Categories: MarketsMenafn

North Korea’s Growing Crypto Hacking Threat Is Spiraling

The Democratic People’s Republic of Korea (DPRK) has sharpened its focus on cryptocurrency. It marks a significant shift in revenue generation strategies. Since 2017, DPRK’s threat actors have been actively targeting this industry to navigate stringent sanctions imposed on the country. 

Privileged Access: A Gateway for Cyber Attacks

Despite North Korea’s tight control over its population’s movement and access to global information, a select group within the regime enjoys privileged access. Recorded Future, a cybersecurity firm, highlights this aspect. The elite class, consisting of highly trained computer science professionals, leverages new technologies and information. This exclusive group benefits from access to resources and sometimes international travel, providing them with the skills to execute sophisticated cyber attacks, particularly against the cryptocurrency industry.

The U.S. Treasury Department’s recent sanctions against Sinbad, a virtual currency mixer linked to North Korea’s Lazarus Group, spotlight the regime’s evolving tactics. Lazarus Group is known for using such platforms to launder proceeds from their illicit activities.

These threat actors are estimated to have stolen crypto assets worth $3 billion over the past six years, with $1.7 billion reportedly plundered in 2022 alone. The majority of these stolen funds are believed to fuel North Korea’s weapons of mass destruction (WMD) and ballistic missile programs.

North Korea’s Influence on the DeFi Hacking Trend

Chainalysis, in its 2023 Crypto Crime Report, points out that $1.1 billion of the total theft is due to hacks of DeFi protocols. That firmly places North Korea among the key drivers of the DeFi hacking trend that surged in 2022. The U.S. Department of Homeland Security (DHS) also highlighted the Lazarus Group’s exploitation of these protocols earlier this September.

DeFi exchange platforms offer an ideal environment for DPRK cyber actors to maneuver and make tracking more challenging.

Tactics Employed by DPRK Hackers

State-sponsored North Korean cyber actors are technologically advanced and adept at social engineering. They often target employees of online cryptocurrency exchanges with the lure of lucrative job offers. Once they engage their victims, these hackers distribute malware that provides remote access to the company’s network.

This access enables them to drain assets and transfer them to DPRK-controlled wallets. It illustrates a sophisticated blend of technological prowess and psychological manipulation.

Jerry Rolon

After working for 7 years as a Internet Marketer, Jerry now aims to explore the journalistic side of Internet. With his impeccable knowledge in this domain, he churns out some of the best news articles from the internet niche. With respect to acedamics, Jerry earned a degree in business from California State University.

Recent Posts

HyroTrader Wins Best Crypto Prop Firm of the Year at ProFX Awards Dubai

Miami, United States, 26th January 2026, ZEX PR WIRE, HyroTrader, a crypto proprietary trading firm…

4 hours ago

Jupiter Launches Mobile V3: The Onchain Finance Terminal

Jupiter Mobile V3 deploys Bloomberg-caliber retail tools to over 1 Million Users who pushed $8…

4 hours ago

NOTICE TO DISREGARD – Richard Katz Rx

Danbury, Connecticut, 24th Jan 2026, ZEX PR WIRE, We are advised by Richard Katz Rx…

14 hours ago

BitGo IPO Debuts on NYSE with YZi Labs Investment

BitGo Holdings priced its initial public offering at $18 per share on January 21, 2026,…

3 days ago

ChainUp Joins Hong Kong Web3 Festival 2026 as a Secondary Exhibition Sponsor

We’re thrilled to announce that ChainUp is now a Secondary Exhibition Sponsor for Hong Kong…

3 days ago

Hong Kong Web3 Festival 2026 is Proud to Welcome Hotcoin as a Primary Exhibition Sponsor

Hong Kong, 23rd January 2026, ZEX PR WIRE, Join us in giving a grateful welcome to Hotcoin,…

3 days ago