« 2021 »

211 reports

2021-08-08 • Bushidotoken

The article revisits Lazarus Group and North Korea’s Reconnaissance General Bureau through the lens of the BBC “Lazarus Heist” podcast and recent public reporting. It highlights financially motivated operations against cryptocurrency organizations, includ…

#Lazarus
2021-08-03 • Ahnlab

AhnLab describes continued distribution of malicious Word documents using a “BIO form” lure, likely aimed at professors or research-center heads involved in North Korea-related topics. The DOCX file uses an external link to fetch a malicious BIO.dotm temp…

#Phishing
2021-07-26 • Merklescience

Nexus Mutual founder Hugh Karp lost 370,000 NXM, worth more than $8 million at the time, after an attacker tricked him into approving a spoofed MetaMask transaction. The stolen NXM was converted to WNXM, moved through several Ethereum addresses, swapped i…

#NexusMutual
2021-07-26 • Qihoo360

360 Threat Intelligence Center profiles Kimsuky activity in the first half of 2021, describing a North Korea-linked espionage cluster focused on South Korean government, diplomatic, defense, academic, and think-tank targets. The campaigns relied heavily o…

#Kimsuky
2021-07-26 • Kaspersky

Kaspersky's Q2 2021 APT trends material includes no DPRK-linked section in the provided excerpt, so the supported content is limited to other regional intrusion clusters. The excerpt describes Exchange exploitation tied to FourteenHi and possible ShadowPa…

#Trend
2021-07-20 • Qihoo360

Sangfor attributes a social-engineering operation against cryptocurrency-sector targets to Lazarus based on victimology and technical overlap with earlier Lazarus campaigns against security researchers. Operators allegedly contacted targets over instant m…

#Lazarus
2021-07-19 • Forj

Bondly's postmortem says an attacker compromised corporate wallets and gained control of Bondly token and NFT assets after accessing a password account tied to CEO Brandon Smith's hardware wallet recovery phrase. The attacker transferred 373,088,023 BONDL…

#Bondly
2021-07-15 • Rekt

Bondly Finance suffered an infinite-mint exploit that generated 373 million new BONDLY tokens and produced about $5.9 million in attacker profit. The attacker minted and dumped 100,000 tokens at a time, causing the BONDLY price to fall by about 80%. The e…

#Bondly