Breaking
March 13, 2025

North Korea’s Lazarus Group is waging a cyberwar on crypto—And developers are the new target Nellius Irene | usagoldmines.com

The Lazarus Group, North Korea’s infamous hacking unit, has carried out new cyberattacks in cryptocurrency with an increasing focus on developers. 

Security researchers have discovered over the last few months that the group has been sabotaging malicious npm packages that steal credentials, exfiltrate cryptocurrency wallet data, and create a persistent backdoor in development environments. It marks a major escalation in their years-long cyberwar, which has already witnessed some of the biggest crypto heists in history.

According to a new investigation by the Socket Research Team, a branch of Lazarus Group has penetrated the npm repository, one of the most popular package managers for JavaScript developers. 

The hackers then used typosquatting techniques to publish malicious versions of popular npm packages, deceiving unsuspecting developers into downloading the programs. The packages include is-buffer-validator, yoojae-validator, event-handle-package, array-empty-validator, react-event-dependency, and auth-validator. 

When executed, the compromised packages install BeaverTail malware. This “advanced” tool can steal login credentials, search through browser files for saved passwords and dump files from cryptocurrency wallets, such as Solana and Exodus.

Security researchers noted that the stolen data were sent to the hardcoded command-and-control (C2) server, a common modus operandi employed by the Lazarus Group to relay confidential data back to their actors. 

Its purpose is to steal and transmit compromised data without being detected, and it was particularly threatening in the world of developers building financial and blockchain applications, says Kirill Boychenko, a threat intelligence analyst at Socket Security.

Lazarus launched an offensive against Bybit, stealing nearly $1.46 billion

In addition to these supply chain attacks, Lazarus Group has also been tied to one of the biggest cryptocurrency thefts on record. Its first action is suspected to have occurred on February 21, 2025, when group-linked hackers breached Bybit, one of the world’s biggest crypto exchanges, making off with an estimated $1.46 billion in crypto assets.

The attack was extremely sophisticated and was allegedly launched from a compromised device of a Safe{Wallet} employee, a Bybit technology partner. Hackers leveraged a vulnerability in the infrastructure of Bybit’s Ethereum wallet and altered smart contract logic to redirect funds to their wallets.

Although Bybit addressed the problem immediately, a statement from CEO Ben Zhou revealed that 20% of the stolen money had already been laundered via mixing services and was untraceable.

This latest series of attacks is part of North Korea’s broader effort to evade international sanctions against it by stealing and laundering cryptocurrency.

According to a 2024 United Nations report, North Korean cybercriminals were responsible for over 35% of global cryptocurrency thefts over the past year, accumulating over $1 billion in stolen assets. Lazarus Group is not just a cybercrime syndicate but also a geopolitics threat since stolen money is reportedly directly funnelled into the nation’s nuclear weapons and ballistic missile programs.

Such Lazarus Group attacks have also progressed over the years, from direct exchange hacks to supply chain attacks and even developer and software repository attacks.

By adding backdoors to open-source platforms like npm, PyPI, and GitHub, the group expands its potential attack range to many systems, eliminating the need to hack directly into cryptocurrency exchanges.

Security experts are calling for stricter protections for crypto developers 

Noting these growing risks, cyber specialists are pushing for stricter security for developers and crypto users and protection from hackers. One such best practice is verifying the realness of npm packages before installation because typosquatting continues to be one of the most common methods cyber criminals use. 

Socket AI Scanner also tracks anomalies in your software dependencies or npm audit, which informs you whether any compromised packages are in use and allows you to remove them from your application before they can do any real damage.

The guide recommends that users and developers take the initiative to protect themselves by enabling multi-factor authentication (MFA) for exchange wallets, developer platforms like GitHub, and other accounts. 

Network monitoring is now regarded as the first line of defence as the compromised system will usually send messages back to an external command and control (C2) server, which then uploads the malicious updates on the infected computer. Blocking illegitimate outbound traffic can cut hackers’ access to this stolen data.

Bybit launches recovery bounty as crypto security battle heats up

Following the Bybit hack, the exchange also initiated a Recovery Bounty Program, rewarding anyone who helps find the stolen assets. The program allows for rewards of up to 10% of the money recovered.

