Close Menu
  • Home
  • AI
    • Web3
    • Gaming
  • Bitcoin
    • CBDCs
    • DeFi
    • Ethereum
    • Layer2
    • Macro
    • Memecoins
    • NFT
    • NFTs
    • Stablecoins
  • Banking
    • Bankruptcy
    • Censorship
    • Crime
  • Policies
    • Regulation
    • Legal
    • Exchanges
    • Privacy
  • All Posts
What's Hot

JP Morgan Predicts Bitcoin Will Surpass Gold as the Crypto Derivatives Market Grows

May. 19, 2025

Economists Support Ethereum Founder Vitalik Buterin as a Candidate for the Nobel Prize

May. 19, 2025

Grok Under Scrutiny: AI Accused of Incorporating ‘White Genocide’ Allegations into Irrelevant Responses

May. 19, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram
Coin Forge HubCoin Forge Hub
Subscribe
  • Home
  • AI
    • Web3
    • Gaming
  • Bitcoin
    • CBDCs
    • DeFi
    • Ethereum
    • Layer2
    • Macro
    • Memecoins
    • NFT
    • NFTs
    • Stablecoins
  • Banking
    • Bankruptcy
    • Censorship
    • Crime
  • Policies
    • Regulation
    • Legal
    • Exchanges
    • Privacy
  • All Posts
Coin Forge HubCoin Forge Hub
Home » Typography Elements » Lazarus Group Compromises New Set of JavaScript Packages with Cryptocurrency Theft Malware, According to Researchers
Bitcoin

Lazarus Group Compromises New Set of JavaScript Packages with Cryptocurrency Theft Malware, According to Researchers

By adminMar. 28, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Lazarus Group Compromises New Set of JavaScript Packages with Cryptocurrency Theft Malware, According to Researchers
Lazarus Group Compromises New Set of JavaScript Packages with Cryptocurrency Theft Malware, According to Researchers
Share
Facebook Twitter LinkedIn Pinterest WhatsApp Email

In a new attack, North Korea’s Lazarus group has been linked to six fresh malicious npm packages.

Discovered by The Socket Research Team, the latest attack tries to deploy backdoors to steal credentials. Lazarus is the infamous North Korean hacker group that’s been linked to the recent $1.4 billion Bybit hack, $41 million hack of crypto casino Stake, and a $27 million hack of crypto exchange CoinEx, and countless others in the crypto industry.

The group was also initially linked to the $235 million hack of India crypto exchange WazirX in July 2024. But last month, the Delhi Police’s Intelligence Fusion and Strategic Operations (IFSO) division arrested a Bengal man and seized three laptops in connection with the exploit.

This new round of malware linked to Lazarus could also extract cryptocurrency data, stealing sensitive data from Solana and Exodus crypto wallets. The attack works by targeting files in Google Chrome, Brave and Firefox browsers, as well as keychain data on macOS, specifically targeting developers who might unknowingly install the packages.

“Attributing this attack definitively to Lazarus or a sophisticated copycat remains challenging, as absolute attribution is inherently difficult,” wrote Kirill Boychenko, threat intelligence analyst at Socket Security, in a blog post. “However, the tactics, techniques, and procedures (TTPs) observed in this npm attack closely align with Lazarus’s known operations, extensively documented by researchers from Unit42, eSentire, DataDog, Phylum, and others since 2022.”

The six packages that have been identified are: is-buffer-validator, yoojae-validator, event-handle-package, array-empty-validator, react-event-dependency, and auth-validator. These work by using typosquatting, with misspelled names, to trick developers into installing them.

According to Boychenko: “The APT group created and maintained GitHub repositories for five of the malicious packages, lending an appearance of open source legitimacy and increasing the likelihood of the harmful code being integrated into developer workflows.”

The packages have been collectively downloaded over 330 times and, at time of publishing, The Socket Team has petitioned for their removal having reported the GitHub repositories and user accounts.

This type of technique has been used by Lazarus in the past, with a Bybit exchange heist valuing a loss of around $1.4 billion in Ethereum. About 20 percent of those stolen funds have become untraceable.

In a statement, Bybit CEO, Ben Zhou, said: “77% are still traceable, 20% have gone dark, 3% have been frozen.”

Boychenko says: “The group’s tactics align with past campaigns leveraging multi-stage payloads to maintain long-term access, the cybersecurity experts note.”

Edited by James Rubin.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous Article“Hamster Kombat” Continues to Request Additional Friends—That’s Enough!
Next Article Trump’s Crypto Initiative, World Liberty, Introduces Stablecoin on Ethereum and BNB Chain

Related Posts

CryptoPunks NFT Sold for $6 Million in Ethereum—Resulting in a $10 Million Loss

May. 19, 2025

ConstitutionDAO for the Apocalypse: Solana NFT Initiative Seeks to Acquire Nuclear Bunker

May. 19, 2025

Malaysia’s Largest Energy Company Reports a 300% Increase in Power Theft Associated with Cryptocurrency

May. 14, 2025
Leave A Reply Cancel Reply

Latest Posts

JP Morgan Predicts Bitcoin Will Surpass Gold as the Crypto Derivatives Market Grows

May. 19, 2025

Economists Support Ethereum Founder Vitalik Buterin as a Candidate for the Nobel Prize

May. 19, 2025

Grok Under Scrutiny: AI Accused of Incorporating ‘White Genocide’ Allegations into Irrelevant Responses

May. 19, 2025

This Week in Cryptocurrency Games: Square Enix and Sony, Adidas on Sui, Coinbase Sponsors ‘League’ Esports

May. 19, 2025
Stay In Touch
  • Facebook
  • Twitter
  • Pinterest
  • Instagram
  • YouTube
  • Vimeo
Don't Miss

Every Bitcoin Holder Will Eventually Become an Internationalist

By adminAug. 15, 1971

Over the weekend, BTC surged back towards the 30-day moving average, hovering around 69k. The opport…

Brave Souls Take the Lead in the Bitcoin Time Tunnel with OKX Web3

May. 22, 2010

The Ultimate Power Play: Masters and Minions in the World of Positions

Jul. 6, 2010
About Us
About Us

Explore the latest developments in cryptocurrency and blockchain technology with comprehensive and timely coverage, in-depth analysis, and expert insights from Coin Forge Hub.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

JP Morgan Predicts Bitcoin Will Surpass Gold as the Crypto Derivatives Market Grows

May. 19, 2025

Economists Support Ethereum Founder Vitalik Buterin as a Candidate for the Nobel Prize

May. 19, 2025

Grok Under Scrutiny: AI Accused of Incorporating ‘White Genocide’ Allegations into Irrelevant Responses

May. 19, 2025
Most Popular

Every Bitcoin Holder Will Eventually Become an Internationalist

Aug. 15, 1971

Brave Souls Take the Lead in the Bitcoin Time Tunnel with OKX Web3

May. 22, 2010

The Ultimate Power Play: Masters and Minions in the World of Positions

Jul. 6, 2010
© 2025 Coin Forge Hub All rights reserved.
  • Home
  • AI
    • Web3
    • Gaming
  • Bitcoin
    • CBDCs
    • DeFi
    • Ethereum
    • Layer2
    • Macro
    • Memecoins
    • NFT
    • NFTs
    • Stablecoins
  • Banking
    • Bankruptcy
    • Censorship
    • Crime
  • Policies
    • Regulation
    • Legal
    • Exchanges
    • Privacy
  • All Posts

Type above and press Enter to search. Press Esc to cancel.