DeFi Daily News
Sunday, June 29, 2025
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Cryptocurrency Altcoins

rewrite this title Lazarus hacker forgets VPN, gets exposed

Web3 Market Analyst, BitDegree by Web3 Market Analyst, BitDegree
June 2, 2025
in Altcoins
0 0
0
rewrite this title Lazarus hacker forgets VPN, gets exposed
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

If you know anything about a crypto hack, you’ve probably heard of the Lazarus Group.

They’re pretty much the final boss of crypto cybercrime – a North Korean state-backed hacking group responsible for some of the biggest thefts in the industry, including the Bybit hack earlier this year.

They’ve always carried this boogeyman of blockchain, mysterious vibe. But a new BitMEX report pulled back the curtain a bit.

And turns out… they’re not as flawless as some might think.

Over time, Lazarus seems to have split into smaller teams, and not all of them are equally skilled. Some are pros. Others – not so much.

Case in point: a BitMEX employee got a message on LinkedIn about joining a crypto project.

If you’ve followed Lazarus’ past scams, you know this is something they’ve done before – so the employee flagged it to the security team.

They were sent a GitHub repo with a Next.js/React project that – surprise – contained malware.

The attacker wanted them to run the code locally, which would’ve let malicious scripts execute on the employee’s computer.

Now, here’s what BitMEX found in the code:

It used JavaScript’s eval() function, which takes a piece of text and treats it like code. So if it says “delete everything,” your computer will actually try to run that command – and that opens the door for attackers to sneak in harmful code;

The malware tried to connect to suspicious URLs to download even more code – the kind of infrastructure Lazarus has used before in past attacks;

It collected data like usernames, IP addresses, operating systems, and uploaded all of it to… wait for it… a public Supabase database 😀👍

Yes. Public.

This is like using Google Sheets to store stolen data… and then leaving the spreadsheet unlocked.

Think smart

The BitMEX team took a look and found nearly 900 logs from infected machines.

And in one of them, they caught a big oopsie: a hacker forgot to turn on their VPN and exposed their real location in Jiaxing, China.

Instead of treating this oopsie as a one-off discovery, BitMEX saw an opportunity here – they built a tool to keep checking the database.

This lets BitMEX:

Track new infections as they happen;

Figure out who’s being targeted – devs, exchange workers, or random users;

Watch for repeat mistakes by the hackers (like more IP leaks);

Potentially map out patterns – like locations, time zones, or organizational targets.

Lazarus is still dangerous – no doubt about it.

But the more we learn about their tricks (and their mistakes), the easier it becomes to protect people from falling for them.

Now you’re in the know. But think about your friends – they probably have no idea. I wonder who could fix that… 😃🫵

Spread the word and be the hero you know you are!

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website [http://defi-daily.com] and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: ExposedforgetsHackerLazarusrewritetitleVPN
ShareTweetShare
Previous Post

Sanofi-Blueprint deal is a bullish signal about biotech M&A

Next Post

US-China trade tensions heat up, June is historically the 3rd worst performing month

Next Post
US-China trade tensions heat up, June is historically the 3rd worst performing month

US-China trade tensions heat up, June is historically the 3rd worst performing month

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title SEI Leads Crypto Market With 43% Weekly Surge – alt=

rewrite this title SEI Leads Crypto Market With 43% Weekly Surge – $0.5 Reclaim In The Horizon?

June 28, 2025
rewrite this title ‘FIFA Rivals’ Review: Should You Play This NFT Soccer Game? – Decrypt

rewrite this title ‘FIFA Rivals’ Review: Should You Play This NFT Soccer Game? – Decrypt

June 28, 2025
rewrite this title High Season, High Stakes: Navigating Summer Risks in Property Management

rewrite this title High Season, High Stakes: Navigating Summer Risks in Property Management

June 27, 2025
rewrite this title with good SEO Bitcoin Could Explode On Bessent’s 0 Billion Deregulation Shock

rewrite this title with good SEO Bitcoin Could Explode On Bessent’s $250 Billion Deregulation Shock

May 28, 2025
Configuring Web3j for Android Development

Configuring Web3j for Android Development

July 24, 2024
Boeing machinists refuse latest offer, prolonging bruising six-week strike

Boeing machinists refuse latest offer, prolonging bruising six-week strike

October 23, 2024
rewrite this title with good SEO Crypto Regulation: Turkish Authorities Announce New Stringent Regime – Details

rewrite this title with good SEO Crypto Regulation: Turkish Authorities Announce New Stringent Regime – Details

June 29, 2025
rewrite this title Flamengo 2-4 Bayern Munich: Kane brace sets up Club World Cup last eight clash with PSG

rewrite this title Flamengo 2-4 Bayern Munich: Kane brace sets up Club World Cup last eight clash with PSG

June 29, 2025
rewrite this title Superman Cast Teases New Movie With Hilarious Behind The Scenes Clip | Celebrity Insider

rewrite this title Superman Cast Teases New Movie With Hilarious Behind The Scenes Clip | Celebrity Insider

June 29, 2025
rewrite this title Variable Universal Life Insurance (VUL): What You Need to Know – NerdWallet

rewrite this title Variable Universal Life Insurance (VUL): What You Need to Know – NerdWallet

June 29, 2025
rewrite this title Vitalik Buterin says pluralistic ZK digital IDs are the ‘best realistic solution’ to preserve privacy

rewrite this title Vitalik Buterin says pluralistic ZK digital IDs are the ‘best realistic solution’ to preserve privacy

June 29, 2025
rewrite this title 12 New Summer Anime Releases to Add to Your Watch List Right Now

rewrite this title 12 New Summer Anime Releases to Add to Your Watch List Right Now

June 29, 2025
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.