{"id":1595,"date":"2023-08-23T19:00:00","date_gmt":"2023-08-23T19:00:00","guid":{"rendered":"https:\/\/www.darkreading.com\/threat-intelligence\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group"},"modified":"2023-08-23T19:00:00","modified_gmt":"2023-08-23T19:00:00","slug":"fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group","status":"publish","type":"post","link":"https:\/\/ddi.mohflo.net\/index.php\/2023\/08\/23\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group\/","title":{"rendered":"FBI Warns of Cryptocurrency Heists by North Korea&#8217;s Lazarus Group"},"content":{"rendered":"<p><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?w=640&#038;ssl=1\"><\/p>\n<div><img data-recalc-dims=\"1\" decoding=\"async\" src=\"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group-1.jpg?w=640&#038;ssl=1\" class=\"ff-og-image-inserted\"><\/div>\n<div readability=\"41.47619047619\">\n<div readability=\"32.816326530612\">\n<p>The FBI has tracked hundreds of millions of dollars in cryptocurrency stolen by <span>the <a href=\"https:\/\/www.darkreading.com\/remote-workforce\/dprk-using-unpatched-zimbra-devices-to-spy-on-researchers-\" target=\"_blank\" rel=\"noopener\">Democratic People&#8217;s Republic of Korea (DPRK)<\/a> TraderTraitor-affiliated actors, more commonly referred to as <\/span><a href=\"https:\/\/www.darkreading.com\/cloud\/lazarus-group-striking-vulnerable-windows-iis-web-servers\" target=\"_blank\" rel=\"noopener\">Lazarus Group<\/a> or APT38, and is now warning cryptocurrency companies of this malicious blockchain activity.<\/p>\n<p>In an investigation, the FBI found that these threat actors moved 1,580 bitcoins from multiple cryptocurrency heists and are holding the funds in six different bitcoin addresses. The group may attempt to cash out the stolen cryptocurrency, amounting to more than $40 million.<\/p>\n<p>This <a href=\"https:\/\/www.darkreading.com\/ics-ot\/lazarus-group-rises-again-gather-intelligence-energy-healthcare-firms\" target=\"_blank\" rel=\"noopener\">cybercrime group<\/a> was also responsible for <a href=\"https:\/\/www.fbi.gov\/news\/press-releases\/fbi-identifies-cryptocurrency-addresses-stolen-by-dprk\" target=\"_blank\" rel=\"noopener\">multiple high-profile heists in June<\/a> spanning multiple countries, including $60 million of the virtual currency from Alphapo, $37 million from CoinsPaid, and $100 million from Atomic Wallet.<\/p>\n<p>The federal agency recommends that private sector entities examine these bitcoin addresses as well as any blockchain data associated with them. These entities should also be hyperaware of guarding against transactions from these particular addresses:&nbsp;<\/p>\n<ol>\n<li>3LU8wRu4ZnXP4UM8Yo6kkTiGHM9BubgyiG<\/li>\n<li>39idqitN9tYNmq3wYanwg3MitFB5TZCjWu<\/li>\n<li>3AAUBbKJorvNhEUFhKnep9YTwmZECxE4Nk<\/li>\n<li>3PjNaSeP8GzLjGeu51JR19Q2Lu8W2Te9oc<\/li>\n<li>3NbdrezMzAVVfXv5MTQJn4hWqKhYCTCJoB<\/li>\n<li>34VXKa5upLWVYMXmgid6bFM4BaQXHxSUoL<\/li>\n<\/ol>\n<p>&#8220;<span>The FBI will continue to expose and combat the DPRK&#8217;s use of illicit activities \u2014 including cybercrime and virtual currency theft \u2014 to generate revenue for the regime,&#8221; the agency said in a statement. &#8220;If you have any information to provide, please contact<span>&nbsp;<\/span><\/span><a href=\"https:\/\/www.fbi.gov\/contact-us\/field-offices\" target=\"_blank\" rel=\"noopener\">your local FBI field office<\/a><span><span>&nbsp;<\/span>or the FBI&#8217;s Internet Crime Complaint Center at<span>&nbsp;<\/span><\/span><a href=\"https:\/\/ic3.gov\/\" target=\"_blank\" rel=\"noopener\">ic3.gov<\/a><span>.&#8221;<\/span><\/p>\n<\/div>\n<\/div>\n<div id=\"articleFooter-newsletterSignup\" readability=\"10.473404255319\">\n<p>Keep up with the latest cybersecurity threats, newly-discovered vulnerabilities, data breach information, and emerging trends. Delivered daily or weekly right to your email inbox.<\/p>\n<p><a class=\"subscribe-btn dr-btn\" href=\"https:\/\/darkreading.tradepub.com\/c\/pubRD.mpl?secure=1&amp;sr=pp&amp;_t=pp:&amp;qf=w_defa3135&amp;ch=dr_eoa\" title=\"Subscribe\" target=\"_blank\" rel=\"noreferrer noopener\">Subscribe<\/a><\/div>\n<p><a href=\"https:\/\/www.darkreading.com\/threat-intelligence\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group\">Source<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The FBI has tracked hundreds of millions of dollars in<\/p>\n","protected":false},"author":12,"featured_media":1596,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[1],"tags":[809],"class_list":["post-1595","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-uncategorized","tag-dark-reading"],"featured_image_urls":{"full":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,false],"thumbnail":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?resize=150%2C150&ssl=1",150,150,true],"medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=300%2C300&ssl=1",300,300,true],"medium_large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,true],"large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,true],"1536x1536":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,true],"2048x2048":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,true],"chromenews-featured":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1",342,343,true],"chromenews-large":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?resize=342%2C343&ssl=1",342,343,true],"chromenews-medium":["https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?resize=342%2C343&ssl=1",342,343,true]},"author_info":{"display_name":"Dark Reading","author_link":"https:\/\/ddi.mohflo.net\/index.php\/author\/darkreading\/"},"category_info":"<a href=\"https:\/\/ddi.mohflo.net\/index.php\/category\/uncategorized\/\" rel=\"category tag\">Uncategorized<\/a>","tag_info":"Uncategorized","comment_count":"0","jetpack_featured_media_url":"https:\/\/i0.wp.com\/ddi.mohflo.net\/wp-content\/uploads\/2023\/08\/fbi-warns-of-cryptocurrency-heists-by-north-koreas-lazarus-group.jpg?fit=342%2C343&ssl=1","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/1595","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/comments?post=1595"}],"version-history":[{"count":0,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/posts\/1595\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media\/1596"}],"wp:attachment":[{"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/media?parent=1595"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/categories?post=1595"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ddi.mohflo.net\/index.php\/wp-json\/wp\/v2\/tags?post=1595"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}