Close Menu
  • Latest News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Meme Coins
  • DeFi
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • Gaming
  • Legal
    • Taxes & Regulation
    • Adoption
  • Analysis
  • Learn
    • Education
    • Wallets and Exchanges
  • Tools
    • Market Overview
    • Converter
What's Hot

5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

October 9, 2025

Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

October 9, 2025

Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

October 9, 2025
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
Facebook X (Twitter) Instagram
Buy Crypto NewsBuy Crypto News
  • Latest News
    1. Bitcoin
    2. Ethereum
    3. Altcoins
    4. Meme Coins
    5. View All

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Faster, Cheaper Global Money Transfers Beyond SWIFT

    October 9, 2025

    Breez, Lightspark, And Tether Launch Time2Build, Global Hackathon With $25K In Prizes To Boost Open-Source Bitcoin Integrations

    October 8, 2025

    Continues to Print ‘Lower Highs’ Alongside New Highs in Bitcoin

    October 8, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Ethereum Price Faces $90 Million Liquidation After Rejection, But Bullish Sentiment Remains Strong

    October 9, 2025

    How High Can Ethereum Price Go in 2025?

    October 8, 2025

    Grayscale Stakes 32,000 Ethereum Worth $150 Million – Institutional Demand Grows

    October 8, 2025

    Bank of North Dakota Partners With Fiserv to Unveil U.S. Dollar-Backed Stablecoin

    October 9, 2025

    $600 Million Worth Of XRP Tokens Are On The Move, Where Are They Headed?

    October 8, 2025

    Ripple Advocate Bill Morgan Highlights Reliance’s $17M XRP Investment

    October 8, 2025

    Ethereum Price Rally Stalls – Is A Deeper Correction Now On The Horizon?

    October 8, 2025

    Pepe, BMT, CAKE: Crypto Activity Heats Up

    March 18, 2025

    SHIB Burns Over Half a Billion Tokens, Price Surges Over 7%

    March 17, 2025

    DOGE Sees Massive User Growth: Active Addresses Up 400%

    March 15, 2025

    Shiba Inu (SHIB) Price Analysis: Bullish Hints, Bearish Trend

    March 15, 2025

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025
  • DeFi

    MetaMask Unleashes “CEX Killer” With New In-Wallet Perps Trading

    October 9, 2025

    BNB memecoin launchpad flips pump.fun in 24-hour revenue

    October 8, 2025

    Here’s why ChainOpera AI price soared over 600%?

    October 8, 2025

    Euler price holds above $10 as network hits $2b borrows

    October 8, 2025

    Bitcoin ETFs see second-highest inflow day as BTC price holds above $124K

    October 8, 2025
  • Tech
    1. Blockchain
    2. Security and Privacy
    3. View All

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Plasma Integrates Chainlink to Power Stablecoin Ecosystem

    October 9, 2025

    UK to lift ban on crypto ETNs, unlocking $1 trillion

    October 9, 2025

    CratD2C SmartChain Merges Blockchain, AI, and IoT to Power a New Decentralized Era

    October 8, 2025

    Will the UK sell newly seized $7.2B BTC, create Bitcoin treasury or pay victims?

    October 2, 2025

    Crypto hacker falls victim to own scam losing $50 million to Inferno Drainer’s phishing attack

    September 23, 2025

    FileFix Campaign Using Steganography and Multistage Payloads

    September 17, 2025

    SEO Poisoning Targets Chinese Users with Fake Software Sites

    September 15, 2025

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025
  • Web 3
    1. Web3 News
    2. Gaming
    3. View All

    The Evolving Role of Nutrition Experts in Modern Health: Berry Street’s Approach to Wellness

    October 9, 2025

    The Independent Voice of Ethical Online Journalism

    October 8, 2025

    P&C Global Highlights the Importance of Hiring a Business Law Firm for Long-Term Success

    October 8, 2025

    Embedded NFT Wallets: How In-App Wallets Are Transforming Web3 UX in 2025

    October 7, 2025

    Tezos Shooter ‘Reaper Actual’ From EverQuest Co-Creator Enters Alpha Playtesting

    October 8, 2025

    Opera and Decrypt Team Up to ‘Bring the Next Billion Users’ to Web3

    October 7, 2025

    UK Council Makes a Bitcoin Windfall from Seized Assets

    October 6, 2025

    Unmarshal and FishWar Unite to Enhance the Web3 Gaming Experience with AI

    October 5, 2025

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025
  • Legal
    1. Taxes & Regulation
    2. Adoption
    3. View All

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025

    The SEC and CFTC Hold First Joint Roundtable in Nearly 14 Years

    October 9, 2025

    Swedish MP urges exempting BTC from 30% capital gains tax

    October 9, 2025

    Mike Selig is named a lead contender to chair the CFTC. Who is he?

