North Korean Cybercriminals Involved in Crypto Scams

North Korean cybercriminals have stolen $66 million in cryptocurrency through sophisticated social engineering tactics, targeting firms in Hong Kong and Bahrain.

North Korean cybercriminals have recently been implicated in two major cryptocurrency heists, totaling approximately $66 million. Utilizing sophisticated social engineering tactics, these cybercriminals targeted a Hong Kong firm and a Bahrain exchange, showcasing their advanced capabilities in cybercrime.

Key Takeaways

  • North Korean cybercriminals stole $66 million in cryptocurrency through social engineering.
  • The attacks were attributed to a group known as Citrine Sleet, also referred to as UNC4736 and AppleJeus.
  • The decentralized finance platform Radiant Capital was one of the primary targets, losing $50 million.
  • U.S. cybersecurity firm Mandiant confirmed the involvement of North Korean actors with high confidence.

Overview Of The Attacks

The attacks were characterized by their sophistication, with the cybercriminals employing fake recruiter scams to lure victims. This method involved creating convincing job offers to gain the trust of potential targets, ultimately leading to the theft of significant amounts of cryptocurrency.

Details Of The Heists

  1. Targeted Entities:
  2. Methodology:

Implications For The Crypto Industry

The involvement of state-sponsored cybercriminals in cryptocurrency theft raises significant concerns for the security of digital assets. As these attacks become more prevalent, the need for enhanced security measures and awareness among cryptocurrency users is paramount.

Conclusion

The recent activities of North Korean cybercriminals highlight the evolving landscape of cyber threats, particularly in the realm of cryptocurrency. As these actors continue to refine their tactics, both individuals and organizations must remain vigilant and proactive in safeguarding their digital assets against such sophisticated attacks.

Sources

[ newsletter ]
Stay ahead of Web3 threats—subscribe to our newsletter for the latest in blockchain security insights and updates.

Thank you! Your submission has been received!

Oops! Something went wrong. Please try again.

[ More Posts ]

Enhance Your Defenses: The Essential Guide to Cyber Security Audit Services in 2025
22.10.2025
[ Featured ]

Enhance Your Defenses: The Essential Guide to Cyber Security Audit Services in 2025

Enhance your defenses with our essential cyber security audit service guide for 2025. Understand scope, threats, controls, and leverage findings for robust protection.
Read article
Mastering eWallet App Development: Your Comprehensive Guide for 2025
21.10.2025
[ Featured ]

Mastering eWallet App Development: Your Comprehensive Guide for 2025

Master e-wallet app development in 2025 with our comprehensive guide. Learn strategy, security, UX, features, budgeting, and launch for success.
Read article
Choosing the Right Cyber Security Audit Service for Your Business in 2025
21.10.2025
[ Featured ]

Choosing the Right Cyber Security Audit Service for Your Business in 2025

Choosing the right cyber security audit service in 2025? Learn about key features, capabilities, and compliance needs to select the best partner for your business.
Read article