North Korean Exchange Phishing
3 min read

North Korean Hackers Target Staff at South Korean Exchanges

By Editorial Team

North Korea has long been an active hacking force with names such as the “Lazarus Group” being well known in cyber security circles. We have previously covered the attempts by North Korean hackers to infiltrate South Korean exchanges through security vulnerabilities.

It seems as if they have now resorted to one of the most rudimentary yet effective methods of gaining access, through the staff themselves. Via use of phishing emails that try to trick the staff to relinquish login details to the exchanges.

Easy Targets

North Korean hacking prowess has been well documented. They have been blamed for a number of high profile attacks from the WannaCry malware attack to the Bank of Bangladesh heist that saw $90m been sent out of the bank.

However, one of the most lucrative and easy targets for the North Koreans is south of the border in South Korea. Bitcoin exchanges are like large bank vaults for the hackers and if they are able to breach the systems, then they can make off with really valuable and relatively untraceable cryptocurrency.

Although these exchanges may have the most advanced security protocols in place, very little can be done to guard against the error of staff who fall for a Phishing email. It is perhaps this reason that the hackers have resorted to this relatively low key attack vector to access the exchange.

Tracking the Hacks

This is something that the South Koreans are no doubt accutely aware of. It is for this reason that a number of entities have been focusing on the actions of malicious outside hacking groups. One such agency is the National Police Agency (NPA).

The NPA has kept track of the attempts by these groups to hack the exchanges via phishing emails. For example, they have reported that at least 25 employees from one of the South Korean exchanges received emails from North Korean IP addresses.

In one such case, the hackers were able to make away with at least $5m in Bitcoin and a number of other cryptocurrencies. What this shows is that it is incumbent on the exchanges to make sure that they train their staff to easily spot phishing emails and not respond to them.

Likely to Continue

The routine of North Koreans hacking Bitcoin exchanges is likely to only increase. There are two main reasons. One is that the North Korean regime is increasingly becoming cash starved. As more sanctions are put in place, the need for external funds increases.

Secondly, as the price of cryptocurrencies advance to record highs, so too does the returns that a rouge regime can get from hacking exchanges. According to the Fire Eye cybersecurity firm, the hacking is used…

…as a means of evading sanctions and obtaining hard [safe haven] currencies to fund the regime

What this does indeed show is the inherent risks that could theoretically exist with keeping funds on an exchange. For those users who are not too familiar with the pain from the Mt Gox hack, when an exchange has your private keys, the exchange holds all of your funds.

With hackers abound, always keep your funds in a hardware wallet and try to avoid all phishing scams.

Editors at large. Posting the latest news, reviews and analysis to hit the blockchain.
View all posts by Editorial Team -> Best Crypto Deals ->

Related Posts

SwissBorg Capital Raise
What Bear Market? SwissBorg Charges Ahead Amidst Harsh Crypto Conditions 
SwissBorg Capital Raise

What Bear Market? SwissBorg Charges Ahead Amidst Harsh Crypto Conditions 

December 17, 2022 6 min read
OKX invests in WAX
OKX Blockdream Ventures Invests Millions in GameFi and NFT Development on WAX
OKX invests in WAX

OKX Blockdream Ventures Invests Millions in GameFi and NFT Development on WAX

June 3, 2022 2 min read
Binance partners with the weekend
Binance Partners with The Weekend to Provide First-Ever Web 3 Enhanced World Tour
Binance partners with the weekend

Binance Partners with The Weekend to Provide First-Ever Web 3 Enhanced World Tour

June 3, 2022 2 min read
21Shares Releases Sixth State of Crypto Report
21Shares Releases Sixth State of Crypto Report: Summary
21Shares Releases Sixth State of Crypto Report

21Shares Releases Sixth State of Crypto Report: Summary

April 5th, 2023 3 min read
Algorand and MakerX Commit 1M Algo to Migrate Terra Users to Algorand
Algorand and MakerX Commit 1M Algo to Migrate Terra Users to Algorand
Algorand and MakerX Commit 1M Algo to Migrate Terra Users to Algorand

Algorand and MakerX Commit 1M Algo to Migrate Terra Users to Algorand

June 2, 2022 2 min read
Regulators are “Not Allowing” Banks to Engage with Crypto
Bank of America CEO: Regulators are “Not Allowing” Banks to Engage with Crypto
Regulators are “Not Allowing” Banks to Engage with Crypto

Bank of America CEO: Regulators are “Not Allowing” Banks to Engage with Crypto

June 1, 2022 2 min read
US Conference of Mayors Introduces Blockchain Resolution
US Conference of Mayors Introduces Blockchain Resolution
US Conference of Mayors Introduces Blockchain Resolution

US Conference of Mayors Introduces Blockchain Resolution

June 1, 2022 2 min read