Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Tag: North Korea

Phemex – Rekt

post, januari 24, 2025februari 24, 2025

When your hot wallets become dozens of points of failure, $73.54 million makes for an expensive lesson in access control. Phemex exchange just learned this lesson the hard way, watching helplessly as an attacker drained their hot wallets across almost 30 different chains in a masterclass of multi-chain mayhem.

Continue Reading

North Korean Hackers Pull Off $308M Bitcoin Heist from Crypto Firm DMM Bitcoin

post, december 24, 2024februari 24, 2025

Japanese and U.S. authorities have formerly attributed the theft of cryptocurrency worth $308 million from cryptocurrency company DMM Bitcoin in May 2024 to North Korean cyber actors. “The theft is affiliated with TraderTraitor threat activity, which is also tracked as Jade Sleet, UNC4899, and Slow Pisces,” the agencies said. “TraderTraitor activity…

Continue Reading

North Korean Hackers Abuse Cloud-Based Services to Deploy Malware

post, november 9, 2024november 14, 2024

ESET’s recent report details the activities of various advanced persistent threat (APT) groups from April to September 2024, highlighting key trends and developments observed during this period, including the use of sophisticated techniques such as targeted phishing attacks, malware distribution, and vulnerability exploitation.

Continue Reading

North Korean IT Workers in Western Firms Now Demanding Ransom for Stolen Data

post, oktober 18, 2024

North Korean information technology (IT) workers who obtain employment under false identities in Western companies are not only stealing intellectual property, but are also stepping up by demanding ransoms in order to not leak it, marking a new twist to their financially motivated attacks. “In some instances, fraudulent workers demanded…

Continue Reading

North Korean Hackers Using New VeilShell Backdoor in Stealthy Cyber Attacks

post, oktober 3, 2024juli 3, 2025

Threat actors with ties to North Korea have been observed delivering a previously undocumented backdoor and remote access trojan (RAT) called VeilShell as part of a campaign targeting Cambodia and likely other Southeast Asian countries. The activity, dubbed SHROUDED#SLEEP by Securonix, is believed to be the handiwork of APT37, which is also known…

Continue Reading

Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group

post, augustus 19, 2024februari 24, 2025

A newly patched security flaw in Microsoft Windows was exploited as a zero-day by Lazarus Group, a prolific state-sponsored actor affiliated with North Korea. The security vulnerability, tracked as CVE-2024-38193 (CVSS score: 7.8), has been described as a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. “An attacker who…

Continue Reading

Seoul spies say North Korea hackers stole semiconductor secrets

post, maart 5, 2024februari 24, 2025

The DPRK is using cyberattacks to steal designs and other data from South Korean microchip manufacturers, according to Seoul’s National Intelligence Service.

Continue Reading

FBI Identifies Lazarus Group Cyber Actors as Responsible for Theft of $41 Million from Stake.com

post, september 6, 2023juli 31, 2026

The FBI is issuing this release to warn the public regarding the theft of approximately $41 million in virtual currency from Stake.com, an online casino and betting platform. The FBI has confirmed that this theft took place on or about September 4, 2023, and attributes it to the Lazarus Group…

Continue Reading

Lazarus Heist: The intercontinental ATM theft that netted $14m in two hours

post, april 1, 2023juli 31, 2026

Imagine you’re a low-wage worker in India who is offered a day’s employment as an extra in a Bollywood film. Your role? To go to a cash point and withdraw some money. In 2018, several men in Maharashtra state thought they were accepting a bit-part in a movie – but…

Continue Reading

WannaCry: incident of structureel probleem?

post, mei 19, 2017juli 17, 2026

Het vorige weekend stond in het teken van een grootschalige aanval met gijzelsoftware (ofwel ransomware). Deze vorm van cybercrime bestaat al langer, maar heeft de afgelopen jaren een vlucht genomen. De doelstelling is veelal het behalen van financieel gewin. De impact op organisaties is vaak veel groter dan het prijskaartje…

Continue Reading
  • Previous
  • 1
  • 2
  • 3
  • Next

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes