BPOI Banner
North Korean Hackers Used Fake NFT Game to Steal Wallet Credentials: Report North Korean Hackers Used Fake NFT Game to Steal Wallet Credentials: Report

Web3 Security Firms Confirm North Korea’s Role in Radiant Capital Hack

Radiant Capital has revealed new findings about the $50 million hack targeting its decentralized finance (DeFi) platform in October, attributing the attack to a North Korea-aligned hacking group.

The attackers gained access through an elaborate scheme involving malware distributed via Telegram.

$50M Radiant Capital DeFi Hack

The breach, first discovered on October 16, 2024, prompted Radiant to partner with cybersecurity firms like Mandiant, zeroShadow, Hypernative, and SEAL 911 to investigate and mitigate the damage.

According to the official blog post, the attack was traced back to September 11, 2024, when a Radiant developer received a Telegram message from someone impersonating a former contractor. The message, crafted to appear harmless, requested feedback on a supposed career-related PDF file linked to smart contract auditing.

The sender convincingly spoofed a legitimate website, reducing suspicion. Once the file, titled Penpie_Hacking_Analysis_Report.zip, was opened, a macOS backdoor malware named INLETDRIFT was delivered. The malware communicated with an external server and appeared harmless by displaying a realistic PDF.

Despite Radiant’s adherence to rigorous security protocols, including transaction simulations and payload verifications, the malware evaded detection by manipulating front-end transaction data. Developers unknowingly signed off on malicious transactions, believing they were legitimate. The attackers’ planning rendered the intrusion nearly undetectable during routine checks.

zeroShadow, a Web3 security solutions provider, has also corroborated Radiant Capital’s assessment that the hack was the work of North Korea-linked actors. In a statement on December 9, the platform said,

“We also attribute the Radiant Capital October 16 incident to DPRK with high confidence based on multiple indicators that we have gathered on and off chain. We have tracked the movements to Hyperliquid as stemming from Radiant users failing to revoke permissions, and not the initial incident’s stolen funds.”

Radiant’s TVL Down by Over 97% This Year

Radiant Capital is a decentralized lending and borrowing protocol that integrates cross-chain capabilities through the use of LayerZero technology. DefiLlama’s latest figures place its total value locked (TVL) at a little over $6 million.

The October 16 hack is not the first time Radiant has been compromised this year. Back in January, a smart contract vulnerability was exploited, costing the platform $4.5 million, during which its TVL was significantly higher, surpassing $300 million, highlighting a significant decline in locked assets over the course of the year despite the bull run.

SPECIAL OFFER (Sponsored)

Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

Source link

Chayanika Deka

https://cryptopotato.com/web3-security-firms-confirm-north-koreas-role-in-radiant-capital-hack/

2024-12-09 22:26:16

bitcoin
Bitcoin (BTC) $ 97,054.00 0.37%
ethereum
Ethereum (ETH) $ 3,376.57 1.01%
tether
Tether (USDT) $ 0.999836 0.00%
xrp
XRP (XRP) $ 2.26 0.47%
bnb
BNB (BNB) $ 666.25 0.53%
solana
Solana (SOL) $ 186.03 1.04%
dogecoin
Dogecoin (DOGE) $ 0.320919 1.21%
usd-coin
USDC (USDC) $ 1.00 0.04%
staked-ether
Lido Staked Ether (STETH) $ 3,369.10 0.97%
cardano
Cardano (ADA) $ 0.909977 1.42%
tron
TRON (TRX) $ 0.248198 0.48%
avalanche-2
Avalanche (AVAX) $ 38.00 2.99%
chainlink
Chainlink (LINK) $ 22.42 2.54%
wrapped-steth
Wrapped stETH (WSTETH) $ 4,008.01 1.31%
the-open-network
Toncoin (TON) $ 5.46 1.67%
sui
Sui (SUI) $ 4.48 4.03%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 96,781.93 0.30%
shiba-inu
Shiba Inu (SHIB) $ 0.000022 1.53%
hyperliquid
Hyperliquid (HYPE) $ 33.16 0.94%
stellar
Stellar (XLM) $ 0.364984 0.10%
polkadot
Polkadot (DOT) $ 7.05 2.35%
hedera-hashgraph
Hedera (HBAR) $ 0.262533 1.14%
weth
WETH (WETH) $ 3,370.65 1.29%
bitcoin-cash
Bitcoin Cash (BCH) $ 455.90 0.16%
leo-token
LEO Token (LEO) $ 9.34 0.55%
uniswap
Uniswap (UNI) $ 13.96 3.68%
litecoin
Litecoin (LTC) $ 103.01 1.93%
pepe
Pepe (PEPE) $ 0.000018 0.29%
wrapped-eeth
Wrapped eETH (WEETH) $ 3,557.34 1.06%
near
NEAR Protocol (NEAR) $ 5.09 2.38%
ethena-usde
Ethena USDe (USDE) $ 0.999604 0.05%
bitget-token
Bitget Token (BGB) $ 4.17 0.63%
aptos
Aptos (APT) $ 9.46 7.70%
usds
USDS (USDS) $ 1.00 0.08%
internet-computer
Internet Computer (ICP) $ 10.15 3.14%
aave
Aave (AAVE) $ 306.67 1.80%
crypto-com-chain
Cronos (CRO) $ 0.159523 1.99%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.485953 0.08%
mantle
Mantle (MNT) $ 1.18 0.76%
ethereum-classic
Ethereum Classic (ETC) $ 26.44 0.77%
vechain
VeChain (VET) $ 0.04658 0.36%
render-token
Render (RENDER) $ 7.27 1.62%
mantra-dao
MANTRA (OM) $ 3.75 3.73%
whitebit
WhiteBIT Coin (WBT) $ 24.40 0.14%
monero
Monero (XMR) $ 190.38 1.38%
bittensor
Bittensor (TAO) $ 466.98 1.60%
dai
Dai (DAI) $ 1.00 0.02%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.29 2.17%
arbitrum
Arbitrum (ARB) $ 0.762626 2.05%
ethena
Ethena (ENA) $ 1.06 6.34%