• Hackers sent emails with malicious code to UpBit users.
  • The same methods were used in the course of the January attack on the South Korean government agencies.

The South Korean cryptocurrency exchange might have fallen victim to hackers from neighboring North Korea. The attackers allegedly exploited smart phishing techniques, according to the report published by the security company East Security.

On May 28, the hacker or a group of hackers sent a malicious email to UpBit customers requesting additional information about customer’s fictional sweepstakes payout. However, the company never sent such email and it did not come from any of the servers belonging the exchange.

The mail contained an attachment with the documentation for the payout. Once a user opened the fine, it would run a malicious code embedded therein and sent information about the user’s machine along with their private keys and credentials to hackers. Moreover, the virus also connected the infected computer to a command and control system to allow hackers accessing it remotely.

“In analyzing attack tools and malicious codes used by hacker groups, there are unique characteristics we saw. As bitcoin prices rise, more and more customers are using exchanges. This means that the number of victims has increased, which means that the possibility of stealing passwords stored in the exchange has increased,” the head of the ESRC Center at East Security Mun Jong-hyun commented.

He also noted that similar attacks known as Operation Fake Striker were made on Korean government agencies in January. 

The hackers password-protected the file with the malicious code, which made it harder for traditional anti-virus tools to detect a threat. The experts urge users to be vigilant and never open or install suspicious files.

“We have not heard of any reported damage. In order to avoid cyber attacks, you should not install or click suspicious files or documents,” noted Mun Jong-hyun.


Note: All information on this page is subject to change. The use of this website constitutes acceptance of our user agreement. Please read our privacy policy and legal disclaimer. Opinions expressed at FXstreet.com are those of the individual authors and do not necessarily represent the opinion of FXstreet.com or its management. Risk Disclosure: Trading foreign exchange on margin carries a high level of risk, and may not be suitable for all investors. The high degree of leverage can work against you as well as for you. Before deciding to invest in foreign exchange you should carefully consider your investment objectives, level of experience, and risk appetite. The possibility exists that you could sustain a loss of some or all of your initial investment and therefore you should not invest money that you cannot afford to lose. You should be aware of all the risks associated with foreign exchange trading, and seek advice from an independent financial advisor if you have any doubts.

Join Telegram

Recommended content


Recommended Content

Editors’ Picks

Base attracts Lion’s share of Ethereum deposits among Layer 2 chains, beats Optimism in TVL

Base attracts Lion’s share of Ethereum deposits among Layer 2 chains, beats Optimism in TVL

Base, Coinbase’s Ethereum Layer 2 chain, has noted a spike in inflows to its blockchain this week. Nearly $20 million in Ether flowed into Base since Monday, nearly two times that of Arbitrum and five times as much as Optimism, its competitors in the scaling ecosystem. 

More Cryptocurrencies News

SEC vs. Ripple lawsuit sees redacted filing go public, XRP dips to $0.51

SEC vs. Ripple lawsuit sees redacted filing go public, XRP dips to $0.51

Ripple lawsuit develops further as redacted version of SEC filing goes public. Ripple, SEC and related parties will file motions to seal material from the remedies-related filings by May 13.

More Ripple News

FET suffers 2% decline as whales deposit Fetch.AI tokens to exchanges

FET suffers 2% decline as whales deposit Fetch.AI tokens to exchanges

Fetch.AI (FET) token will be the reserve currency of the Superintelligence Alliance (ASI), a merge of three Artificial Intelligence (AI) projects: Fetch.AI, Ocean protocol and SingularityNET. 

More Cryptocurrencies News

Ethereum resume sideways move as Grayscale files to withdraw Ethereum futures ETF application with the SEC

Ethereum resume sideways move as Grayscale files to withdraw Ethereum futures ETF application with the SEC

Grayscale has withdrawn its 19b-4 application for an Ethereum futures ETF. SEC Chair Gensler says several crypto assets are securities as he waives off ETH classification question.

More Ethereum News

Bitcoin: Should you buy BTC here? Premium

Bitcoin: Should you buy BTC here?

Bitcoin (BTC) price shows signs of a potential reversal but lacks confirmation, which has divided the investor community into two – those who are buying the dips and those who are expecting a further correction.

Read full analysis

BTC

ETH

XRP