DeFi Daily News
Thursday, November 27, 2025
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home DeFi Web 3

rewrite this title Manta Co-Founder ‘Targeted’ by Lazarus Group in Zoom Phishing Attempt – Decrypt

Vismaya V by Vismaya V
April 18, 2025
in Web 3
0 0
0
rewrite this title Manta Co-Founder ‘Targeted’ by Lazarus Group in Zoom Phishing Attempt – Decrypt
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

Armed with fake Zoom calls, stolen identities, and malware, North Korea’s Lazarus Group has allegedly expanded its crypto infiltration strategy, and the industry is starting to feel it.

Kenny Li, co-founder of Ethereum layer-2 project Manta Network, said he was “targeted” in an elaborate Zoom phishing attempt by Lazarus Group in a tweet Thursday.

🚨 Just got targeted by Lazarus.

A known contact on TG reached out to me to ask for a chat. Scheduled a Zoom call. When I got on the Zoom, it asked me for camera access which I found a bit odd because I have used Zoom many times.

Even crazier, the team members had their…

— 🤓Kenny.manta (@superanonymousk) April 17, 2025

A known contact of Li arranged a Zoom call where familiar faces appeared on camera, only no one spoke. Then a prompt appeared urging Li to download a script to fix his audio.

“I could see their legit faces. Everything looked very real,” he wrote on Thursday. “But I couldn’t hear them… it asked me to download a script file. I immediately left.”

To verify the contact, Li asked to continue the conversation on Google Meet instead. The impersonator refused, and moments later, all messages were erased, and Li was blocked.

“Lazarus social engineering is getting pretty good,” he added in a follow-up tweet, adding that the phishing attempt could have used either deepfakes or “recordings from previous calls where they infected/hacked the other people.”

Li noted that he was “not certain” the phishing attempt was the work of Lazarus Group, but that according to security researchers, it matched the hacking group’s MO. Decrypt has reached out to Li, and will update this story should he respond.

North Korea’s phishing and hacking campaign

The incident is one of several recent attacks attributed to Lazarus, the North Korean state-backed hacking unit responsible for some of the largest crypto heists in history.

The group, already linked to February’s $1.4 billion Bybit hack, is reportedly changing its strategy by blending deepfake video, malware, and social engineering to deceive even experienced crypto executives.

According to new research from Paradigm security researcher Samczsun and Google’s Threat Intelligence Group (GTIG), Lazarus is just one arm of the DPRK’s sprawling cyber apparatus.

The regime now deploys a web of hacker subgroups like AppleJeus, APT38, and TraderTraitor, using tactics that range from fake job offers and Zoom calls to malware-laced npm packages and extortion.

Nick Bax of the Security Alliance (SEAL), a collective of white hat hackers and security researchers, issued a warning in March, “Having audio issues on your Zoom call? That’s not a VC, it’s North Korean hackers.”

He described the playbook in which chat messages cite audio issues, familiar faces appear on video, and the victim is redirected to download malware. “They exploit human psychology,” he wrote. “Once you install the patch, you’re rekt.”

Giulio Xiloyannis, co-founder of the Web3 platform for on-chain games and IPs MON Protocol, shared a similar experience. A hacker impersonating a project lead asked him to switch to a Zoom link mid-call.

“The moment I saw a Gumicryptos partner speaking and a Superstate one, I realized something was off,” he tweeted, sharing screenshots to warn others.

According to a recent GTIG report, North Korean IT workers are now infiltrating teams across the U.S., UK, Germany, and Serbia, masquerading as developers, using fake resumes and forged documents.

“DPRK hackers are an ever-growing threat against our industry,” Samczsun wrote, urging firms to adopt basic defenses, least privilege access, 2FA, device segregation, and to contact groups like SEAL 911 in the event of a breach.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: attemptCofounderDecryptGroupLazarusMantaPhishingrewriteTargetedtitleZoom
ShareTweetShare
Previous Post

rewrite this title and make it good for SEO Mantra (OM) Price Prediction: Last Chance for Profit Gainers?

Next Post

rewrite this title HashKey Capital And Ripple Launch XRP Tracker Fund, Expanding Institutional Access To XRP

Next Post
rewrite this title HashKey Capital And Ripple Launch XRP Tracker Fund, Expanding Institutional Access To XRP

rewrite this title HashKey Capital And Ripple Launch XRP Tracker Fund, Expanding Institutional Access To XRP

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
AI to Boost ‘So Much’ of Human Investing, Bridgewater’s Jensen Says

AI to Boost ‘So Much’ of Human Investing, Bridgewater’s Jensen Says

July 8, 2024
rewrite this title with good SEO Arthur Hayes Claims Bull Market Still In Play: Monetary Policy

rewrite this title with good SEO Arthur Hayes Claims Bull Market Still In Play: Monetary Policy

November 5, 2025
rewrite this title Soft Washed Pleated Comforter Set from .99 at Kohl’s!

rewrite this title Soft Washed Pleated Comforter Set from $19.99 at Kohl’s!

November 15, 2024
Karen Read trial: Lawyer says jury voted to acquit on murder charge | LiveNOW from FOX

Karen Read trial: Lawyer says jury voted to acquit on murder charge | LiveNOW from FOX

July 8, 2024
The iOS 19 Features We All REALLY Want

The iOS 19 Features We All REALLY Want

May 9, 2025
rewrite this title and make it good for SEO Exploring the Impact of NFTs on Art and Collectibles Markets

rewrite this title and make it good for SEO Exploring the Impact of NFTs on Art and Collectibles Markets

June 18, 2025
rewrite this title Pick a side: JPMorgan opens leveraged Bitcoin access to retail while closing crypto CEO’s account

rewrite this title Pick a side: JPMorgan opens leveraged Bitcoin access to retail while closing crypto CEO’s account

November 27, 2025
rewrite this title What McDonald’s Just Revealed for ‘Stranger Things 5’ Is Turning the Menu Upside Down

rewrite this title What McDonald’s Just Revealed for ‘Stranger Things 5’ Is Turning the Menu Upside Down

November 27, 2025
rewrite this title Technance Introduces Institutional-Grade Infrastructure for Exchanges, Fintech Platforms, and Web3 Applications

rewrite this title Technance Introduces Institutional-Grade Infrastructure for Exchanges, Fintech Platforms, and Web3 Applications

November 27, 2025
rewrite this title Simeone delighted for ´humble´ Gimenez – Soccer News

rewrite this title Simeone delighted for ´humble´ Gimenez – Soccer News

November 27, 2025
rewrite this title with good SEO Bitcoin Whale Reenters ETH Market, Fires Off A -M Long

rewrite this title with good SEO Bitcoin Whale Reenters ETH Market, Fires Off A $44-M Long

November 27, 2025
rewrite this title and make it good for SEOSDI Limited (SDLDF) Shareholder/Analyst Call Transcript

rewrite this title and make it good for SEOSDI Limited (SDLDF) Shareholder/Analyst Call Transcript

November 27, 2025
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.