Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Collapse
Brand Logo
UDS UDS: $1.1507
24h: 0.19%
Trade UDS
Gate.io
Gate.io
UDS / USDT
KuCoin
KuCoin
UDS / USDT
MEXC
MEXC
UDS / USDT
BingX
BingX
UDS / USDT
BitMart
BitMart
UDS / USDT
LBank
LBank
UDS / USDT
XT.COM
XT.COM
UDS / USDT
Uniswap v3
Uniswap v3
UDS / USDT
Biconomy.com
Biconomy.com
UDS / USDT
WEEX
WEEX
UDS / USDT
PancakeSwap v3
PancakeSwap v3
UDS / USDT
Pionex
Pionex
UDS / USDT
COINSTORE
COINSTORE
UDS / USDT
Sushiswap v3
Sushiswap v3
UDS / USDT
Picol
Picol
UDS / USDT

Earn up to 50 UDS per post

Post in Forum to earn rewards!

Learn more
UDS Right

Spin your Wheel of Fortune!

Earn or purchase spins to test your luck. Spin the Wheel of Fortune and win amazing prizes!

Spin now
Wheel of Fortune
selector
wheel
Spin

Paired Staking

Stake $UDS
APR icon Earn up to 50% APR
NFT icon Boost earnings with NFTs
Earn icon Play, HODL & earn more
Stake $UDS
Stake $UDS
UDS Left

Buy UDS!

Buy UDS with popular exchanges! Make purchases and claim rewards!

Buy UDS
UDS Right

INFLUENCER LEVEL

Based on the number of subscribers

MULTIPLIER

up to 10k

x1.1

10-25k

x1.25

25-100k

x1.5

100k-250k

x2

250k-1m

x3

1m+

x5

Post links to Undeads Forum messages or Undeads products to receive additional rewards

Post limits and staking coefficients applied similar to Forum posts

Discord, Telegram, Twiter

Post in Forum to earn rewards!

UDS Rewards
  1. Home
  2. Crypto-Detective
  3. North Korea's Hackers Have Evolved From Phishing to Physical Infiltration

North Korea's Hackers Have Evolved From Phishing to Physical Infiltration

Scheduled Pinned Locked Moved Crypto-Detective
4 Posts 3 Posters 25 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
This topic has been deleted. Only users with topic management privileges can see it.
  • johnblockbusterJ Offline
    johnblockbusterJ Offline
    johnblockbuster
    wrote on last edited by
    #1

    5d6504c6-b0fc-4987-a0c1-18503fbab48f-image.png
    CertiK's report traces a clear tactical evolution in DPRK-linked crypto operations that culminates in something genuinely alarming: physical infiltration of target organizations. The progression moves from early phishing and social engineering — including the Ronin Bridge exploit in 2022, attributed to a spearphishing campaign involving a fake LinkedIn recruiter and a malware-laden PDF — through increasingly sophisticated supply chain compromises like Bybit, and into what CertiK calls "physical infiltration," illustrated by the April 2026 Drift Protocol incident. In that case, approximately $285 million was drained from the Solana-based platform after a six-month operation involving conference attendance, relationship-building across the industry, and governance manipulation — meaning North Korean operatives spent half a year establishing trusted relationships before executing the actual exploit. CertiK blockchain intelligence analyst Jonathan Riss told Cointelegraph that DPRK-linked operations now blend intelligence tradecraft with technical exploits, and that North Korean IT workers and intermediaries can obtain trusted roles inside Western crypto and fintech firms under false identities.

    The practical implication for crypto organizations is that the threat model has expanded beyond technical security into personnel security and organizational trust. A firm with perfectly hardened smart contracts, robust key management, and comprehensive phishing training is still vulnerable if a DPRK operative has spent six months building relationships with governance participants and developers under a false identity. That is not a problem that any amount of code auditing solves — it requires identity verification processes, background screening, and operational security practices around sensitive roles that the crypto industry has historically treated as unnecessary overhead. The elevation of this issue from a cybersecurity concern to an international security matter, as cited UN and US intelligence assessments in CertiK's report confirm, means that the regulatory and law enforcement response will eventually catch up — but in the meantime, the industry is facing a state-level adversary that has explicitly allocated significant national resources to crypto theft as a revenue strategy.

    1 Reply Last reply
    0
    • lingriidddL Offline
      lingriidddL Offline
      lingriiddd
      wrote on last edited by
      #2

      North Korean operatives spent six months at crypto conferences making friends before stealing $285M, most patient heist ever

      1 Reply Last reply
      0
      • lingriidddL Offline
        lingriidddL Offline
        lingriiddd
        wrote on last edited by
        #3

        State level adversary with national resources targeting your governance participants, threat model got significantly more serious

        1 Reply Last reply
        0
        • Jan Emil ChristiansenJ Offline
          Jan Emil ChristiansenJ Offline
          Jan Emil Christiansen
          wrote on last edited by
          #4

          Trust no one.

          https://x.com/cxcrypto1
          https://www.youtube.com/JanEmilChristiansen

          1 Reply Last reply
          0


          • Login or register to search.
          Powered by NodeBB Contributors
          • First post
            Last post
          0
          • Categories
          • Recent
          • Tags
          • Popular
          • World
          • Users
          • Groups