Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert & block trade
Convert crypto with one click and zero fees
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
North Korea-Linked Lazarus Group Targets BitMEX Employee with Phishing Scam

North Korea-Linked Lazarus Group Targets BitMEX Employee with Phishing Scam

CoinEditionCoinEdition2025/06/01 16:00
By:Victor Joel

BitMEX stopped a Lazarus Group phishing attack using LinkedIn and malicious code. Lazarus Group linked to $1.34 billion crypto thefts in 2024, fueling North Korea’s programs. Lazarus combines simple phishing tactics with advanced strategies to target crypto firms globally.

  • BitMEX stopped a Lazarus Group phishing attack using LinkedIn and malicious code.
  • Lazarus Group linked to $1.34 billion crypto thefts in 2024, fueling North Korea’s programs.
  • Lazarus combines simple phishing tactics with advanced strategies to target crypto firms globally.

BitMEX announced that it stopped a phishing attack launched by the Lazarus Group, which North Korea reportedly backs. The crypto exchange shared the incident on May 30, showing how its security department had halted the threat before it could cause any damage. BitMEX stated that the attackers used social engineering tactics, reaching out to an employee through LinkedIn with a proposal for a Web3 NFT collaboration.

The interaction is pretty much known if you are familiar with Lazarus’ tactics,” BitMEX “The interaction is pretty much known if you are familiar with Lazarus’ tactics,” BitMEX wrote in its blog post, highlighting the recurring nature of these phishing strategies.

Lazarus Group: Patterns in Crypto Attacks

The Lazarus Group remains one of the most significant threats to the cryptocurrency community. It initiates its attacks primarily through simple phishing methods. BitMEX said that social engineering is often the initial step, and if successful, the attackers will try more complex techniques. This pattern has also appeared in several other incidents, including hacks at Bybit, Stake, and CoinEx.

Cybersecurity researchers identified that the group has recently infected multiple JavaScript npm packages to install backdoors and steal credentials. In one instance, an operational security error revealed a linked IP address located in Jiaxing, China. These incidents demonstrate how the group effectively combines basic and advanced techniques across various campaigns.

Recent reports from Kraken and blockchain researchers, including Arkham Intelligence and ZachXBT, have linked the Lazarus Group to numerous large-scale thefts. Initially, attacks often involve phishing emails or false job opportunities, but they later evolve into more advanced tactics, such as interfering with cloud systems or modifying smart contracts. The techniques they use may be complicated, yet many of them actually start by targeting user mistakes.

Crypto Theft and International Security Concerns

According to international agencies and blockchain firms, North Korean actors stole $1.34 billion in cryptocurrency in 2024, which equals more than 60% of the sector’s total losses. According to reports, money from stolen cryptocurrencies apparently helps develop North Korea’s weapons programs, with some experts suggesting that stolen cryptocurrencies fund up to half of the regime’s missile projects.

Security experts, such as Snir Levi, CEO of Nominis, warn that the growing awareness of Lazarus’ tactics has not reduced their effectiveness. “The Lazarus Group uses multiple techniques to steal cryptocurrencies,” Levi stated, emphasizing that they continue to defraud individuals and companies daily.

Disclaimer: The information presented in this article is for informational and educational purposes only. The article does not constitute financial advice or advice of any kind. Coin Edition is not responsible for any losses incurred as a result of the utilization of content, products, or services mentioned. Readers are advised to exercise caution before taking any action related to the company.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — HOLO/USDT!

Bitget Announcement2025/09/12 07:46

FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

- FUN plunged 32.34% in 24 hours to $0.008938, marking a 541.8% monthly loss amid prolonged bearish trends. - Technical breakdowns, elevated selling pressure, and forced liquidations highlight deteriorating market sentiment and risk-off behavior. - Analysts identify key support below $0.0080 as critical, with bearish momentum confirmed by RSI (<30) and MACD indicators. - A trend-following backtest strategy proposes short positions based on technical signals to capitalize on extended downward trajectories.

Bitget-RWA2025/09/12 06:14
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

OPEN has dropped by 189.51% within 24 hours during a significant market pullback

- OPEN's price plummeted 189.51% in 24 hours to $0.8907, marking its largest intraday decline in history. - The token fell 3793.63% over 7 days, matching identical monthly and yearly declines, signaling severe bearish momentum. - Technical analysts cite broken support levels and lack of bullish catalysts as key drivers of the sustained sell-off. - Absence of stabilizing volume or reversal patterns leaves the market vulnerable to further downward pressure.

Bitget-RWA2025/09/12 06:14
OPEN has dropped by 189.51% within 24 hours during a significant market pullback

New spot margin trading pair — LINEA/USDT!

Bitget Announcement2025/09/11 10:04