    October 8, 2025

    Top 10 most crypto-friendly countries revisited (2025)

    October 9, 2025

    What it means for Bitcoin price

    October 8, 2025

    Metaplanet surpasses 30,000 BTC in major acquisition streak

    October 2, 2025

    US clears path for companies to hold Bitcoin tax-free

    October 2, 2025

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025
  • Analysis

    LTC Price Eyes Breakout as ETF Momentum Builds & Technical Setup Strengthens

    October 8, 2025

    New U.S. Filing Targets 3x XRP ETF Amid Market Crash

    October 8, 2025

    BNB ousts XRP after surge fueled by utility and memecoin trading

    October 8, 2025

    How Leverage.Trading Data Tracks Retail Stress From Liquidations to Early Warnings

    October 8, 2025

    Analyst Reveals How High XRP Price Can Go This Bull Cycle

    October 7, 2025
  • Learn
    1. Education
    2. Wallets and Exchanges
    3. View All

    What is Zcash (ZEC)? The Privacy Coin Using Zero-Knowledge Proofs

    October 8, 2025

    What is the Fusaka Upgrade? Ethereum’s Biggest Scaling Bet Yet

    October 1, 2025

    What Is Aster? The Decentralized Exchange on BNB Chain That’s Taking on Hyperliquid

    September 30, 2025

    What Is Hyperliquid? The Decentralized Exchange With Its Own Blockchain

    September 28, 2025

    Bitcoin exchange withdrawals at three-year low amid ETF surge

    October 8, 2025

    You don’t have to be a coder to understand crypto security

    October 4, 2025

    Robo.ai turns smart cars into economic actors with built-in digital wallet

    October 4, 2025

    Binance unveils ‘Crypto-as-a-Service’ trading toolkit for banks and brokers

    September 30, 2025

    5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

    October 9, 2025

    Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

    October 9, 2025

    Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

    October 9, 2025

    Will BoE’s ‘exemptions’ supercharge stablecoin rails into BTC and ETH?

    October 9, 2025
  • Tools
    • Market Overview
    • Converter
Buy Crypto NewsBuy Crypto News
Home»Security and Privacy»North Korea Targets Crypto Devs Through NPM Packages
North Korea Targets Crypto Devs Through NPM Packages
Security and Privacy

North Korea Targets Crypto Devs Through NPM Packages

February 14, 2025No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

North Korean Lazarus Group Unleashes Crypto-Stealing Malware in Sophisticated Campaign

A highly sophisticated North Korean campaign has been uncovered by researchers, aiming to covertly distribute crypto-stealing malware through open source components. The campaign, dubbed Operation Marstech Mayhem, has already affected over 230 victims in the US, Europe, and Asia, according to SecurityScorecard.

Unraveling the Campaign

SecurityScorecard has linked the live campaign to the notorious Lazarus Group, attributing a new “Marstech1” implant to the “SuccessFriend” GitHub profile. This profile has been actively committing both malicious and legitimate software to the developer platform since July 2024.

Moreover, the malware is being spread through npm packages, popular among crypto and Web3 project developers, expanding its reach and impact.

The Marstech1 implant is designed to scan systems for popular wallets like MetaMask, Exodus, and Atomic, altering browser configuration files to inject silent payloads capable of intercepting transactions, as noted by SecurityScorecard.

Sophisticated Evasion Techniques

Lazarus Group has gone to great lengths to avoid detection and analysis of the malware, employing techniques like Base85 encoding and XOR decryption. This makes it challenging for security researchers to identify and mitigate the threat effectively.

The latest iteration of the malicious JavaScript includes various evasion techniques such as control flow flattening, random variable and function names, base64 string encoding, anti-debugging checks, and splitting and recombining strings to slip undetected into the software supply chain.

Adapting Operations

In a display of increased sophistication, Lazarus Group has adapted its infrastructure to evade detection. The group now uses port 3000 for command-and-control communications, shifting from ports 1224 and 1245, and has transitioned to Node.js Express backends instead of React-based control panels.

See also  Bad News About AppleJeus - Infosecurity Magazine

SecurityScorecard’s SVP of threat research and intelligence, Ryan Sherstobitoff, emphasized the critical evolution of Lazarus Group’s supply chain attacks. He stressed the importance for organizations and developers to adopt proactive security measures, monitor supply chain activities, and integrate advanced threat intelligence solutions to combat sophisticated implant-based attacks orchestrated by threat actors like the Lazarus Group.

As cyber threats continue to evolve rapidly, vigilance and proactive security measures are essential to safeguard against malicious campaigns like Operation Marstech Mayhem.

Crypto Devs Korea North npm Packages Targets
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

October 9, 2025

Bank of North Dakota Partners With Fiserv to Unveil U.S. Dollar-Backed Stablecoin

October 9, 2025

UK to lift ban on crypto ETNs, unlocking $1 trillion

October 9, 2025

SEC to Frame ‘Innovation Exemption’ Rulebook for Firms to Build Crypto: Paul Atkins

October 8, 2025
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Industry leaders expect the G20 to follow US Bitcoin reserve move

March 8, 2025

‘You Won’t Believe What Hopefully Comes Next’: Trader Says Ethereum Primed To Hit New All-Time High and Beyond

December 10, 2024

Morgan Stanley to Unlock $1.3T Crypto Trading via E-Trade in 2026

September 23, 2025
Price Chart


Explore insights on crypto, blockchain, taxes, and security. Stay informed with expert guides, tips, and the latest trends to navigate the digital asset world confidently


We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

5 Legal Hurdles Stand in Path of Crypto Exchange Operator Dunamu’s Naver Merger – Report

October 9, 2025

Ethereum Fusaka Upgrade Set To Redefine ETH Performance — Here’s What to Expect

October 9, 2025

Massive Bitcoin Transfers Signal Market Shift—Is This Profit Taking or Strategic Capital Rotation?

October 9, 2025
Get Informed

Subscribe to Updates

Get the latest creative news From BuyCryptoNews directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
  • Disclosure
© 2025 BuyCryptoNews - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.