logo
North Korean hackers ‘took just two minutes' to pull off record $1.5bn heist

North Korean hackers ‘took just two minutes' to pull off record $1.5bn heist

Yahoo28-02-2025
North Korean hackers took just two minutes to make off with $1.5bn (£1.2bn) in cryptocurrency, cyber security researchers believe, in the single biggest heist in history.
Post-mortem reports commissioned by the cryptocurrency exchange Bybit, which last week saw hundreds of millions of dollars in the Ethereum cryptocurrency stolen by a Pyongyang-linked group, revealed details of how the hackers breached its systems.
The cyber attackers were able to compromise a so-called cold wallet used by Bybit, a Dubai-based cryptocurrency exchange. These hardware wallets, akin to an encrypted USB-stick, are supposed to be secure, as they are kept offline and away from the internet.
However, when the cryptocurrency exchange attempted to move funds from their hardware wallet into an online account, the attackers were able to strike within seconds.
Cyber security experts from Sygnia and Verichains said the hacked transaction was as a result of a breach in a technology called Safe Wallet, having pieced together the events from digital records.
Two days before the incident, North Korean hackers, believed to be part of the rogue state's notorious Lazarus Group, injected malicious code into the online infrastructure of Safe Wallet, which it would use to communicate with ByBit's account when it was activated.
Safe Global, the company behind the wallet, said the hackers had managed to 'compromise the machine of a Safe Wallet developer', blaming the hacking group's 'sophisticated social engineering attacks'.
The malicious code was specifically designed to crack Bybit's wallet. It was able to mimic the coded 'signature' of three accounts, including the chief executive of Bybit, when it activated.
When Bybit attempted to transfer its funds, at 2.15pm last Friday, the hackers swiftly drained its wallets of 400,000 Ethereum coins, using a backdoor function they had inserted.
According to Sygnia's report 'two minutes after the malicious transaction was executed and published', the hackers removed their code and escaped from the system before Bybit even realised the money was gone.
Having made off with the funds, the North Korean group has rapidly worked to launder the funds through a series of cryptocurrency exchanges.
The hack represents the most devastating attack yet by North Korea's cyber agents, who are under the command of the state's intelligence service and tasked with stealing funds from the West to finance the country's weapons of mass destruction.
It eclipses the $1.3bn stolen by North Korea over the whole of 2024.
The country's hackers have been blamed for a total of $6bn in cryptocurrency thefts over the last decade. It is larger than the biggest bank heist in history, when $1bn was stolen by Saddam Hussein from Iraq's central bank in 2003.
The Bybit hack has been blamed on Lazarus Group, a group linked to Kim Jong-un's intelligence agency, the Reconnaissance General Bureau.
The group is notorious for its carefully planned attacks, using a mix of social engineering, email phishing and technical brilliance to expose systems.
On Wednesday, the FBI formally blamed North Korea for the heist, labelling the hacking group behind with the codename TraderTraitor. The FBI said the hackers were 'proceeding rapidly and have converted some of the stolen assets to bitcoin and other virtual assets dispersed across thousands of addresses on multiple blockchains'.
It called on exchanges to identify and block suspect transactions. While many digital coin transactions are anonymous, they can be tracked through its digital ledger technology, known as the blockchain, by security experts.
However, many exchanges have few know-your-customer or anti-fraud checks – or little incentive to comply with investigations in the unregulated space.
Meanwhile Ben Zhou, the chief executive of Bybit, said he had declared 'war against Lazarus', promising up to $140m as a reward for organisations that were able to capture or freeze stolen funds.
He added he would name and shame exchanges that failed to block known transactions from Lazarus Group. He said: 'We will not stop until Lazarus or bad actors in the industry is eliminated.'
Safe Global said it had 'fully rebuilt, reconfigured all infrastructure and rotated all credentials, ensuring the attack vector is fully eliminated'. It added: 'Safe remains committed to security, transparency, self-custody and pushing the industry forward.'
Broaden your horizons with award-winning British journalism. Try The Telegraph free for 1 month with unlimited access to our award-winning website, exclusive app, money-saving offers and more.
Orange background

Try Our AI Features

Explore what Daily8 AI can do for you:

Comments

No comments yet...

