BTC $64,149.49 +0.26%
ETH $1,866.85 +0.46%
BNB $566.40 +1.00%
XRP $1.09 +0.73%
SOL $74.15 +0.23%
TRX $0.3297 -0.08%
DOGE $0.0713 +3.31%
ADA $0.1647 +0.30%
BCH $209.85 +0.04%
LINK $8.38 +0.36%
HYPE $57.73 -1.72%
AAVE $91.84 -3.01%
SUI $0.7100 -1.00%
XLM $0.1784 +0.40%
ZEC $480.51 -2.89%
BTC $64,149.49 +0.26%
ETH $1,866.85 +0.46%
BNB $566.40 +1.00%
XRP $1.09 +0.73%
SOL $74.15 +0.23%
TRX $0.3297 -0.08%
DOGE $0.0713 +3.31%
ADA $0.1647 +0.30%
BCH $209.85 +0.04%
LINK $8.38 +0.36%
HYPE $57.73 -1.72%
AAVE $91.84 -3.01%
SUI $0.7100 -1.00%
XLM $0.1784 +0.40%
ZEC $480.51 -2.89%

fil

All
Article
Flash

North Korea dismantles an elite hacking group involved in infiltrating central banks and foreign trade banks to steal funds and launder money through cryptocurrency

According to South Korean media Daily NK, North Korean authorities arrested an elite hacker group on July 12, which is suspected of infiltrating the internal networks of the North Korean central bank and foreign trade bank, stealing national trade funds and laundering money through cryptocurrency. Sources say the group's leader is a veteran from the cyber warfare unit under the North Korean Reconnaissance General Bureau, who recruited talented IT graduates from Kim Chaek University of Technology and Pyongyang University of Science and Technology, using encrypted communications and wireless devices to commit crimes.They split the stolen funds into small amounts and transferred them to overseas cryptocurrency wallets, exchanged them for cash through intermediaries, and then converted them into dollars and other currencies in border areas. Pyongyang officials launched an investigation after discovering anomalies in foreign currency payment approvals and records of overseas IP access, ultimately raiding a safe house and arresting suspects who were laundering money, seizing equipment worth hundreds of thousands of dollars. This case has caused a stir among the elite and military circles in Pyongyang, with senior officials in the Reconnaissance General Bureau and the science and education sector worried about being implicated. North Korea has long been accused of stealing billions of dollars in cryptocurrency assets through hacker organizations like the Lazarus Group, but this incident rarely shows that its own financial system has also become a target of internal attacks.

The Thai SEC has filed a criminal lawsuit against Bitkub, accusing it of concealing a hacker attack of approximately 50 million dollars in 2021

According to Cointelegraph, the Securities and Exchange Commission (SEC) of Thailand has filed a criminal complaint against the digital asset exchange Bitkub Online and two former directors, Sakolkorn Sakavee and Thaweesap Rawan, accusing them of involvement in false reports related to a cyber attack in 2021.The SEC stated that a cyber attack in May 2021 resulted in the theft of 16 digital assets from Bitkub, valued at approximately 1.7 billion Thai Baht, or about 50 million USD. The regulatory agency claimed that Bitkub subsequently replenished the stolen assets before October 31, 2021, but the daily net capital flow reports submitted from May 10 to October 30, 2021, did not accurately reflect the reduction in assets.Bitkub stated on the X platform that the case stems from disclosure decisions made after the cyber attack in May 2021 and is not an act of fraud. The exchange claimed that the delay in disclosing the compromised wallet was to avoid a bank run, and the co-founder subsequently purchased an equivalent amount of digital assets to cover the stolen funds, with no financial losses incurred by the company or its clients. Bitkub was established in 2018 and is one of Thailand's major cryptocurrency exchanges. Bitkub's parent company is considering a potential initial public offering, including the possibility of listing in Hong Kong.

Slow Fog Cosine: Claude Code exposes high-risk security vulnerabilities, malicious configuration files may silently execute commands

The founder of Slow Fog, Yu Xian, retweeted a tweet on the X platform regarding the potential poisoning attack risks of Claude Code and published an analysis of the poisoning attack details targeting Grok Build CLI and Claude Code CLI.It pointed out that the security mechanisms of Grok Build CLI are not unified, with different code paths having different trust assumptions, creating gaps that serve as channels for attackers. Attackers may execute arbitrary commands through malicious project configuration files without the user's knowledge, thereby stealing API keys, cloud credentials, or controlling local devices.Researchers constructed a testing environment and found that on Mac systems, if Claude Code is affected, executing specific test commands can trigger the local calculator to launch, proving the existence of potential command execution risks.If the attack is successful, attackers may further steal API keys from AI services like Claude and OpenAI, resulting in account cost losses, gain access to servers and data by obtaining cloud service credentials from AWS, Alibaba Cloud, Tencent Cloud, modify code repositories to implant backdoors, and use local devices as jump points to attack corporate internal networks. It is reported that the related vulnerabilities have existed for a year.
app_icon
ChainCatcher Building the Web3 world with innovations.