Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
North Korean Hackers Target Crypto Projects With MacOS Exploit

North Korean Hackers Target Crypto Projects With MacOS Exploit

CryptotimesCryptotimes2025/07/03 14:30
By:Gopal Solanky

Cybersecurity researchers have uncovered a new malware campaign by North Korean state-backed hackers aimed at cryptocurrency companies. This marks an alarming shift toward targeting Apple’s memory protection on macOS systems.

The malware, which hides in what looks like a Zoom update, is designed to infect computers used by developers and project staff. Once active, it can collect passwords, wallet data and internal files, raising the risk for teams building in Web3 and decentralized finance.

SentinelOne published a detailed technical analysis of the threat on 2 July, naming the exploit NimDoor after the obscure Nim programming language it uses. Because Nim is rarely seen on macOS, its use may help the malware evade detection by standard antivirus tools.

In the report, SentinelOne said, “DPRK threat actors are utilizing Nim-compiled binaries and multiple attack chains in a campaign targeting Web3 and crypto-related businesses.” This approach builds on a 2023 operation the firm called Hidden Risk , where similar groups used PDF lures and a clever persistence trick involving macOS’s zshenv file.

Meanwhile, blockchain data firm Chainalysis reported that North Korea-linked attackers stole more than $1 billion worth of crypto last year. The hacks were spread across 20 separate incidents, with stolen funds suspected to support weapons and missile programmes.

Cybersecurity experts urge Web3 companies to strengthen security on Mac devices. This includes blocking suspicious Zoom or Meet scripts, monitoring unsigned files, and reviewing user-level settings for hidden malware. 

Follow The Crypto Times on Google News to Stay Updated!
0
0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Wall Street interprets the Federal Reserve decision as more dovish than expected

The market originally expected a "hawkish rate cut" from the Federal Reserve, but in reality, there were no additional dissenters, no higher dot plot, and the anticipated tough stance from Powell did not materialize.

ForesightNews2025/12/11 06:12
Wall Street interprets the Federal Reserve decision as more dovish than expected

The Federal Reserve cuts rates again but divisions deepen, next year's path may become more conservative

Although this rate cut was as expected, there was an unusual split within the Federal Reserve, and it hinted at a possible prolonged pause in the future. At the same time, the Fed is stabilizing year-end liquidity by purchasing short-term bonds.

BlockBeats2025/12/11 05:34
The Federal Reserve cuts rates again but divisions deepen, next year's path may become more conservative

Betting on LUNA: $1.8 billion is being wagered on Do Kwon's prison sentence

The surge in LUNA’s price and huge trading volume are not a result of fundamental recovery, but rather the market betting with real money on how long Do Kwon will be sentenced on the eve of his sentencing.

BlockBeats2025/12/11 05:33
Betting on LUNA: $1.8 billion is being wagered on Do Kwon's prison sentence

What is the overseas crypto community talking about today?

What have foreigners been most concerned about in the past 24 hours?

BlockBeats2025/12/11 05:33
What is the overseas crypto community talking about today?
© 2025 Bitget