CoinInsight360.com logo CoinInsight360.com logo
America's Social Casino

Cryptopolitan 2025-06-27 17:05:24

ZachXBT: Meme tokens under siege by DPRK hacker network

The latest investigations show multiple meme token projects may be compromised by connections to North Korean hackers. Multiple profiles have been intercepted by ZachXBT and other investigators and linked to known exploits. Meme tokens may not be safe from DPRK hackers, as recently several projects were compromised, leading to losses of up to $1M. For now, the effect seems limited, only affecting relatively new tokens. However, evidence shows that DPRK hackers are active in meme space, potentially infiltrating Ethereum and Solana projects. Some of the attacked projects were linked to the cartoonist Matt Furie, creator of the iconic Pepe image. ZachXBT traced one set of attacks that affected NFT collections. Chain/saw and Favvr were also among the exploited projects. 1/ Multiple projects tied to Pepe creator Matt Furie & ChainSaw as well as another project Favrr were exploited in the past week which resulted in ~$1M stolen My analysis links both attacks to the same cluster of DPRK IT workers who were likely accidentally hired as developers. pic.twitter.com/85JRm5kLQO — ZachXBT (@zachxbt) June 27, 2025 In a series of attacks, new NFTs were minted on several projects, leaving the floor price to fall to zero. ZachXBT traced some of the wallets used to the profiles and repositories of blockchain developers with suspected connections to the North Korean regime. One of the identified hackers was hired by the Favvr project, which ended up losing over $680K. Alex Hong, the Favvr project CTO, was also suspected. He left social media in May and deleted the affiliated LinkedIn account. Previously, DPRK hackers were involved in Web 3.0 projects , mostly leading to compromised smart contracts. DPRK hackers present as Solana teams Token creation on Pump.fun is generally democratic. However, DPRK hackers are also offering code to automate token creation or trading. Recent investigators discovered a series of social media accounts and GitHub profiles, claiming to be linked to North Korean hackers. Some of the profiles already offer code for multiple chains, including Ethereum, BNB Smart Chain, Base, Arbitrum, and others. One of the identified hacker accounts also shared a Solana copy-trading tool. The accounts were also busy touting their services, advertising direct hiring from their profiles while disparaging other software developer agencies. Some of the hackers have formed teams with old social media accounts. The end goal is to be hired as blockchain developers, potentially compromising meme tokens and other projects. Can't let @browsercookies have all the fun. Gang, meet the DPRK-made dev shop team that loves Solana, uses aged accounts, is active on Twitter and managed to get at least one facilitator in Canada. We'll go one by one. 0xTan1319 got only recently kicked out (not enough gigs?… https://t.co/9udGpP3tkx pic.twitter.com/TTF6YnEUU0 — bbsz (@blackbigswan) June 26, 2025 The hacker cluster is also connected to previously discovered accounts, posing as Polish or US nationals. Again, the main goal was to obtain remote software engineering jobs, including full-stack blockchain roles. Some of the attempts to get hired moved through the freelance hub Inspiration with Digital Living (IWDL), trying to trick legitimate projects into hiring possibly DPRK-affiliated IT workers. Part of the attempts also involve the creation of fake freelancer sites, which present the connected profiles. The Pump.fun token cycle reportedly involved multiple meme projects linked to DPRK hackers. Previously, threat actors have also deliberately launched a meme token to launder funds from a previous Web3 heist. The list of hacker handles and profiles is constantly growing, and not all are active. The potential heist is the reverse of the fake job offers, which attempt to install malware on user computers. KEY Difference Wire : the secret tool crypto projects use to get guaranteed media coverage

면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.