North Korean Operative Performs Social Engineering Attack on Kraken Crypto Exchange ⋆ ZyCrypto
By: bitcoin ethereum news|2025/05/03 21:45:01
0
Share
Kraken, a crypto exchange, caught a North Korean agent trying to infiltrate the company through a job interview. Kraken noticed something was wrong when the interviewee used a different name from the one listed on his resume. The Kraken team then performed open-source intelligence scans on the interviewee and discovered he was associated with nefarious activity. After red flags started to show, the Kraken team continued interviewing the applicant to get as much information as possible on a potential security breach. The applicant applied for the job after a regular recruitment process. The applicant, however, slipped up on the first call and gave a different name to the one on his resume. The interviewee further displayed signs of having someone coach him during the interview. Kraken, however, was aware of North Korean operatives targeting crypto exchanges, thanks to a partner company giving Kraken the heads-up. For example, other crypto companies were aware of the email used by the interviewee because it was flagged as being associated with disreputable activities. Kraken performed open intelligence analysis on the information they provided, including the email address, and discovered that it had been used multiple times by other employees hired at crypto companies. Many signs were pointing to an organized campaign. The applicant routed his internet traffic through a stand-alone Macintosh workstation to disguise his location. Open-source intelligence linked the applicant’s email to a known data breach. Even the applicant’s identity could be traced to a possible identity theft. Needless to say, the applicant was brazen in his attempts to infiltrate Kraken. Crypto companies like Kraken often employ remote workers to maintain their exchanges. Although the process can be incredibly convenient for workers and managers, there are also a few security holes. Kraken has learned a valuable lesson during this experience, strengthening its resolve to verify new employees rather than trust them at face value. The North Korean operatives could have easily infiltrated the company and used their position to inject malware into the company’s software or even steal valuable information. The infiltration attempt was relatively sophisticated, so, surprisingly, the applicant made such an obvious mistake, using a different name from the one listed on his resume. State-sponsored hackers, notably from North Korea, have surprised the world with multiple attacks. They will probably continue their attempts to breach crypto networks for some time. North Korean hackers have tried many exploits, including malware, phishing attacks, and now a social engineering attempt. There is a new trend of North Korean hackers infiltrating systems to perform exploits from within the system. From recent events, one such example of this trend includes the North Korean Lazarus Group creating shell companies in America to exploit job applicants. Usually, the goal is to steal cryptocurrencies because they are easy to conceal and transfer across borders, even to North Korea. Social Engineering attacks may continue to become a mainstay with the crypto industry, compelling many crypto investors to be extra vigilant when communicating online. Source: https://zycrypto.com/north-korean-operative-performs-social-engineering-attack-on-kraken-crypto-exchange/
You may also like

Revisiting RWA: Nearly 50,000 people's first on-chain transaction was not Bitcoin, but stock indices and crude oil
The narrative of RWA is not about traditional finance trying to capture crypto users, but rather crypto trying to capture traditional users.

Altcoin Price Outlook 2026: The Rotation Is Coming — Just Not the Way You Think
Bitcoin dominance at 58%, Fear & Greed at 39. If you think altcoin season is dead, you're reading the wrong signals. Here's what the data actually says about what comes next.

Oracle: The Second Battlefield Behind the Prediction Market War
By 2026, the oracle track has essentially evolved from the early "data pipeline" into a "verifiable facts layer" that supports the entire on-chain economy, and prediction markets serve as a magnifying glass to observe the competition in this red ocean.

a16z's key bet: Kalshi's weekly trading volume approaches $3 billion, transitioning from "prediction games" to financial infrastructure, the market begins to price "uncertainty."
The evolution of prediction markets: from niche products to "uncertainty pricing" infrastructure

Morning Report | Galaxy Digital announces Q1 2026 financial report; Liquid completes $18 million Series A financing; Polymarket plans to bring major exchanges to the U.S
Overview of Important Market Events on April 28

From a banned economist to the new CEO of Xinhua: Fu Peng has figured out the second half of traffic
This uproar in the crypto circle appears to be a cultural conflict between a traditional economist and a crypto OG, but looking deeper, it is merely the new fire leveraging Fu Peng's influence in the traditional financial sector to pry open a batch of client funds that were originally difficult to r...

