BPOI Banner
North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI

North Korea Deploying ‘Highly Tailored, Difficult-To-Detect’ Tactics To Steal Crypto From Businesses: FBI

North Korea has been running highly sophisticated social engineering schemes designed to crack the security measures of crypto and decentralized finance (DeFi) firms, according to the U.S. Federal Bureau of Investigation (FBI).

A new FBI public service announcement indicates North Korean cyber criminals target specific employees at firms connected to crypto exchange-traded funds (ETFs).

“Before initiating contact, the actors scout prospective victims by reviewing social media activity, particularly on professional networking or employment-related platforms.

North Korean malicious cyber actors incorporate personal details regarding an intended victim’s background, skills, employment, or business interests to craft customized fictional scenarios designed to be uniquely appealing to the targeted person.”

The FBI says fake scenarios often include new job opportunities or promises of corporate investment. North Korean cyber criminals can speak fluent English, demonstrate crypto technical prowess and will often reference obscure, highly targeted personal information designed to feign legitimacy, according to the law enforcement agency.

“The actors usually attempt to initiate prolonged conversations with prospective victims to build rapport and deliver malware in situations that may appear natural and non-alerting.”

The FBI says red flags include:

  • “Requests to execute code or download applications on company-owned devices or other devices with access to a company’s internal network.
  • Requests to conduct a ‘pre-employment test’ or debugging exercise that involves executing non-standard or unknown Node.js packages, PyPI packages, scripts, or GitHub repositories.
  • Offers of employment from prominent cryptocurrency or technology firms that are unexpected or involve unrealistically high compensation without negotiation.
  • Offers of investment from prominent companies or individuals that are unsolicited or have not been proposed or discussed previously.
  • Insistence on using non-standard or custom software to complete simple tasks easily achievable through the use of common applications (i.e. video conferencing or connecting to a server).
  • Requests to run a script to enable call or video teleconference functionalities supposedly blocked due to a victim’s location.
  • Requests to move professional conversations to other messaging platforms or applications.
  • Unsolicited contacts that contain unexpected links or attachments.”

The FBI recommends that crypto firm employees verify the identities of their contacts through other communication platforms and avoid taking pre-employment tests for potential new jobs on existing work laptops.

The agency also suggests firms keep information about crypto wallets offline; install multiple factors of authentication to move corporate financial assets; limit access to sensitive network documentation; funnel business communications to closed platforms that require in-person authentication; and disable email attachments by default on company devices.

Don’t Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Follow us on X, Facebook and Telegram

Surf The Daily Hodl Mix

&nbsp

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any losses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Generated Image: Midjourney



Source link

Conor Devitt

https://dailyhodl.com/2024/09/05/north-korea-deploying-highly-tailored-difficult-to-detect-tactics-to-steal-crypto-from-businesses-fbi/

2024-09-05 16:55:26

bitcoin
Bitcoin (BTC) $ 97,979.25 4.18%
ethereum
Ethereum (ETH) $ 3,472.26 2.70%
tether
Tether (USDT) $ 0.99949 0.03%
xrp
XRP (XRP) $ 2.30 3.18%
bnb
BNB (BNB) $ 697.16 1.47%
solana
Solana (SOL) $ 198.96 5.98%
dogecoin
Dogecoin (DOGE) $ 0.335832 5.21%
usd-coin
USDC (USDC) $ 1.00 0.00%
staked-ether
Lido Staked Ether (STETH) $ 3,468.73 2.79%
cardano
Cardano (ADA) $ 0.928779 2.71%
tron
TRON (TRX) $ 0.255962 1.92%
avalanche-2
Avalanche (AVAX) $ 41.20 7.95%
chainlink
Chainlink (LINK) $ 25.01 5.19%
the-open-network
Toncoin (TON) $ 5.87 5.91%
wrapped-steth
Wrapped stETH (WSTETH) $ 4,124.62 2.67%
shiba-inu
Shiba Inu (SHIB) $ 0.000024 6.33%
sui
Sui (SUI) $ 4.60 1.17%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 97,642.16 3.98%
hedera-hashgraph
Hedera (HBAR) $ 0.31938 12.63%
stellar
Stellar (XLM) $ 0.395906 8.92%
polkadot
Polkadot (DOT) $ 7.50 3.72%
weth
WETH (WETH) $ 3,472.43 2.71%
hyperliquid
Hyperliquid (HYPE) $ 29.49 5.78%
bitcoin-cash
Bitcoin Cash (BCH) $ 467.04 2.74%
leo-token
LEO Token (LEO) $ 9.53 1.44%
uniswap
Uniswap (UNI) $ 14.35 2.70%
litecoin
Litecoin (LTC) $ 108.35 3.39%
pepe
Pepe (PEPE) $ 0.000019 5.71%
bitget-token
Bitget Token (BGB) $ 4.92 17.65%
near
NEAR Protocol (NEAR) $ 5.56 4.46%
wrapped-eeth
Wrapped eETH (WEETH) $ 3,665.51 2.79%
ethena-usde
Ethena USDe (USDE) $ 0.999121 0.07%
aave
Aave (AAVE) $ 368.19 1.82%
aptos
Aptos (APT) $ 9.81 4.45%
internet-computer
Internet Computer (ICP) $ 11.32 7.21%
usds
USDS (USDS) $ 1.00 0.36%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.524762 6.06%
crypto-com-chain
Cronos (CRO) $ 0.162266 2.54%
vechain
VeChain (VET) $ 0.05244 10.95%
ethereum-classic
Ethereum Classic (ETC) $ 27.73 2.97%
mantle
Mantle (MNT) $ 1.23 3.68%
render-token
Render (RENDER) $ 7.78 2.45%
bittensor
Bittensor (TAO) $ 499.14 3.85%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.39 3.19%
mantra-dao
MANTRA (OM) $ 3.81 1.17%
whitebit
WhiteBIT Coin (WBT) $ 24.82 2.06%
monero
Monero (XMR) $ 191.40 1.51%
arbitrum
Arbitrum (ARB) $ 0.811266 3.14%
dai
Dai (DAI) $ 1.00 0.05%
filecoin
Filecoin (FIL) $ 5.45 7.21%