Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
Home»HACKING NEWS»Kaspersky’s report reveals new tactics used by North Korean cryptocurrency hackers.
HACKING NEWS

Kaspersky’s report reveals new tactics used by North Korean cryptocurrency hackers.

By Crypto FlexsMay 13, 20243 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Kaspersky’s report reveals new tactics used by North Korean cryptocurrency hackers.
Share
Facebook Twitter LinkedIn Pinterest Email
  • North Korean hackers are targeting South Korean cryptocurrency companies and distributing ‘Durian’ malware.
  • The resurgence of dormant hackers like Careto highlights the evolving cybersecurity landscape.
  • Hacktivist groups like SiegedSec expand their offensive operations amid global social and political events.

The first quarter of 2024 has proven to be particularly eventful, with notable results and trends emerging on the front lines of cybersecurity. From the deployment of sophisticated malware variants to the resurgence of long-dormant threat actors, the cyber threat landscape continues to change and presents new challenges to security professionals around the world.

A recent report from Kaspersky’s Global Research and Analysis Team (GReAT) has revealed surprising facts that shed light on the activities of various Advanced Persistal Threat (APT) groups.

Durian malware targets Korean cryptocurrency company

Among GReAT’s findings is the emergence of the ‘Durian’ malware, attributed to the North Korean hacking group Kimsuky. It has been used to target domestic cryptocurrency companies and boasts a high degree of sophistication, boasting comprehensive backdoor functions.

The deployment of the Durian malware marks a notable increase in Kimsuky’s cyber capabilities, demonstrating its ability to exploit vulnerabilities within the target organizations’ supply chains.

Kimsuky demonstrates a calculated approach to bypassing traditional security mechanisms by infiltrating legitimate security software dedicated to South Korean cryptocurrency companies. This mode of operation highlights the need for heightened vigilance and proactive security strategies within the highly risky cryptocurrency sector.

Kimsuki’s connection to the Lazarus Group

The Kaspersky report further reveals subtle links between Kimsuky and the Lazarus Group, another North Korean hacking consortium. Although historically separate entities, the utilization of similar tools such as LazyLoad suggests potential collaboration or tactical linkage between these crypto threat actors.

The findings highlight the interconnected nature of cyber threats, where alliances and partnerships can amplify the impact of malicious activity.

The revival of a dormant cryptocurrency hacking group

At the same time, the APT trends report shows the resurgence of long-dormant threat actors, such as the Careto group, which was last seen active in 2013.

Despite years of dormancy, Careto reemerged in 2024 with a series of targeted campaigns using custom technology and sophisticated implants to infiltrate high-profile organizations. This resurgence is a stark reminder that cyber threats never truly go away. They just adapt and evolve.

Other cryptocurrency hacking groups threatening the world

The Kaspersky report also highlights the emergence of new malware campaigns targeting Middle Eastern government agencies, such as “DuneQuixote.” Featuring sophisticated evasion techniques and practical evasive methods, these campaigns highlight the evolving tactics of threat actors in the region.

The implant “SKYCOOK” is also appearing, utilized by Oilrig APT targeting Internet service providers in the Middle East.

Meanwhile, in Southeast Asia and the Korean Peninsula, the activities of threat actors such as DroppingElephant continue to pose significant challenges. Leveraging malicious RAT tools and leveraging platforms like Discord for distribution, these actors demonstrate a multi-pronged approach to cyber espionage. Using legitimate software as an initial infection vector further complicates detection and mitigation efforts, highlighting the need for improved threat intelligence and collaboration between stakeholders.

On the hacktivism front, groups like SiegedSec have stepped up their offensive operations, targeting corporate and government infrastructure in pursuit of social justice-related goals. Focused on hacking and leak operations, these groups leverage current social and political events to amplify their message and influence.


Share this article

category

tag

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Everyday Guides Book Series — Rethink Your Strategy

July 20, 2026

KuCoin unveils Celestia Stage as Tomorrowland Belgium 2026 partnership expands

July 18, 2026

Videos and Podcasts | Vault 12

July 14, 2026
Add A Comment

Comments are closed.

Recent Posts

Crypto Player Takes Home $1.749M After a Million PSG Bet on 1win

August 14, 2026

MEXC July TradFi Trading Shifts Toward AI Storage as SNDK Futures Volume Surges More Than 15x Times

August 13, 2026

Pepperstone Appoints New CTO to Drive AI-Native Proprietary Tech Push

August 13, 2026

MEXC First to List Unitree Pre-IPO Futures as Daily Trading Volume Surges 1,104%

August 12, 2026

ForumPay Expands Payment Infrastructure with New Card and Bank Transfer Acceptance Solution

August 11, 2026

MEXC Lists DAPPOS (DOS) With $60,000 Worth of DOS and 10,000 USDT in Airdrop+ Rewards

August 11, 2026

MEXC Upgrades RealStocks With Three New Features to Enhance U.S. Stock Trading Experience

August 11, 2026

74.2% of Traditional Finance Users Have Shifted Their Trading Activity to Crypto Exchanges

August 11, 2026

CT3 Begins Preparing Its Ecosystem for the Launch of the CT3GB Economy

August 10, 2026

Syntetika Launches Tokenization Hub Bringing Regulated Investment Strategies Onchain

August 10, 2026

Bitmine Immersion Technologies (BMNR) Announces ETH Holdings Reach 5.81 Million Tokens, and Total Crypto and Total Cash Holdings of $11.6 Billion

August 10, 2026

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

Crypto Player Takes Home $1.749M After a Million PSG Bet on 1win

August 14, 2026

MEXC July TradFi Trading Shifts Toward AI Storage as SNDK Futures Volume Surges More Than 15x Times

August 13, 2026

Pepperstone Appoints New CTO to Drive AI-Native Proprietary Tech Push

August 13, 2026
Most Popular

NVIDIA Project GR00T strengthens humanoid robot development

November 11, 2024

SEC tells issuers of spot Ethereum ETFs to file first round of S-1 draft forms by Friday: Sources

May 30, 2024

The default producer Jesse Pollak said, ‘Pimping’Art was a mistake.

April 20, 2025
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2026 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.