At the same time, the larger crypto ecosystem is busy ramping up security practices and alerting developers to protect against the same practices that can lead down this threatening path.

But as Lazarus Group’s tactics advance ever more quickly, network defenders say the war on crypto has only just begun.

Cryptopolitan Academy: Coming Soon – A New Way to Earn Passive Income with DeFi in 2025. Learn More

 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

Trump warns about further tariffs in response to EU’s retaliation Noor Bazmi | usagoldmines.com

“Rich Dad’s Prophecy” — Major Crash Larger than 1929 Predicted as Kiyosaki buys Bitcoin at Discounte...

Is Dogecoin Going To Stay In The Doghouse? Many Compare Remittix To XRP As Market Shake-Up Is On The...

Bitcoin Shows Signs of Recovery—Is the Whale Sell-Off Finally Over? Samuel Edyme | usagoldmines.com

Solana (SOL) Faces Many Challenges—Can Bulls Hold the Line? Aayush Jindal | usagoldmines.com

Elon Musk’s D.O.G.E fails to stop US federal spending from hitting all-time highs Jai Hamid | usagol...

TRUMP Token Takedown—Did Insiders Plan The Crash? Christian Encila | usagoldmines.com

XRP Bulls Ready to Charge—Upside Break May Spark Rally Aayush Jindal | usagoldmines.com

Beta version of USDC now live on Japan’s SBI VC Trade platform Graham Smith | usagoldmines.com

MKR Price Prediction 2025-2031: Will MKR reach $2000? Micah Abiodun | usagoldmines.com

Bitcoin Price Recovery Possible Above $85K—Will Bulls Step In? Aayush Jindal | usagoldmines.com

Increased Investor Interest Could Spark 1500% Surge for Pepe Coin (PEPE) and Rising Penny Crypto at ...

Ethereum Price Hits Resistance—Will The Recovery Stall Here? Aayush Jindal | usagoldmines.com

Warren Buffett is the only person on Wall Street not in the red right now Jai Hamid | usagoldmines.c...

S&P 500 ends market session with gains for the first time in 6 days Jai Hamid | usagoldmines.com

Dogecoin Struggles Push DOGE Millionaires To Pour Millions Into This Trending Token For 3,410% Gains...

XRP Faces Bearish MVRV Crossover—Price Plunge To Continue? Keshav Verma | usagoldmines.com

Crypto News | Turbulent times for Bitcoin as ETF outflows continue in March Andjela Radmilac | usago...

Bitcoin Price Risks Further Crash As S&P Monthly LMACD Turns Bearish, Why Bulls Have Only 20 Day...

Crypto News | EU Regulators Probe OKX’s Web3 Role in Bybit Crypto Laundering Case Chayanika Deka | ...

Crypto News | Tether CEO touts USDT as key US ally in maintaining the dollar’s dominance Gino Matos ...

State-backed Bolivian energy firm YPFB turns to crypto amid painful dollar shortage Hannah Collymore...

Rep. Tom Emmer Asserts CBDC Technology Is “Inherently Un-American” Cryptonews | usagoldmines.com

Sec’s Case Against Ripple Set to Close, Sources Say: Fox Business Julia Smith | usagoldmines.com

Ethereum Price Set to Dump to $1,500 Next – Buy the Dip? Joel Frank | usagoldmines.com

Bolivia Grants State-run Company Permission to Use Crypto to Buy Oil and Gas Tim Alper | usagoldmine...

Crypto News | Binance whale selling slows, but Bitcoin miners may add market pressure Gino Matos | u...

Nebraska passes act on crypto ATMs to protect consumers Derek H Andersen | usagoldmines.com

OKX acquires MiFID II license in Europe, prepares to offer regulated derivatives Hristina Vasileva |...

Starknet will become the first L2 to settle on both Bitcoin and Ethereum Cryptopolitan News | usagol...

This Is The Last Opportunity To Buy Dogecoin ‘Relatively Cheap,’ Predicts Analyst Jake Simmons | usa...

Crypto News | Law enforcement arrest Garantex co-founder in Indian coastal town Assad Jafri | usagol...

