Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    5 Best API Documentation Tools EVER! 2025

    May 14, 2025

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025
    Facebook X (Twitter) Instagram
    Ai Crypto TimesAi Crypto Times
    • Altcoins
      • Bitcoin
      • Coinbase
      • Litecoin
    • Blockchain
    • Crypto
    • Ethereum
    • Lithosphere News Releases
    X (Twitter) Instagram YouTube LinkedIn
    Ai Crypto TimesAi Crypto Times
    Home » North Korean Hackers Created U.S.-Based Firms to Target Crypto Devs

    North Korean Hackers Created U.S.-Based Firms to Target Crypto Devs

    Isabella TaylorBy Isabella TaylorApril 26, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Key Takeaways

    •  The malware also targeted developers’ login credentials, which could then be used to gain unauthorized access to larger systems.
    • The entities, Blocknovas LLC and Softglide LLC, were reportedly registered in New Mexico and New York under false identities and addresses

    Two U.S.-based companies allegedly set up by North Korean operatives have been linked to a cyber campaign aimed at stealing sensitive data from cryptocurrency developers, according to findings shared by cybersecurity firm Silent Push. 

    Reportedly, the entities, Blocknovas LLC and Softglide LLC, were reportedly registered in New Mexico and New York under false identities and addresses—moves that violate U.S. sanctions and international restrictions on North Korean business activities.

    The scheme, which U.S. authorities have now disrupted, is attributed to a subgroup within the Lazarus Group, a North Korea-backed hacking organization connected to the country’s Reconnaissance General Bureau, its principal foreign intelligence body. The firms reportedly served as fronts to pose as legitimate employers offering jobs in the cryptocurrency sector, only to distribute malware to applicants during the recruitment process.

    “These attacks utilize fake personas offering job interviews, which lead to sophisticated malware deployments in order to compromise the cryptocurrency wallets of developers,” said Kasey Best, director of threat intelligence at Silent Push. She added that the malware also targeted developers’ login credentials, which could then be used to gain unauthorized access to larger systems.

    The campaign is part of what cybersecurity analysts describe as a broader North Korean effort to generate funds through illicit cyber operations. The malware deployed through the fake job application processes reportedly enabled attackers to harvest private keys and passwords tied to digital wallets.

    According to Silent Push, a third entity, Angeloper Agency, is also linked to the campaign, though it does not appear to have been registered in the U.S.

    The FBI confirmed enforcement action against the domain of Blocknovas, stating on its seizure notice that the website was used “to deceive individuals with fake job postings and distribute malware.” The agency said the seizure was part of a broader operation targeting North Korean actors involved in cybercrime.

    This operation is not isolated. Earlier this month, Manta Network co-founder Kenny Li was reportedly targeted by a phishing attempt using tactics similar to those linked to the Lazarus Group. In that case, malware was delivered via a fake Zoom call invite.

    Additionally, a recent report by GTIG, another cybersecurity firm, found that North Korean IT workers are attempting to secure remote roles in countries such as the United States, Germany, and the United Kingdom using fake resumes and forged documents. These individuals aim to gain access to internal company systems, financial platforms, and sensitive client data.

    The formation of Blocknovas and Softglide in the U.S. marks a rare instance of North Korean operatives successfully registering corporate entities on American soil. The act violates sanctions imposed by the U.S. Treasury’s Office of Foreign Assets Control and the United Nations.

    While the immediate threat from the identified domains has been neutralized, Silent Push has warned that the malware associated with the campaign has already affected some users, compromising their wallets and personal credentials. Investigations into the extent of the operation and any additional entities are underway



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Isabella Taylor

    Related Posts

    5 Best API Documentation Tools EVER! 2025

    May 14, 2025

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Best 5 WhatsApp API Provider | Grow NOW! 2025

    May 14, 2025
    Leave A Reply Cancel Reply

    Don't Miss

    5 Best API Documentation Tools EVER! 2025

    Crypto May 14, 2025

    Have you ever dealt with APIs? Well I have, as a CS undergrad I have…

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025

    Best 5 WhatsApp API Provider | Grow NOW! 2025

    May 14, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Our Picks

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 2025

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 2025

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 2025

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 2025

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    • Popular
    • Recent
    • Top Reviews

    30 Minutes of Exercise vs 100 Steps a Day: Which One is Better?

    May 16, 2021

    Quisque consectetur libero elit

    September 1, 2020

    Winter Fitness: These Poses Can Keep You Warm

    January 14, 2021

    5 Best API Documentation Tools EVER! 2025

    May 14, 2025

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025
    9.3

    Facilisis tincidunt justo eget urna leo dapibus at

    December 19, 2020
    8.9

    Review: Denmark Proposes Corona Pass Mandate for Workers

    January 9, 2020
    8.9

    Laoreet Sed: Suscipit nec dapibus at elit

    December 19, 2020
    Latest Galleries
    [latest_gallery cat="all" number="5" type="slider"]
    Latest Reviews
    8.5

    Review: How Research Could Help with Spinal Cord Injuries

    March 14, 2021
    8.9

    Review: How AI in Soccer could Predict Injuries?

    January 15, 2021
    8.9

    Review: Can Wisconsin Clinch the Big Ten West this Weekend

    January 15, 2021
    Demo
    Top Posts

    Atua AI Extends Bitcoin-Backed Infrastructure for Intelligent Enterprise Operations

    April 23, 202513 Views

    AGII Launches AI-Powered Web3 App To Advance Real-Time Decentralized Infrastructure

    April 26, 20251 Views

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 20250 Views

    AGII Deploys Smart Detection Models for On-Chain Infrastructure Resilience

    May 14, 20250 Views
    Don't Miss

    5 Best API Documentation Tools EVER! 2025

    Crypto May 14, 2025

    Have you ever dealt with APIs? Well I have, as a CS undergrad I have…

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025

    Best 5 WhatsApp API Provider | Grow NOW! 2025

    May 14, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    Demo
    Top Posts

    Atua AI Extends Bitcoin-Backed Infrastructure for Intelligent Enterprise Operations

    April 23, 202513 Views

    AGII Launches AI-Powered Web3 App To Advance Real-Time Decentralized Infrastructure

    April 26, 20251 Views

    5 Best API Documentation Tools EVER! 2025

    May 14, 20250 Views

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 20250 Views
    Don't Miss

    5 Best API Documentation Tools EVER! 2025

    Crypto May 14, 2025

    Have you ever dealt with APIs? Well I have, as a CS undergrad I have…

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025

    Best 5 WhatsApp API Provider | Grow NOW! 2025

    May 14, 2025
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    X (Twitter) Instagram YouTube LinkedIn
    Our Picks

    5 Best API Documentation Tools EVER! 2025

    May 14, 2025

    Best 7 KYC API to look out for | Check NOW! 2025

    May 14, 2025

    Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google

    May 14, 2025
    Recent Posts
    • 5 Best API Documentation Tools EVER! 2025
    • Best 7 KYC API to look out for | Check NOW! 2025
    • Bitwise CIO bats for diversified crypto investment, compares Bitcoin to Google
    • Best 5 WhatsApp API Provider | Grow NOW! 2025
    • XRP takes real step into DeFi with Flare’s FAssets upgrade
    © 2025 - 2026

    Type above and press Enter to search. Press Esc to cancel.