North Korea has a pot? New research shows that the theft of Coincheck is actually done by Russian hackers.

According to the Asahi Shimbun report today, the personal computer of the Coincheck employee of the Japanese crypto exchange was found to be infected with a virus related to Russian hacking organizations.

In January 2018, Coincheck suffered a hacker attack. The $534 million NEM (new currency) was stolen and the stolen amount was the highest in the history of cryptocurrency.

Earlier reports said that this high-profile attack was initiated by North Korean-related attackers, but the latest research raises questions about this claim.

Crypto

Experts are currently considering that the crime may have been caused by "a group of unknown hackers."

In a recent survey of Coincheck employees' personal computers, researchers discovered the "Mokes" and "Netwire" viruses. These computers may install and spread the virus in the form of emails, giving them the opportunity to gain unauthorized access to the exchange's private key.

Given that both known viruses have been used by Russian hackers before, an American expert told the media:

"After the analysis of the virus, Eastern Europe and Russia may be related to the criminal group."

According to reports, both viruses allow hackers to take control of infected computers and perform remote operations. In June 2011, Morks was first promoted at a forum in Russia, and it is reported that cybersecurity investigators have known Netwire for 12 years.

Prior to this, several security companies believed that the theft of Coincheck was related to North Korean hackers. Due to sanctions imposed by Western countries, North Korea is considered to conduct normal economic activities through illegal acquisition of cryptocurrencies.

For example, this spring, a South Korean cybersecurity company claimed that North Korean hackers were behind the scenes of phishing scams for UpBit users on the Korean cryptocurrency exchange.

In a report last February, the South Korean National Intelligence Agency said phishing scams and other means have brought tens of billions of won to North Korea. The North Korean authorities are also alleged to be investigating whether the country is behind the scenes of the Coincheck attack.

However, it seems that North Korea has been on the back of Coincheck’s theft.

We will continue to update Blocking; if you have any questions or suggestions, please contact us!

Share:

Was this article helpful?

93 out of 132 found this helpful

Discover more

Market

Wu's Weekly Picks CoinEX attacked, FTX's coin selling rules, Binance US layoffs, and Top 10 news (September 9-15)

Author | Wu's Top 10 Blockchain News This Week. US August Unadjusted CPI Annual Rate 3.7% Core...

Opinion

SBF Trial Records Fully Exposed Blame-shifting, Amnesia, Contradictions

Today is the real highlight, as the prosecution lawyer will conduct a half-day long cross-examination of SBF after th...

Blockchain

Babbitt column | Case study: Exchange "downtime", does the holder lose any compensation?

Source of this article: Xiao Sa Author: Tan Hao Guo Xiao Sa The currency circle trading platform advertises that &quo...

Web3

Uniswap, the most successful American Internet Fintech company benefitting from the Web3 dividend.

Ultimately, it is the users who end up paying for faith. However, there is also this saying the most imaginative asse...

Blockchain

After launching an upgraded application, OKX Hong Kong has recorded over 10,000 new user registrations within a month.

OKX is the first exchange in Hong Kong to announce this milestone since the new Virtual Asset Service Provider (VASP)...

Blockchain

OTC is a hotbed of money laundering, can the exchange stay out of the way?

What should I do if my account is accidentally frozen? The over-the-counter market (OTC) is becoming more and more at...