Fed and Treasury worked together to let Elon Musk’s D.O.G.E into US payment system Jai Hamid | usago...

JP Morgan cuts price target on Tesla shares Florence Muchai | usagoldmines.com

Singapore and Vietnam Agree on Digital Asset Regulatory Cooperation Hongji Feng | usagoldmines.com

India Arrests Garantex Founder Aleksej Bešciokov; U.S. Extradition Expected Hassan Shittu | usagoldm...

California Senator Backs Bitcoiner for $500B Pension Fund Board Seat Hassan Shittu | usagoldmines.co...

HANetf Launches New ETCs for Leveraged or Short Bitcoin and Ethereum Exposure Hassan Shittu | usagol...

Expert Calls Dogecoin And Shiba Inu ‘Dead’: Reveals The New Altcoin Set For Historic 16,040% Surge C...

Bitcoin Lost And Retested The 200-Day MA As Resistance – Here’s What Happened Last Time Sebastian Vi...

Crypto News | Russian central bank proposes 3-year crypto trial for select investors Assad Jafri | u...

Crypto News | Public companies doubled Bitcoin holdings in 2024 as accumulation surpassed previous 5...

Telegram Bot BANANA Surges 50% Amid Launch Hype, But Can It Hold? Mustafa Mulla | usagoldmines.com

SEC vs Ripple: Case Insiders Confirm the End is on Horizon to Pave Way for Mainstream Adoption of $X...

Steven Mnuchin, the one man who stood between Trump and a recession – Now he is gone Florence Muchai...

Stablecoins make up 1% of the US M2 broad money supply, signal further crypto dollarization Hristina...

Mark Carney, Doug Ford discuss trade ahead of Washington trip as U.S. tariffs take effect Nellius Ir...

House Democrats pile on Trump criticism after ‘quid pro quo’ Tesla endorsement Hannah Collymore | us...

Binance Secures Landmark $2B Investment From Abu Dhabi-Based MGX Tanzeel Akhtar | usagoldmines.com

Bitcoin Faces Increased Selling Pressure Amid Miner Sell-Offs – CryptoQuant Veronika Rinecker | usag...

Crypto Pundits Back This $0.02 Crypto Coin As The Next Market Titan Ahead Of Ethereum (ETH) Cryptopo...

This Ethereum Monthly RSI Chart Just Crashed To New Lows To Break 2022 Records, What Happened Last T...

Crypto News | Pepe Outperforms Bitcoin as Crypto Market Recovers and MIND of Pepe Sees Gains Felix ...

Crypto News | Pi Network Tops Crypto Gainers with 20% Jump as Bitcoin Recovers and Best Wallet ICO ...

Crypto News | HYPE Sinks 8.5% as Whale Liquidation Causes $4M Hyperliquid Vault Loss Wayne Jones | ...

Crypto News | SEC reportedly preparing to drop Ripple lawsuit, XRP jumps 5% Gino Matos | usagoldmine...

Ripple’s XRP case with the SEC is about to end, Ripple is still being treated harshly Jai Hamid | us...

Bank of Russia proposes to allow ‘highly qualified’ investors to buy and sell cryptocurrencies Colli...

Bitcoin Faces ‘Final Leg Down’ to $73K – Here’s What Could Happen Next  Arslan Butt | usagoldmines.c...

Solana Price Pumps 12% as Whales Inject $6 Billion – Is the Bear Market Over? Simon Chandler | usago...

Pi Coin Faces Make-or-Break Moment – Can It Survive the Sell-Off? Simon Chandler | usagoldmines.com

Cardano Bulls Hold ADA at $0.70 – Is This the Perfect Entry Before a Breakout? Alejandro Arrieche | ...

Lagarde says ‘impossible’ for the ECB to always meet the 2% inflation target Florence Muchai | usago...

$1,000 In XRP Or $500 In Mutuum Finance: Which One Will Mint New Crypto Millionaires in 2025? Crypto...

After Pi Coin’s Massive Surge, This $0.006 Crypto Could Be the Next to Skyrocket Cryptopolitan Media...

New ONDO Addresses Surge 390% In 24 Hours – A Sign Of Growing Interest In Ondo Finance Sebastian Vil...

