April 20, 2024

Sekoia: North Korean hackers use malware to steal cryptocurrencies from macOS users

Article Reading Time:
1 min.

Sekoia: North Korean hackers use malware to steal cryptocurrencies from macOS users

Analysts at Sekoia presented a report in which they reported that the North Korean hacker group BlueNoroff is attackingmacOS users using malware called RustBucket.

Initially, the malware report was published by the Jamf platform, and later it was supplemented and analyzed by the Sekoia team.The software, called RustBucket, uses a fake PDF program.analysts at Sekoia.

"Since 2017, BlueNoroff has been observed running campaigns targeting cryptocurrency exchangesand venture capital-related entities in Europe, Asia, the United States, and the UAE," Sekoia said in the report.

Since 2022, BlueNoroff has begun to pose a global threat to crypto startups from the United States, India, the United Kingdom, Ukraine, Poland, the Czech Republic, the United Arab Emirates, Singapore, Estonia, Vietnam, Malta, Germany, and Hong Kong.The group used to use Word to inject malware, but has sinceimproved its approaches.

Earlier it became known that hacker groupsassociated with North Korea, stole $721 million in cryptocurrency from Japanese entrepreneurs from 2017 to January 1, 2023.  The US government also believes that cyber attacks and theft of cryptocurrency have become the main source of income for the North Korean authorities. At least half of North Korea's missile program is financed by cybercrime, Washington claims.