Why Private Credit Became the First True Bridge from TradFi to DeFi
Unveiling the core logic of private credit leading RWA: it is no longer just simple tokenization, but rather a true reshaping of the practical value of asset on-chain through real returns and deep integration with the DeFi ecosystem.

Senior cryptocurrency investor: Blockchain is showing a siphoning effect on capital
Stablecoins are the first real-world assets on the blockchain, but they will not be the last. Every billion dollars in stablecoins generates $12.2 billion in economic activity and $19 million in protocol revenue annually; once capital is on the blockchain, it gains productivity and does not go back.

When traditional crypto derivatives start to subtract: Insights from Hyper Trade's products
Say goodbye to complex contracts, as crypto derivatives begin to "subtract": This article breaks down how Hyper Trade reduces hardcore risk pricing into "second-level multiple-choice questions," reshaping the trading experience for retail investors.

My view on blockchain has changed
In-depth Reflection on the Value of Blockchain Applications and the Time Dimension

Will AI Agents use bank cards? Why can't Agentic Payment avoid stablecoins and blockchain?
Why can't AI agents just swipe bank cards? An article to understand the new tiered payment system: stablecoins and blockchain are becoming the exclusive settlement language and verifiable trust foundation of the "machine economy" era.

Deconstructing 80 mainstream payment institutions and wallets worldwide
A comprehensive analysis of the global top 100 payment companies. Led by Alipay and WeChat, this article provides insights into the business logic and competitive advantages of over 80 top players.

The MiCA Fast Track for Cryptocurrency Licenses: Why OKX and BVNK Choose Malta
Countdown to the EU MiCA Licensing: Why do crypto giants like OKX choose Malta for their "first license"? A deep dive into the CASP license application process, business portfolio logic, and compliance pitfalls guide.

a16z Crypto: Stablecoins are rebuilding the global financial infrastructure
Stablecoins are evolving from cryptocurrency trading tools into a new infrastructure for global finance. They are not only changing cross-border payments but are also driving bank connectivity, corporate finance, foreign exchange liquidity, on-chain credit, and the globalization of the dollar into a...

ENI's RWA ambition: to create an enterprise-level BaaS platform that allows Web2 institutions to "go beyond just asset on-chain."
What are the differences between RWA 1.0 and RWA 2.0?

Morning Report | a16z releases global financial new stack report; Websea's withdrawal channel suspected of running away; Strategy purchased 3,273 bitcoins last week
Overview of Important Market Events on April 27

The most Crypto group of people is becoming the least Crypto
Hong Kong Carnival × Bangkok Money 20/20 Observation Notes

MSTR STRC In-depth Study: The BTC Financing Flywheel Behind the 11.5% Yield
STRC is a well-designed financing tool that transforms fixed income demand into buying pressure for Bitcoin.
Revisiting RWA: Nearly 50,000 people's first on-chain transaction was not Bitcoin, but stock indices and crude oil
The narrative of RWA is not about traditional finance trying to capture crypto users, but rather crypto trying to capture traditional users.
Altcoin Price Outlook 2026: The Rotation Is Coming — Just Not the Way You Think
Bitcoin dominance at 58%, Fear & Greed at 39. If you think altcoin season is dead, you're reading the wrong signals. Here's what the data actually says about what comes next.
Oracle: The Second Battlefield Behind the Prediction Market War
By 2026, the oracle track has essentially evolved from the early "data pipeline" into a "verifiable facts layer" that supports the entire on-chain economy, and prediction markets serve as a magnifying glass to observe the competition in this red ocean.
a16z's key bet: Kalshi's weekly trading volume approaches $3 billion, transitioning from "prediction games" to financial infrastructure, the market begins to price "uncertainty."
The evolution of prediction markets: from niche products to "uncertainty pricing" infrastructure
Morning Report | Galaxy Digital announces Q1 2026 financial report; Liquid completes $18 million Series A financing; Polymarket plans to bring major exchanges to the U.S
Overview of Important Market Events on April 28
From a banned economist to the new CEO of Xinhua: Fu Peng has figured out the second half of traffic
This uproar in the crypto circle appears to be a cultural conflict between a traditional economist and a crypto OG, but looking deeper, it is merely the new fire leveraging Fu Peng's influence in the traditional financial sector to pry open a batch of client funds that were originally difficult to r...
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com