Crypto News | FLock Web3 Agent Model accuracy surpasses GPT-4o and Gemini Chainwire | usagoldmines....

Crypto News | Star Atlas Expands Reach with Shaga Partnership, Enabling Cross-Platform Cloud Gaming...

Crypto News | Abu Dhabi’s MGX invests $2B in Binance, marking largest institutional stablecoin-backe...

Ripple CTO David Schwartz Explains RLUSD Stablecoin’s Major Feature Mustafa Mulla | usagoldmines.com

Hearing of US House Finance Committee examines stablecoin bills, CBDC opposition Derek H Andersen | ...

Popular Reddit Crypto Community Reveals Their Top 3 Altcoins Of 2025 For 2500% ROI  Cryptopolitan Me...

We Asked ChatGPT Which Coin We Should Invest $500 In To Become A Millionaire In 2025, It Was Not Eth...

Gemini expands institutional crypto trading in Europe with USD support Nellius Irene | usagoldmines....

RedStone Selected as Official Blockchain Oracle for Securitize’s RWA Expansion with BlackRock Sead F...

JD Vance Meme Coin PWEASE Blasts Up 150% in 24 Hours – Can it Overtake TRUMP? Arslan Butt | usagoldm...

dYdX Updates Roadmap for Faster Trading and Enhanced User Experience Hassan Shittu | usagoldmines.co...

AI Coin Render Bounces 18% as $242M Floods In – Is the Sell-Off Finally Over? Tim Hakki | usagoldmin...

Government Official in South Korea Forged Documents to Funnel Funds into Crypto Jimmy Aki | usagoldm...

South Korea’s Regulator to Release Crypto Investment Guidelines by Q3 2025 Jimmy Aki | usagoldmines....

Remittix Holders Believe It Has 100x Potential! How Has It Become Crypto’s Standout ICO With Close T...

Why old-gen consoles are still getting game releases: PS5 and Xbox Series need more games Florence M...

SUI Bulls Test Key Resistance — A Breakout Or Rejection Ahead? Godspower Owie | usagoldmines.com

Is Bitcoin in a bear market or a bull market correction? NewsBTC | usagoldmines.com

Abu Dhabi’s MGX invests $2B in Binance, the largest crypto investment ever Jai Hamid | usagoldmines....

Why is the crypto market suddenly up? XRP up 5.4%, BTC up 3% Florence Muchai | usagoldmines.com

Wall Street opens for business on good ground, S&P 500 up 1% Florence Muchai | usagoldmines.com

Dogecoin Price Prediction: DOGE’s Meme Magic Fades, But Experts Say This Token Will Skyrocket 5000% ...

XRP Crashing? Analyst Sounds Alarm On Looming Price Threat Christian Encila | usagoldmines.com

Solo Bitcoin Miner Earns 3.15 Bitcoins — You Can Earn Free $BTC Too With BTC Bull Token Airdrops Kri...

Crypto News | Bitcoin Price Rally? Stablecoin Movement Suggests Accumulation Phase Chayanika Deka |...

Russia’s Central Bank Plans Limited Crypto Trading for Select Investors Mustafa Mulla | usagoldmines...

MGX Makes Historic $2 Billion Investment in Binance, Marks Largest Single Investment in Crypto Shaya...

XRP Poised For Meteoric Moonshot As This Fund Giant Files SEC Paperwork To Launch Spot XRP ETF Brend...

Gemini Adds USD Payment Rails for European Institutional Customers Sead Fadilpašić | usagoldmines.co...

SEC Acknowledges Nasdaq Filing for Grayscale’s HBAR Trust ETF Hassan Shittu | usagoldmines.com

Dutch Regulator Fines BUX €1.6M for Using Finfluencers to Attract Customers Ruholamin Haqshanas | us...

Emerging Altcoin Projected To Hit $1 Before Sui (SUI) Price Reaches $10: Whales Are Accumulating It ...

Crypto News | Ripple v. SEC Lawsuit End Soon? Legal Expert Comments Dimitar Dzhondzhorov | usagoldm...

Crypto News | Hyperliquid hit by $4 million loss after whale’s high-risk trading incident Oluwapelum...

Leave a Reply