lazarusholic

Everyday is lazarus.dayβ

Web3 / Lazarus / Bluenoroff / DPRK / Etc Hacks

2023-07-18, Tay
https://github.com/tayvano/lazarus-bluenoroff-research
#Cryptocurrency

Contents

Web3 / Lazarus / Bluenoroff / DPRK / Etc Hacks
note: when i originally was doing this exploration, i was using an app that inherantly links quotes to their origin source. this connection is obviously lost upon export. as i am adding back citations, please be aware that any given line could be something i copied/pasted from various articles or writeups and those people deserve credit for their actual work and actual efforts. if you use stuff from here for something, please google it and cite the author and do not cite me.
Most up to date list
https://docs.google.com/spreadsheets/d/1Uh-kQPRhR0GzDMFhrYtU6rrYBWmcMBcQUDI40CtWcAQ/edit?usp=sharing
North Korean Cyber Attacks
https://www.heritage.org/asia/report/north-korean-cyberattacks-dangerous-and-evolving-threat
The depth and scope of DPRK’s active/ongoing efforts is truly insane. Appendix 2 has the most comprehensive timeline that I've found. Plus it has 100+ links in the refs and doesnt force a pdf on you
DPRK Social Engineering
https://github.blog/2023-07-18-security-alert-social-engineering-campaign-targets-technology-industry-employees/
dprk once again rekting you via the platforms you use: github, slack, tg, npm.
not checking …