Kraken Catches North Korean Hacker Posing as Job Applicant in Major Crypto Security Breach
By: coinchapter|2025/05/03 06:00:05
0
Share
Kraken, a major crypto exchange, exposed a North Korean hacker who applied for a job using a fake identity. The incident was revealed in a May 1 blog post. The person posed as an engineering candidate named Steven Smith. Kraken’s security and recruitment teams moved the candidate through the hiring process to investigate. They later confirmed that the applicant was part of a wider network tied to North Korean state-sponsored cybercrime. The person used a suspicious email connected to known North Korean hacker activity. The candidate changed their name during interviews and altered their voice several times. Kraken also detected signs of outside coaching. Fake Identities and Technical Red Flags Detected An internal Open-Source Intelligence (OSINT) investigation exposed the use of multiple fake identities by the applicant. Several of these identities had prior links to crypto firms. One of them appeared on the U.S. sanctions list. Kraken identified clear inconsistencies during the process. The applicant accessed remote Mac computers through a Virtual Private Network (VPN). They also submitted altered identification documents. These actions raised concerns about planned infiltration. During the final interview, Kraken’s Chief Security Officer Nick Percoco questioned the applicant. The hacker failed to confirm their location or citizenship. Percoco told CBS. Huione Group Accused of Aiding North Korean Crypto Crimes The Financial Crimes Enforcement Network (FinCEN) proposed banning the Huione Group from the U.S. financial system. The Cambodia-based group allegedly helped North Korean hackers move stolen funds. U.S. Treasury Secretary Scott Bessent stated, FinCEN found that Huione laundered over $4 billion between August 2021 and January 2025. Their platforms—Huione Pay, Huione Crypto, and Haowang Guarantee—were used for payment services connected to crypto crimes. The ban would block Huione from accessing U.S. correspondent banking services. Officials said this would weaken DPRK cybercrime operations and disrupt money laundering channels. DPRK Hackers Use Social Engineering and Malware to Target Crypto North Korea-linked hackers stole more than $659 million from crypto firms in 2024. The U.S., Japan, and South Korea released a joint statement confirming these incidents. The statement said that hackers used social engineering, fake job applications, and malware such as AppleJeus and TraderTraitor to access internal systems. North Korean IT workers were also identified as insider threats to private crypto companies. These workers often apply for remote roles, pretending to be citizens of other countries. Once hired, they can access sensitive data or move funds internally. North Korean Lazarus Group Tied to Major Crypto Theft Cases Moreover , the Lazarus Group, North Korea’s state-backed hacker unit, has been linked to several large attacks. These include crypto thefts from Bybit, Upbit, Radiant Capital, and DMM Bitcoin. Blockchain researcher ZachXBT found that some decentralized finance (DeFi) protocols rely heavily on transactions from North Korea. In some cases, nearly 100% of monthly traffic came from DPRK-linked wallets. Above all, Kraken’s exposure of the job applicant confirms the growing pattern of North Korean hacker groups targeting the crypto industry. The incident adds to the list of DPRK-linked cyber attacks that use employment and social engineering as entry points.
You may also like

The other side of Musk's trillion-dollar fortune: 85% cannot be sold
SpaceX's IPO is a math problem, and the answer is not on the pricing day, but in the first quarter after the lock-up period ends.

The U.S. government prohibits foreigners from using Fable 5, Anthropic issues a rebuttal
The sudden removal of the two models has caused widespread shock in the tech industry and the AI community.

Citibank releases "2030 Asset Tokenization Market Outlook": 6 major trends may create a $8.2 trillion market
The tokenization of financial assets is moving from pilot projects to large-scale implementation, but this is a gradual evolution rather than a fierce revolution.

The trillion-dollar valuation test: Are the three major super IPOs a celebration for tech stocks or a nightmare for the crypto market?
Tech giants like SpaceX and OpenAI have sparked a $35 trillion super IPO wave. The "suction effect" is not enough to crash the stock and crypto markets, but the test of high valuations is just beginning.

Morning Report | Digital Asset completes $355 million financing led by a16z Crypto; Meta completes operational separation from Manus
Overview of Important Market Events on June 11

a16z Crypto Partner: Cash flow is the moat
Most companies spend years creating network effects on traditional infrastructure. Crypto founders inherit them as starting conditions.

