« 2024 »

654 reports

2024-10-22 • Rekt

Allegations around the Cosmos Liquid Staking Module centered on claims that developers later linked to North Korea contributed heavily to LSM code before leaving the project in December 2022. The excerpt says the FBI warned Zaki Manian about DPRK links in…

#ITWorker #Cosmos
2024-10-21 • Rekt

Tapioca DAO lost about $4.4 million after a social-engineering-linked compromise of contract ownership on Arbitrum enabled theft of TAP and USDO-related funds. The attacker abused the TAP vesting contract's Emergency Rescue function to withdraw roughly 30…

#Cryptocurrency #TapiocaDAO
2024-10-18 • Radiant Capital

This breach occurred during a routine multi-signature emissions adjustment process, which takes place periodically to adapt to market conditions and utilization rates. The malicious actors exploited this normalcy, using the process to collect multiple com…

#RadiantCapital
2024-10-18 • Logpresso

Logpresso describes a CTI report focused on attribution methodology for North Korean cyber operations and defensive coverage for attacks that occur during weekends or early-morning hours. The source says the report examines how North Korean attacker infor…

2024-10-17 • Rekt

Rekt reports that Radiant Capital lost more than $53 million after an attacker gained control of at least three signers in the protocol's 3-of-11 multisig setup. The attacker transferred ownership of lending pool contracts to malicious contracts, upgraded…

#RadiantCapital
2024-10-17 • Pyongyang Papers

Pyongyang Papers alleges that Guinea Information Technology Development Corporation and N’deye & Tou Dista Corporation contracted at least 70 North Korean IT workers, extending a sanctions evasion model that sends overseas developers to earn revenue for P…

#ITWorker