North Korea’s infiltration of crypto is far worse than anyone realises.Pablo Sabbatella, founder of web3 audit firm opsek and current Security Alliance member, dropped a bombshell at Devconnect in Buenos Aires: North Korean infiltrators are embedded in up to 20% of all crypto companies.“North Korea is much worse than everybody thinks,” Sabbatella said in an interview with DL News. Even more alarming is that Sabatella reckons North Korean operatives may operate “30% to 40%” of all crypto applications.If those estimates are correct, the scope of potential damage is staggering. Moreover, the scale of North Korean penetration isn’t just about hackers stealing funds, even though they’ve gotten away with billions. Instead, it’s about workers getting hired at legitimate companies, gaining access to systems, and operating infrastructure that underpins major crypto companies. Hackers from North Korea have stolen more than $3 billion worth of cryptocurrency over the past three years through sophisticated malware and social engineering, said the US Treasury department in November. The funds were then put to use for Pyongyang’s nuclear weapons programmes. How they get hiredFor the most part, North Korean workers don’t apply for jobs directly, because international sanctions make that impossible.Instead, they find unsuspecting remote workers from around the world to act as fronts. Some of them now act as recruiters who bring in collaborators from outside North Korea to work under stolen identities. According to a recent Security Alliance report, these recruiters use freelance platforms like Upwork and Freelancer to reach individuals around the world — particularly in Ukraine, the Philippines, and other developing countries.The pitch is simple. Hand over your verified account credentials or let the North Korean actor use your identity remotely. In exchange, the collaborator gets 20% of earnings. The North Korean operative keeps 80%.A lot of North Korean hackers target the US, Sabbatella said.“What they do to get hired is find someone in the US to become their ‘front-end,’” Sabbatella explained. “So they pretend to be someone from China that doesn’t know how to speak English but they need to get an interview.”They then infect the front person’s computer with malware, giving them access to a US IP address and much more of the internet than they could reach from North Korea. Once hired, companies keep them around because they deliver.“They work well, they work a lot, and they never complain,” Sabbatella told DL News. So how does a company know if they’re employing a North Korean hacker? “Ask them if they think Kim Jong Un is a creep or something bad,” Sabbatella said. “They aren’t allowed to say anything bad.” Operational securityNorth Korea’s successful criminal endeavours aren’t just clever social engineering, however. It’s that crypto companies — and users — make it easy for them. “The crypto industry probably has the worst opsec in the entire computer industry,” Sabbatella said. Crypto founders are “fully doxxed, do a terrible job at holding their private keys securely, and easily fall victim to social engineering.”Operational Security, or OPSEC, is a systematic process for identifying and protecting critical information from adversaries. The lack of operational security creates an environment where “every single person’s computer is going to get infected with malware at some point in their lives,” said Sabbatella. Pedro Solimano is DL News’ Buenos Aires-based markets correspondent. Got a tip? Email him at psolimano@dlnews.com.North Korea’s infiltration of crypto is far worse than anyone realises.Pablo Sabbatella, founder of web3 audit firm opsek and current Security Alliance member, dropped a bombshell at Devconnect in Buenos Aires: North Korean infiltrators are embedded in up to 20% of all crypto companies.“North Korea is much worse than everybody thinks,” Sabbatella said in an interview with DL News. Even more alarming is that Sabatella reckons North Korean operatives may operate “30% to 40%” of all crypto applications.If those estimates are correct, the scope of potential damage is staggering. Moreover, the scale of North Korean penetration isn’t just about hackers stealing funds, even though they’ve gotten away with billions. Instead, it’s about workers getting hired at legitimate companies, gaining access to systems, and operating infrastructure that underpins major crypto companies. Hackers from North Korea have stolen more than $3 billion worth of cryptocurrency over the past three years through sophisticated malware and social engineering, said the US Treasury department in November. The funds were then put to use for Pyongyang’s nuclear weapons programmes. How they get hiredFor the most part, North Korean workers don’t apply for jobs directly, because international sanctions make that impossible.Instead, they find unsuspecting remote workers from around the world to act as fronts. Some of them now act as recruiters who bring in collaborators from outside North Korea to work under stolen identities. According to a recent Security Alliance report, these recruiters use freelance platforms like Upwork and Freelancer to reach individuals around the world — particularly in Ukraine, the Philippines, and other developing countries.The pitch is simple. Hand over your verified account credentials or let the North Korean actor use your identity remotely. In exchange, the collaborator gets 20% of earnings. The North Korean operative keeps 80%.A lot of North Korean hackers target the US, Sabbatella said.“What they do to get hired is find someone in the US to become their ‘front-end,’” Sabbatella explained. “So they pretend to be someone from China that doesn’t know how to speak English but they need to get an interview.”They then infect the front person’s computer with malware, giving them access to a US IP address and much more of the internet than they could reach from North Korea. Once hired, companies keep them around because they deliver.“They work well, they work a lot, and they never complain,” Sabbatella told DL News. So how does a company know if they’re employing a North Korean hacker? “Ask them if they think Kim Jong Un is a creep or something bad,” Sabbatella said. “They aren’t allowed to say anything bad.” Operational securityNorth Korea’s successful criminal endeavours aren’t just clever social engineering, however. It’s that crypto companies — and users — make it easy for them. “The crypto industry probably has the worst opsec in the entire computer industry,” Sabbatella said. Crypto founders are “fully doxxed, do a terrible job at holding their private keys securely, and easily fall victim to social engineering.”Operational Security, or OPSEC, is a systematic process for identifying and protecting critical information from adversaries. The lack of operational security creates an environment where “every single person’s computer is going to get infected with malware at some point in their lives,” said Sabbatella. Pedro Solimano is DL News’ Buenos Aires-based markets correspondent. Got a tip? Email him at psolimano@dlnews.com.