Cryptocurrency market makers collectively seek change as it becomes increasingly difficult to make money
There is more and more to do.

How TradeXYZ, xStocks, and Alpaca break down the SpaceX IPO into three different strategies
The value of tokenized products ultimately depends on whether the underlying structure is sound, rather than just the price displayed on the interface.

$75 billion in risk asset redistribution: How will SpaceX's IPO affect U.S. stocks and Bitcoin?
The SpaceX IPO is short-term "capital competition" for the cryptocurrency market, while in the medium to long term, it leans towards "narrative endorsement" for Bitcoin.

Why Is BlackRock Investing $5 Billion in the SpaceX IPO?
What is driving the massive demand for the SpaceX IPO, and why did BlackRock place a $5 billion order? Learn how the historic listing could impact SpaceX stock, Bitcoin, SPCX, and crypto markets.

Morning News | CME Group launches Nasdaq Cryptocurrency Index futures; Asset management giant Janus Henderson strategically invests in Ethena
Overview of Important Market Events on June 10

Bitcoin Layer 2 Network Botanix: Why Did We Choose to Dissolve?
The Bitcoin L2 star project Botanix announced a gradual shutdown, with the team admitting to facing severe challenges from the failure of its business model and the prevailing trends. Users are urged to withdraw all assets before July 9, 2026.

Why did Oracle deliver the strongest financial report in history, yet its stock price fell?
Oracle's revenue for fiscal year 2026 set a record, with AI cloud orders soaring to $638 billion, but massive capital expenditures on computing power led to negative free cash flow, causing a 5% drop in after-hours stock prices.

When the P2P illicit funds from ten years ago turned into 60,000 bitcoins
The largest Bitcoin money laundering case in the UK has new developments: 16,000 Chinese victims are pursuing 61,000 seized Bitcoins across borders, and the dispute over the applicability of UK and Chinese laws will directly determine whether the victims can share in the soaring profits.

Dialogue with OmenX Founder: Why does the prediction market need an evolution from "spot" to "derivatives"?
How to reconstruct the prediction market using leverage?

Galaxy in-depth report: Is Solana still worth paying attention to?
Solana did not fall behind during the bear market. Trading enthusiasm has waned, but the network is more stable, RWA and stablecoins are expanding, and the capital foundation is much thicker than in the previous cycle. The real question is: when the speculative tide recedes, can perpetuals, predicti...

Young people in South Korea make a "final effort" in the epic bull market
The South Koreans' average of two accounts for wildly gambling in the chip bull market reflects the survival anxiety and harsh reality of countless young people trying to break through class barriers behind the nationwide stock trading frenzy for wealth.

The pricing controversy of Trade.xyz exposes the fatal weakness of Pre-IPO perpetual contracts
SpaceX's equity update has sparked controversy over on-chain liquidations. Trade.xyz refuses to reset the SPCX pricing, and the lack of a Rebase mechanism in Perp DEX has led to a significant trust test for on-chain Pre-IPO assets.
The other side of Musk's trillion-dollar fortune: 85% cannot be sold
SpaceX's IPO is a math problem, and the answer is not on the pricing day, but in the first quarter after the lock-up period ends.
The U.S. government prohibits foreigners from using Fable 5, Anthropic issues a rebuttal
The sudden removal of the two models has caused widespread shock in the tech industry and the AI community.
Citibank releases "2030 Asset Tokenization Market Outlook": 6 major trends may create a $8.2 trillion market
The tokenization of financial assets is moving from pilot projects to large-scale implementation, but this is a gradual evolution rather than a fierce revolution.
The trillion-dollar valuation test: Are the three major super IPOs a celebration for tech stocks or a nightmare for the crypto market?
Tech giants like SpaceX and OpenAI have sparked a $35 trillion super IPO wave. The "suction effect" is not enough to crash the stock and crypto markets, but the test of high valuations is just beginning.
Morning Report | Digital Asset completes $355 million financing led by a16z Crypto; Meta completes operational separation from Manus
Overview of Important Market Events on June 11
a16z Crypto Partner: Cash flow is the moat
Most companies spend years creating network effects on traditional infrastructure. Crypto founders inherit them as starting conditions.
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com
