Never say die: The Lazarus Group renews attacks on Web3

2022-07-26 Coincub

https://coincub.com/never-say-die-the-lazarus-group-renews-attacks-on-web3/

Thumbnail for Never say die: The Lazarus Group renews attacks on Web3

Coincub summarizes the June 2022 Horizon Bridge theft as a $100 million Web3 attack likely attributable to Lazarus Group, citing Elliptic's analysis and similarities to the earlier Ronin bridge hack. The article says the stolen ETH, USDT, WBTC, and BNB were converted to ETH through Uniswap and then sent in repeated transactions to Tornado Cash, matching laundering patterns seen in other Lazarus cryptocurrency thefts. It highlights Lazarus tradecraft against crypto and DeFi targets, including social engineering, spearphishing, malicious job-offer lures, and compromise of cryptographic keys. The report frames Web3 bridges as attractive DPRK targets because they hold large reserves, often have weaker controls, and can generate revenue for a sanctions-constrained regime.

Related Reports

« Back