North Korean crypto infiltration is much worse than everyone thinks, says SEAL member

2025/11/22 15:12

North Korea’s infiltration of crypto is far worse than anyone realises.

Pablo Sabbatella, founder of web3 audit firm opsek and current Security Alliance member, dropped a bombshell at Devconnect in Buenos Aires: North Korean infiltrators are embedded in up to 20% of all crypto companies.

“North Korea is much worse than everybody thinks,” Sabbatella said in an interview with DL News. Even more alarming is that Sabatella reckons North Korean operatives may operate “30% to 40%” of all crypto applications.

If those estimates are correct, the scope of potential damage is staggering.

Moreover, the scale of North Korean penetration isn’t just about hackers stealing funds, even though they’ve gotten away with billions. Instead, it’s about workers getting hired at legitimate companies, gaining access to systems, and operating infrastructure that underpins major crypto companies.

Hackers from North Korea have stolen more than $3 billion worth of cryptocurrency over the past three years through sophisticated malware and social engineering, said the US Treasury department in November.

The funds were then put to use for Pyongyang’s nuclear weapons programmes.

How they get hired

For the most part, North Korean workers don’t apply for jobs directly, because international sanctions make that impossible.

Instead, they find unsuspecting remote workers from around the world to act as fronts. Some of them now act as recruiters who bring in collaborators from outside North Korea to work under stolen identities.

According to a recent Security Alliance report, these recruiters use freelance platforms like Upwork and Freelancer to reach individuals around the world — particularly in Ukraine, the Philippines, and other developing countries.

The pitch is simple. Hand over your verified account credentials or let the North Korean actor use your identity remotely. In exchange, the collaborator gets 20% of earnings. The North Korean operative keeps 80%.

A lot of North Korean hackers target the US, Sabbatella said.

“What they do to get hired is find someone in the US to become their ‘front-end,’” Sabbatella explained. “So they pretend to be someone from China that doesn’t know how to speak English but they need to get an interview.”

They then infect the front person’s computer with malware, giving them access to a US IP address and much more of the internet than they could reach from North Korea.

Once hired, companies keep them around because they deliver.

“They work well, they work a lot, and they never complain,” Sabbatella told DL News.

So how does a company know if they’re employing a North Korean hacker?

“Ask them if they think Kim Jong Un is a creep or something bad,” Sabbatella said. “They aren’t allowed to say anything bad.”

