🚨 Time is Running Out: Reserve Your Spot in the Lucky Draw & Claim Rewards! START NOW

deBridge Face Cyberattack and Blames North Korea’s Lazarus Hackers

deBridge Face Cyberattack and Blames North Korea’s Lazarus Hackers

It seems that cyberattacks and hacks are daily news in the crypto world. 

deBridge Finance, cross-chain interoperability and liquidity transfer protocol, has been a victim of an attempted cyberattack targeting employees

According to the Twitter thread posted by deBridge co-founder Alex Smirnov, a handful of deBridge employees have received emails called “New Salary Adjustments” pretending to be sent from Smirnov’s email address

How to Avoid Crypto Taxes? (Legal Ways Explained)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe - We publish new crypto explainer videos every week!

The majority of employees suspected that email is sent with malicious intentions and therefore didn’t open them. However, one employee took a chance and downloaded the attached PDF document. 

Due to this action, the company has been forced to analyze the attack in great detail.

In his Twitter thread, Smirnov notes that the attack was not functioning on macOS, where it opens a normal PDF file. On the other hand, opening the file on a Windows operating system infects the whole system. The user first downloads the archive file, which contains a password-protected PDF and a file named "password".

According to Smirnov, the attack operates as follows: “user opens a link from email -> downloads & opens archive -> tries to open PDF, but PDF asks for a password -> user opens password.txt.lnk and infects the whole system”. 

The deBridge investigation showed that it’s the text file that damages the system. It firstly checks for an anti-virus program. If the computer is not protected, it activates and starts to communicate with the hacker to receive commands. 

Smirnov claims that the file names used in this attack were matching the ones Lazarus Group uses to execute their hacks. 

Lazarus Group and its hackers commonly target DeFi projects and the crypto industry. Back in June, North Korea’s cybercrime group was associated with the $100M Harmony’s Horizons Bridge theft. 

Gile K. , Market Sentiment Analyst
Gile is a Market Sentiment Analyst who understands what public events may form what emotions. Her experience researching Web3 news and public market messages – including cryptocurrency news reports, PRs, and social network streams – is critical to her role in helping lead the Crypto News Editorial Team.
As an intelligent professional in public relations, together with the team, she aims to determine real VS fake news patterns, and bring her findings to anyone searching for unbiased news and events happening in the FinTech markets. Her expertise is uncovering the latest trustworthy & informative Web3 announcements to the masses.
When she's not researching the trustworthiness of mainstream stories, she spends time enjoying her terrace view and taking meticulous care of her outdoor environment.

Loading...
binance
×
Verified

$600 WELCOME BONUS

Earn Huge Exclusive Binance Learners Rewards
5.0 Rating