CoinInsight360.com logo CoinInsight360.com logo
America's Social Casino

Moralis Money
Crypto Potato 2025-04-26 20:26:28

North Korean Hackers Set Up US Shell Companies to Target Crypto Developers: Report

North Korean hackers linked to the state’s notorious Lazarus Group have successfully set up shell companies within the United States to distribute malware to cryptocurrency developers, in a scheme that violates US sanctions and exposes major vulnerabilities in business registration systems. According to Reuters, cybersecurity firm Silent Push revealed that two companies—Blocknovas LLC in New Mexico and Softglide LLC in New York—were formed using falsified names, addresses, and documentation, which helped North Korean actors pose as legitimate employers offering jobs in the crypto industry. A third entity, Angeloper Agency, has also been linked to the campaign but has not been registered in the country. Scam Job Offers, Empty Lots, and Malware Silent Push attributed the operation to a subgroup within the Lazarus Group, a state-sponsored hacking unit operating under North Korea’s Reconnaissance General Bureau. The group is known for its role in high-profile cyber thefts and espionage activities. In this campaign, the hackers used fake professional profiles and job postings to approach developers, primarily on platforms such as LinkedIn. Once contact was made, victims were invited to “interviews” where they were encouraged to download malware disguised as hiring software or technical assessments. Blocknovas was the most active entity, with multiple confirmed victims. Its listed physical address in South Carolina was found to be an empty lot. Meanwhile, Softglide was registered through a Buffalo-based tax preparation service, which further complicated efforts to trace those behind the operations. The malware used included strains previously attributed to North Korean cyber units, capable of data theft, remote access, and further network infiltration. The FBI has seized the Blocknovas domain, with a notice on its website indicating it was used to deceive job seekers and spread malware. North Korean Malware Trap The Lazarus Group has repeatedly exploited fake employment opportunities to deliver malware. For instance, it had launched a cyber campaign called “ClickFix” targeting job seekers in the centralized finance (CeFi) crypto sector. Cybersecurity firm Sekoia recently revealed that the group impersonates companies like Coinbase and Tether to lure marketing and business applicants into fake interviews. One of Lazarus’s biggest crypto thefts came in 2021, when a bogus job offer led to the $625 million Ronin Bridge hack targeting Axie Infinity. The post North Korean Hackers Set Up US Shell Companies to Target Crypto Developers: Report appeared first on CryptoPotato .

https://www.digistore24.com/redir/325658/ceobig/
Leggi la dichiarazione di non responsabilità : Tutti i contenuti forniti nel nostro sito Web, i siti con collegamento ipertestuale, le applicazioni associate, i forum, i blog, gli account dei social media e altre piattaforme ("Sito") sono solo per le vostre informazioni generali, procurati da fonti di terze parti. Non rilasciamo alcuna garanzia di alcun tipo in relazione al nostro contenuto, incluso ma non limitato a accuratezza e aggiornamento. Nessuna parte del contenuto che forniamo costituisce consulenza finanziaria, consulenza legale o qualsiasi altra forma di consulenza intesa per la vostra specifica dipendenza per qualsiasi scopo. Qualsiasi uso o affidamento sui nostri contenuti è esclusivamente a proprio rischio e discrezione. Devi condurre la tua ricerca, rivedere, analizzare e verificare i nostri contenuti prima di fare affidamento su di essi. Il trading è un'attività altamente rischiosa che può portare a perdite importanti, pertanto si prega di consultare il proprio consulente finanziario prima di prendere qualsiasi decisione. Nessun contenuto sul nostro sito è pensato per essere una sollecitazione o un'offerta