Operational security

North Korea’s successful criminal endeavours aren’t just clever social engineering, however.

It’s that crypto companies — and users — make it easy for them.

“The crypto industry probably has the worst opsec in the entire computer industry,” Sabbatella said. Crypto founders are “fully doxxed, do a terrible job at holding their private keys securely, and easily fall victim to social engineering.”

Operational Security, or OPSEC, is a systematic process for identifying and protecting critical information from adversaries.

The lack of operational security creates an environment where “every single person’s computer is going to get infected with malware at some point in their lives,” said Sabbatella.

Pedro Solimano is DL News’ Buenos Aires-based markets correspondent. Got a tip? Email him at psolimano@dlnews.com.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

What’s Happening In Crypto Today: BTC Retests $85k, ETH Consolidates Above $2.7k

What’s Happening In Crypto Today: BTC Retests $85k, ETH Consolidates Above $2.7k

The crypto landscape today is a bit of a mess. Established coins like Bitcoin (BTC) and Ethereum (ETH) are down and don’t seem to be able to stem the losses. In the last 24 hours, Bitcoin BTC $86,096.86 0.01% Bitcoin BTC Price $86,096.86 0.01% /24h Volume in 24h $35.96B Price 7d dropped to $83,540 before changing course and breaching the $84,000 level, and then finally retesting the $85,000 level, where it is trading at the moment. It is, however, still down by 11% on the weekly charts. Market Cap 24h 7d 30d 1y All Time For the most part, it seems like a weak job market, coupled with the dovish comments by New York Fed President John Williams, has encouraged buying at lower levels. $BTC break those two notable near term resistance marks, and we can see up to $93k… Mush bulls. pic.twitter.com/FmgW2ddn3i — Heisenberg (@Mr_Derivatives) November 23, 2025 Meanwhile, the Fed rate cut probability has jumped to more than 70% as opposed to nearly 40% just a few days ago, prompting traders to rotate into riskier assets such as crypto. (Source: FedWatch) However, a look at US BTC spot ETFs puts data into perspective. Per SoSoValue’s data, US BTC spot ETFs have lost more than $3 billion during the past month, with weekly outflows amounting to around $1.5 billion. The only bright side is that the daily inflow is still positive at $238 million, a drop in a bucket. (Source: SoSoValue) At the moment, BTC is trading below its 20-day and 50-day EMAs. For BTC to reverse its price action, it needs to recapture both these EMAs at $86,281 and $90,322 before it can retest its 100-day EMA at $95,075, which incidentally also forms the upper resistance level. (Source: TradingView) EXPLORE: Next 1000X Crypto – Here’s 10+ Crypto Tokens That Can Hit 1000x This Year ETH Crypto Consolidates Above $2.7k, Retests $2.8k Level Today Ethereum ETH $2,823.21 0.39% Ethereum ETH Price $2,823.21 0.39% /24h Volume in 24h $13.56B Price 7d has been experiencing difficulties over the past few days. For the longest time, it had managed to hold its own above the $3,100 level. Alas, it was not to be. Although ETH followed BTC during the broader market pullback, its decline was subdued and not as dramatic. Its price action took a decisive plunge and broke through the $3,000 support level before subsequently breaching more support zones, dropping to $2,680 before finally stabilizing above $2,700 level, where it had been consolidating since the last couple of days. Market Cap 24h 7d 30d 1y All Time For ETH to start ascending again, it must hold above $2,800. It is currently on its way to retest its 20-day EMA at $2,823. However, the critical level to capture is the 50-day EMA near $3,000, which is also the resistance level to beat. (Source: TradingView) Analysing on-chain data reveals heavy liquidation clusters surrounding its price action between $3,100 and $3,600, acting like major resistance zones. (Source: CoinGlass) At the same time, online sleuths think that now is a good time to get in on the action and buy the dip before the price flips again. Its Fusaka upgrade is slated for December, and with prices as low as they are, it might be good to go long. #ETH: Big potential. Buy the dip. Big upgrade coming (last one pumped price 50%). Correction is local, not expecting a big drop. $2600-$2700 possible bottom, otherwise trend breaks. Most weak hands are out. Good time to buy. Expecting new ATH, targeting $5K for profit taking. pic.twitter.com/zei8mEBCZu — Matt Wraith | AI & Dev (@MattWraithSOL) November 23, 2025 However, it all depends on ETH maintaining the $2,700 level. Sliding down from $2,700 will test lower support zones near $2,300-$2,400. EXPLORE: Top 20 Crypto to Buy in 2025 17 minutes ago Chainlink Core Infra For Tokenized Finance: Grayscale By Arijit Mukherjee Grayscale has chalked up Chainlink as indispensable for tokenized finance, arguing that its decentralized oracle network is unchallenged when it comes to connecting real-world data to blockchain systems.  According to Grayscale’s new research, with more and more traditional assets like stocks, bonds, and real estate moving to tokenization, reliable data feeds from Chainlink become even more important.  Grayscale research team members are suddenly retweeting @ChainLinkGod. Today they shared one of the best recent research papers on $LINK, basically calling it the best investment tied to the rise of tokenized finance. This is not random. The clock is currently running toward… pic.twitter.com/ZlpAEaI5dV — Moeskul (@Xmarine777) November 20, 2025 Chainlink has, over the years, slowly become a part of the plumbing for institutions such as SWIFT, DTCC, and ANZ Bank for proof‑of‑reserves, moving assets across chains, and automating settlements.  EXPLORE: The 12+ Hottest Crypto Presales to Buy Right Now  The post What’s Happening In Crypto Today: BTC Retests $85k, ETH Consolidates Above $2.7k appeared first on 99Bitcoins.
Share
Coinstats2025/11/23 12:01
Another Nasdaq-Listed Company Announces Massive Bitcoin (BTC) Purchase! Becomes 14th Largest Company! – They’ll Also Invest in Trump-Linked Altcoin!

