This operation involved the use of rigged software and exploitation of zero-day vulnerabilities. Google’s Threat Analysis Group (TAG) intercepted an active North Korean APT actor targeting security researchers using social media platforms and encrypted messaging apps. The attackers established trust through prolonged interactions and then sent malicious files containing zero-day exploits to take control of the researchers’ computers.

These incidents highlight a worrying trend of North Korean APTs targeting individuals and organizations that contribute to cyber defense capabilities. The use of zero-day vulnerabilities, which are unknown to software vendors and have no available patches, indicates the high level of sophistication and resources available to these threat actors.

Dive Deeper

 

Editor Staff

Editor Staff

The Editor Staff at SOFX comprises a diverse, global team of dedicated staff writers and skilled freelancers. Together, they form the backbone of our reporting and content creation.

Subscribe
Login
Notify of
Please login to comment
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
ADVERTISEMENT

Trending News

Israel Hits Centrifuge Facility and Missile Sites in Tehran Amid Ongoing Air Campaign

Israel Hits Centrifuge Facility and Missile Sites in Tehran Amid Ongoing Air Campaign

by Editor Staff
June 23, 2025
0

Israeli fighter jets struck key nuclear and military sites across Iran, including a centrifuge production facility in Tehran that Israeli...

Pentagon Reveals How B-2 Bombers Carried Out Secret Strike on Iran’s Nuclear Sites

Pentagon Reveals How B-2 Bombers Carried Out Secret Strike on Iran’s Nuclear Sites

by Editor Staff
June 23, 2025
0

Pentagon officials on Sunday revealed how a fleet of B-2 stealth bombers executed a surprise strike on Iran’s key nuclear...

Hormuz Shipping Faces Unseen Threat from Signal Jamming

Hormuz Shipping Faces Unseen Threat from Signal Jamming

by Editor Staff
June 23, 2025
0

A sharp escalation in GPS jamming across the Arabian Gulf and Strait of Hormuz is disrupting maritime navigation for hundreds...

ADVERTISEMENT
ADVERTISEMENT
Next Post
Cropped shot of a army doctor a giving his patient advice during a consult

Ibogaine Shows Promising Results in Treating TBI Among Military Veterans

HOLLYWOOD - MAY 17, 2010: Actor Tom Cruise at ceremony where Jerry Bruckheimer was immortalized putting his handfootprints in cement Grauman's Chinese Theatre May 17, 2010 Hollywood, California.

Paramount Pictures Reportedly Developing 'Top Gun 3'

997 Morrison Dr. Suite 200, Charleston, SC 29403

News

  • Global Operations
  • Special Interest
  • Industry
  • Global Operations
  • Special Interest
  • Industry

Services

  • Membership Page
  • Merchandise
  • Recruiting
  • Membership Page
  • Merchandise
  • Recruiting

Resources

  • About Us
  • Contact Us
  • Editorial Policy
  • Privacy Policy
  • About Us
  • Contact Us
  • Editorial Policy
  • Privacy Policy
No Result
View All Result
  • Home
  • News
    • Global Operations
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
    • Industry
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
    • Special Interest
      • Asia
      • Africa
      • Europe
      • Latin America
      • Middle East
      • North America
      • Oceana
  • Market
    • Coming Soon
  • Intelligence
    • Job Board
    • Events
    • Contract Awards
    • USMC Deception Manual
  • Resources
    • Contact Us
    • About Us
    • Editorial Policy
    • Privacy Policy
Subscribe
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.

Log in to your account

Lost your password?
wpDiscuz