Bitcoin is silver, compromise is gold: Emerging North Korea-based threat actors on the hunt for cryptocurrency

2021-09-08 PWC

https://www.youtube.com/watch?v=BOZecjABjSk&list=PLnKL6-WWWE_UkE-u0E0z148a66WQIEFFo&index=6

Thumbnail for Bitcoin is silver, compromise is gold: Emerging North Korea-based threat actors on the hunt for cryptocurrency

This presentation focuses on North Korea-based threat actors pursuing cryptocurrency and related financial targets as part of a broader pattern of revenue-driven operations. PwC highlights Black Alicanto, also known as DangerousPassword, CryptoCore, CryptoMimic, or LeeryTurtle, and the less publicly documented Black Dev 2 campaign called Operation Gold Hunting. The source says the talk examines spearphishing themes, malicious documents, infrastructure, and TTPs used against cryptocurrency wallets, venture-capital firms, and investment organizations worldwide. It also connects these activity clusters back to Lazarus Group/Black Artemis, making the session relevant for tracking DPRK-linked crypto theft tradecraft and infrastructure fingerprinting.

Related Actors

Related Reports

2022-04-29 • 38% Match
#Trend #BlackBanshee #BlackAlicanto #T1082 #T1059.003 #T1090 #T1005 #T1070.004 #T1041 #T1113 #T1555 #T1560 #T1071.001 #T1112 #T1083 #T1204.001 #T1036 #T1027 #T1204.002 #T1071 #T1124 #T1204 #T1057 #T1059.005 #T1566.001 #T1547.001 #T1053.005 #T1132.001 #T1566 #T1059 #T1003 #T1105 #T1620 #T1486 #T1135 #T1078 #T1548 #T1190 #T1592 #T1049 #T1087 #T1589 #T1074.001 #T1591 #T1547 #T1068 #T1573 #T1095 #T1048 #T1608 #T1070 #T1056 #T1036.007 #T1614.001 #T1033 #T1110 #T1221 #T1132 #T1570 #T1021 #T1615 #T1482 #T1210 #T1069 #T1595 #T1039 #T1016.001
Shares tag: BlackAlicanto • Same author: PWC
« Back