DeFi Daily News
Tuesday, April 14, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Other News Tech

rewrite this title North Korean Lazarus hackers launch large-scale cyberattack by cloning open source software

Sead Fadilpašić by Sead Fadilpašić
January 30, 2025
in Tech
0 0
0
rewrite this title North Korean Lazarus hackers launch large-scale cyberattack by cloning open source software
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1000 words and keep HTML tags

Lazarus was seen poisoning open source software with infostealersThe campaign is dubbed Phantom Circuit, and targets mostly European software devsMultiple repositories were found poisoned with malware

The notorious North Korean hackers Lazarus have been targeting software developers, particularly those in the Web3 industry, with infostealing malware, grabbing their credentials, authentication tokens, and other valuable data, experts have warned.

Cybersecurity researchers SecurityScorecard released a report detailing the campaign, which included a software supply-chain attack and open-source poisoning.

Lazarus Group, an infamous hacking collective on North Korea’s payroll, was spotted grabbing different open source tools, poisoning them with malicious code, and then returning them to code repositories and platforms such as Gitlab.

Targeting Web3 devs

Developers would then pick up these tools by mistake, and would unknowingly get infected with malware.

The researchers named the operation Phantom Circuit, and apparently ended up compromising more than 1,500 victims. Most of them are based in Europe, with notable additions from India and Brazil.

The modified repositories apparently included Codementor, CoinProperty, Web3 E-Store, a Python-based password manager, and “other cryptocurrency-related apps, authentication packages, and web3 technologies”, citing Ryan Sherstobitoff, senior VP of research and threat intelligence at SecurityScorecard.

The researchers did not say if Lazarus used any known infostealer in this campaign, or created new code from scratch. The group is known for using a wide variety of tools in their attacks.

Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

Lazarus often targets cryptocurrency companies. Some researchers are saying the country is engaging in crypto theft to fund its state apparatus, as well as its weapons program. The group is famous for its fake job campaign, called Operation DreamJob, in which it targets Web3 software developers with fake, lucrative job offers.

During the interview stages, the attackers would trick the candidate into downloading and running infostealers, grabbing their tokens, and those of their employers. In one such instance, Lazarus managed to steal roughly $600 million.

You might also like

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website [http://defi-daily.com] and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: cloningcyberattackHackersKoreanLargeScalelaunchLazarusNorthOpenrewriteSoftwareSOURCEtitle
ShareTweetShare
Previous Post

Bitcoin Pumps Past $105K as Trump & Powell Clash on Inflation (Ethereum to $4K By Valentine’s Day)

Next Post

Nancy Kerrigan breaks down while speaking about DC plane crash victims

Next Post
Nancy Kerrigan breaks down while speaking about DC plane crash victims

Nancy Kerrigan breaks down while speaking about DC plane crash victims

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

May 21, 2025
rewrite this title How to Get Top Solana Token Holders – Moralis APIs

rewrite this title How to Get Top Solana Token Holders – Moralis APIs

May 14, 2025
rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

April 3, 2025
rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

December 14, 2025
Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

July 16, 2024
BITCOIN BULL RUN Back On! [Why Everything Changes in September for CRYPTO Markets]

BITCOIN BULL RUN Back On! [Why Everything Changes in September for CRYPTO Markets]

August 23, 2024
rewrite this title Inertia moves to commercialize one of the world’s most elaborate science experiments | TechCrunch

rewrite this title Inertia moves to commercialize one of the world’s most elaborate science experiments | TechCrunch

April 14, 2026
rewrite this title What Does Gina Vargiu-Breuer’s Contract Renewal Mean for SAP’s AI Strategy? – UC Today

rewrite this title What Does Gina Vargiu-Breuer’s Contract Renewal Mean for SAP’s AI Strategy? – UC Today

April 14, 2026
rewrite this title If This Happens, Dogecoin Won’t Stop Until It Crosses ; Analyst

rewrite this title If This Happens, Dogecoin Won’t Stop Until It Crosses $1; Analyst

April 14, 2026
rewrite this title Deadspin | Sharks outlast Predators in Western Conference matchup

rewrite this title Deadspin | Sharks outlast Predators in Western Conference matchup

April 14, 2026
rewrite this title and make it good for SEO Iran War Fallout to Dominate 2026, Slowing Crypto Market Recovery

rewrite this title and make it good for SEO Iran War Fallout to Dominate 2026, Slowing Crypto Market Recovery

April 14, 2026
rewrite this title Stocks rebound, oil and dollar slip on hopes of US-Iran resolution By Reuters

rewrite this title Stocks rebound, oil and dollar slip on hopes of US-Iran resolution By Reuters

April 14, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.