FBI verbindet nordkoreanische Hacker mit $308 Millionen Krypto-Raub

Teilen:

The North Korean hacker group ‘TraderTraitor’ stole $308 million worth of cryptocurrency in the attack on the Japanese exchange DMM Bitcoin in May.

In a short post, the FBI attributed the attack to the state-affiliated threat actor TraderTraitor, also tracked as Jade Sleet, UNC4899, and Slow Pisces.

The crypto heist occurred in May 2024 and forced the platform to restrict account registration, cryptocurrency withdrawals, and trading until the completion of the investigations.

Earlier this week, a report from blockchain intelligence firm Chainalysis attributed the attack to North Korean threat actors but did not share any specific details.

Attack chain

In a short announcement, the FBI says that TraderTraitor’s attack on DMM Bitcoin started in late March 2024, when one of the attackers pretended to be a legitimate recruiter on LinkedIn and approached an employee of Ginco, a Japanese enterprise cryptocurrency wallet software company.

The hacker sent the Ginco employee, who had access to his employer’s wallet management system, a job proposal involving a pre-employment test on GitHub. This tactic has been popular with North Korean threat groups this year [1, 2].

The victim received a piece of malicious Python code to copy to their personal GitHub page in order to carry out the conduct the test. The code, however, compromised the computer and allowed TraderTraitor to infiltrate Ginco and then move laterally to DMM.

“After mid-May 2024, TraderTraitor actors exploited session cookie information to impersonate the compromised employee and successfully gained access to Ginco’s unencrypted communications system,” explains the FBI.

“In late May 2024, the actors likely used this access to manipulate a legitimate transaction request by a DMM employee, resulting in the loss of 4,502.9 BTC, worth $308 million at the time of the attack,” the agency says.

U.S. authorities have been monitoring the activity of TraderTraitor since 2022 when the threat actor started to target the blockchain space with fake apps.

In 2023, GitHub warned of a social engineering campaign conducted by the particular threat actors on the platform, targeting the accounts of developers in the blockchain, cryptocurrency, online gambling, and cybersecurity sectors.

Later, the FBI warned that TraderTraitor was preparing to cash out 1,580 Bitcoin (valued at the time at around $41 million) stolen from various sources that year.

Quelle

Kommentar verfassen

Deine E-Mail-Adresse wird nicht veröffentlicht. Erforderliche Felder sind mit * markiert

lade-bild
London, GB
11:13 am, Apr. 21, 2025
Wetter-Symbol 13°C
L: 12° | H: 16°
overcast clouds
Luftfeuchtigkeit: 80 %
Druck: 1009 mb
Wind: 2 mph
Windböe: 0 mph
UV-Index: 0
Niederschlag: 0 mm
Wolken: 96%
Regen Chance: 0%
Sichtbarkeit: 10 km
Sonnenaufgang: 5:51 am
Sonnenuntergang: 8:06 pm
TäglichStündlich
Tägliche VorhersageStündliche Vorhersage
Today 10:00 pm
Wetter-Symbol
12° | 16°°C 1 mm 100% 11 mph 81 % 1013 mb 0 mm/h
Tomorrow 10:00 pm
Wetter-Symbol
8° | 16°°C 0 mm 0% 11 mph 86 % 1017 mb 0 mm/h
Mi. Apr. 23 10:00 pm
Wetter-Symbol
8° | 12°°C 1 mm 100% 13 mph 95 % 1016 mb 0 mm/h
Do. Apr. 24 10:00 pm
Wetter-Symbol
9° | 15°°C 0.2 mm 20% 5 mph 86 % 1022 mb 0 mm/h
Fr. Apr. 25 10:00 pm
Wetter-Symbol
9° | 17°°C 0 mm 0% 8 mph 87 % 1022 mb 0 mm/h
Today 1:00 pm
Wetter-Symbol
13° | 13°°C 0 mm 0% 7 mph 74 % 1009 mb 0 mm/h
Today 4:00 pm
Wetter-Symbol
14° | 14°°C 1 mm 100% 11 mph 73 % 1009 mb 0 mm/h
Today 7:00 pm
Wetter-Symbol
12° | 12°°C 1 mm 100% 8 mph 74 % 1011 mb 0 mm/h
Today 10:00 pm
Wetter-Symbol
10° | 10°°C 0 mm 0% 6 mph 81 % 1013 mb 0 mm/h
Tomorrow 1:00 am
Wetter-Symbol
9° | 9°°C 0 mm 0% 7 mph 84 % 1014 mb 0 mm/h
Tomorrow 4:00 am
Wetter-Symbol
8° | 8°°C 0 mm 0% 5 mph 86 % 1015 mb 0 mm/h
Tomorrow 7:00 am
Wetter-Symbol
8° | 8°°C 0 mm 0% 5 mph 84 % 1016 mb 0 mm/h
Tomorrow 10:00 am
Wetter-Symbol
12° | 12°°C 0 mm 0% 6 mph 63 % 1017 mb 0 mm/h
Name Preis24H (%)
Bitcoin(BTC)
€76,462.52
3.51%
Ethereum(ETH)
€1,434.40
3.11%
Fesseln(USDT)
€0.87
0.00%
XRP(XRP)
€1.86
3.19%
Solana(SOL)
€122.48
0.54%
USDC(USDC)
€0.87
0.00%
Dogecoin(DOGE)
€0.141691
4.37%
Shiba Inu(SHIB)
€0.000011
3.08%
Pepe(PEPE)
€0.000007
6.37%
Nach oben scrollen