Another Nasdaq-Listed Company Announces Massive Bitcoin (BTC) Purchase! Becomes 14th Largest Company! – They’ll Also Invest in Trump-Linked Altcoin!

The post Another Nasdaq-Listed Company Announces Massive Bitcoin (BTC) Purchase! Becomes 14th Largest Company! – They’ll Also Invest in Trump-Linked Altcoin! appeared on BitcoinEthereumNews.com. While the number of Bitcoin (BTC) treasury companies continues to increase day by day, another Nasdaq-listed company has announced its purchase of BTC. Accordingly, live broadcast and e-commerce company GD Culture Group announced a $787.5 million Bitcoin purchase agreement. According to the official statement, GD Culture Group announced that they have entered into an equity agreement to acquire assets worth $875 million, including 7,500 Bitcoins, from Pallas Capital Holding, a company registered in the British Virgin Islands. GD Culture will issue approximately 39.2 million shares of common stock in exchange for all of Pallas Capital’s assets, including $875.4 million worth of Bitcoin. GD Culture CEO Xiaojian Wang said the acquisition deal will directly support the company’s plan to build a strong and diversified crypto asset reserve while capitalizing on the growing institutional acceptance of Bitcoin as a reserve asset and store of value. With this acquisition, GD Culture is expected to become the 14th largest publicly traded Bitcoin holding company. The number of companies adopting Bitcoin treasury strategies has increased significantly, exceeding 190 by 2025. Immediately after the deal was announced, GD Culture shares fell 28.16% to $6.99, their biggest drop in a year. As you may also recall, GD Culture announced in May that it would create a cryptocurrency reserve. At this point, the company announced that they plan to invest in Bitcoin and President Donald Trump’s official meme coin, TRUMP token, through the issuance of up to $300 million in stock. *This is not investment advice. Follow our Telegram and Twitter account now for exclusive news, analytics and on-chain data! Source: https://en.bitcoinsistemi.com/another-nasdaq-listed-company-announces-massive-bitcoin-btc-purchase-becomes-14th-largest-company-theyll-also-invest-in-trump-linked-altcoin/
Share
BitcoinEthereumNews2025/09/18 04:06