Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
Crypto founders report deluge of North Korean fake Zoom hacking attempts

Crypto founders report deluge of North Korean fake Zoom hacking attempts

CointimeCointime2025/03/13 06:39
By:Cointime

At least three crypto founders have reported foiling an attempt from alleged North Korean hackers to steal sensitive data through fake Zoom calls over the past few days. 

Nick Bax, a member of the white hat hacker group the Security Alliance, said in a March 11 X  post  the method used by North Korean scammers had seen millions of dollars stolen from suspecting victims. 

Generally, the  scammers will contact  a target with a meeting offer or partnership, but once the call starts, they send a message feigning audio issues while a stock video of a bored venture capitalist is on the screen; they then send a link to a new call, according to Bax. 

https://x.com/bax1337/status/1899471318178771129?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1899471318178771129%7Ctwgr%5E029a7979f0982dac0f676ca5cc544fbba8017488%7Ctwcon%5Es1_ref_url=https%3A%2F%2Fcointelegraph.com%2Fnews%2Fcrypto-founders-report-deluge-of-north-korean-fake-zoom-hacking-attempts

“It’s a fake link and instructs the target to install a patch to fix their audio/video,” Bax said. 

“They exploit human psychology, you think you’re meeting with important VCs and rush to fix the audio, causing you to be less careful than you usually are. Once you install the patch, you’re rekt.” 

The post prompted several crypto founders to detail their experiences with the scam.

Giulio Xiloyannis, co-founder of the blockchain gaming Mon Protocol,  said  scammers tried to dupe him and the head of marketing with a meeting about a partnership opportunity.  

However, he was alerted to the ruse when, at the last minute, he was prompted to use a Zoom link that “pretends to not be able to read your audio to make you install malware.”

“The moment I saw a Gumicryptos partner speaking and a Superstate one I realized something was off,” he said. 

Crypto founders report deluge of North Korean fake Zoom hacking attempts image 0

David Zhang, co-founder of US  venture-backed stablecoin  Stably, was also targeted. He  said  the scammers used his Google Meet link but then made up an excuse about an internal meeting, asking him to join that meeting instead.

“The site acted like a normal Zoom call. I took the call on my tablet though, so not sure what the behavior would’ve been on desktop,” Zhang said. 

“It probably tried to determine the OS before prompting the user to do something, but it just wasn’t built for mobile Oses.” 

Crypto founders report deluge of North Korean fake Zoom hacking attempts image 1   Source: David Zhang


Melbin Thomas, founder of Devdock AI, a decentralized AI platform for Web3 projects,  said  he was also hit with the scam and was unsure if his tech was still at risk.  

“The same thing happened to me. But I didn’t give my password while the installation was happening,” he said. 

“Disconnected my laptop and I reset to factory settings. But transferred my files to a hard drive. I have not connected the hard drive back to my laptop. Is it still infected?” 

This comes after the US, Japan and South Korea on Jan. 14  issued a joint warning against the growing threat  presented by cryptocurrency hackers associated with North Korean hackers. 

Groups such as the Lazarus Group  are prime suspects in some of the biggest cyber thefts in Web3, including  the Bybit $1.4 billion hack  and the  $600 million Ronin network  hack.

The Lazarus Group has been moving crypto assets using mixers following a string of high-profile hacks,  according to blockchain security firm CertiK , which detected a deposit of 400 Ether worth around $750,000 to the Tornado Cash mixing service. 

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — HOLO/USDT!

Bitget Announcement2025/09/12 07:46

FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

- FUN plunged 32.34% in 24 hours to $0.008938, marking a 541.8% monthly loss amid prolonged bearish trends. - Technical breakdowns, elevated selling pressure, and forced liquidations highlight deteriorating market sentiment and risk-off behavior. - Analysts identify key support below $0.0080 as critical, with bearish momentum confirmed by RSI (<30) and MACD indicators. - A trend-following backtest strategy proposes short positions based on technical signals to capitalize on extended downward trajectories.

Bitget-RWA2025/09/12 06:14
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

OPEN has dropped by 189.51% within 24 hours during a significant market pullback

- OPEN's price plummeted 189.51% in 24 hours to $0.8907, marking its largest intraday decline in history. - The token fell 3793.63% over 7 days, matching identical monthly and yearly declines, signaling severe bearish momentum. - Technical analysts cite broken support levels and lack of bullish catalysts as key drivers of the sustained sell-off. - Absence of stabilizing volume or reversal patterns leaves the market vulnerable to further downward pressure.

Bitget-RWA2025/09/12 06:14
OPEN has dropped by 189.51% within 24 hours during a significant market pullback

New spot margin trading pair — LINEA/USDT!

Bitget Announcement2025/09/11 10:04