Related Articles

Hire a WordPress Website Designer in New York to Grow Online Fast
Hire a WordPress Website Designer in New York to Grow Online Fast

Time Business News

timean hour ago

  • Time Business News

Hire a WordPress Website Designer in New York to Grow Online Fast

Today, every business needs to be visible online to succeed. Whether you run a shop in Albany or offer services in Buffalo, your website is often the first thing customers see. That's why hiring a skilled WordPress Website Designer can make a huge difference. One of the greatest platforms for New York firms is WordPress. It's flexible, easy to update, and packed with features. But to get the most from it, you need a professional who knows how to design smart, fast, and user-friendly websites. With good reason, millions of websites worldwide are powered by WordPress. It's open-source, which means it's highly customizable and suitable for everything from personal blogs to business websites. Plus, it offers thousands of themes and plugins that make it easy to build exactly what you need. A professional WordPress website designer can help you take full advantage of this platform. They understand how to choose the right theme, use plugins wisely, and build a site that reflects your brand whether you're a small local business or a large company. Unlike general website developers, WordPress specialists focus only on one platform. This means they know all the ins and outs from improving speed and SEO to designing a site that works well on mobile devices. At Digi Era Pro LLC, our WordPress designers stay up-to-date with the latest trends, updates, and tools. In addition to being aesthetically pleasing, our websites are search engine optimized and simple for you to maintain. Working with a designer in your area can be a game-changer. If you're searching for web designers in my area, choosing a New York-based team means they understand the local business scene and customer behavior. Digi Era Pro LLC offers web design services to businesses across the entire state. From Rochester to Long Island, we help clients reach their audiences with websites that are customized to local needs and built for success. Good design is more than just pretty colors. It's about layout, readability, and building trust with your visitors. Our web graphic designers make sure every image, button, and section looks great and fits your brand. Design that connects with people leads to better results. With thoughtful visuals and an easy-to-use layout, customers are more likely to stay on your site, explore your services, and get in touch. Your website isn't just something you build and forget. It needs updates, maintenance, and improvements. That's where website development management comes in. We handle everything from plugin updates and backups to performance checks and bug fixes. At Digi Era Pro LLC, we make sure your site keeps running smoothly long after it goes live. This ongoing care helps your site stay secure, load quickly, and grow with your business. There are many companies that design websites, but not all offer the same level of service. The best firms go beyond design; they understand branding, strategy, and search engine optimization. We take time to learn about your goals, audience, and competitors before starting the design. This helps us build a website that not only looks great but also helps you stand out from others in your industry. You can have the best design in the world, but if people can't find you online, it won't matter. That's why you need an experienced SEO and website design company. SEO makes sure your site ranks well in Google and brings in organic traffic. We optimize your site structure, images, content, and load speed to boost visibility. With the right design and SEO, your website becomes a strong marketing tool that works around the clock. Your website is part of your brand. Professional graphic design firms know how to create a consistent look across your website, social media, and marketing materials. We help you develop a brand identity colors, fonts, images that matches your message and appeals to your target customers. Over time, this constancy fosters trust and recognition. Professional web designing is more than making a site that looks good. It's about creating a digital space that works well for both your business and your visitors. We build sites that are mobile-friendly, fast, and built to grow. With clear calls to action and simple navigation, our websites guide users smoothly from the homepage to contacting you or making a purchase. That's what a well-designed site should do. What separates top web design firms from the rest? It is meticulousness, excellent customer service, and continuous assistance. We take care of hosting, backups, security, and more so you don't have to worry. As one of the trusted website designers New York businesses rely on, we pride ourselves on being your long-term partner. Our goal is to help your business grow with a smart, effective online presence. Many businesses search for the top 10 website design companies, but what matters most is finding a team that understands your specific needs. We offer the same quality service as big firms but with a more personal, hands-on approach. Digi Era Pro LLC combines big-agency results with small-business attention. We're focused on helping local businesses across New York thrive online with beautifully designed, fully functional WordPress websites. Choosing the right WordPress Website Designer in New York is key to your online success. Your website is your business's front door. It should be welcoming, easy to use, and ready to convert visitors into customers. With Digi Era Pro LLC, you get a partner who understands both design and strategy. We create WordPress websites that are built to perform, look professional, and help you grow in the competitive New York market. They build, design, and customize websites using the WordPress platform. They also make sure your site is responsive, SEO-friendly, and secure. Yes. It's flexible, easy to manage, and ideal for businesses of all sizes. Many companies choose it for blogs, services, and online stores. A good firm listens to your goals, creates a custom plan, and supports you after launch. They combine design, development, and SEO in one package. Look for experience, reviews, and services that match your needs. Local companies like Digi Era Pro LLC can offer faster, more personalized support. Yes. Regular updates, backups, and performance checks help keep your site secure, fast, and ready for visitors. TIME BUSINESS NEWS

How to Use a British Proxy Like a Pro: A Practical Guide
How to Use a British Proxy Like a Pro: A Practical Guide

Business Upturn

timean hour ago

  • Business Upturn

How to Use a British Proxy Like a Pro: A Practical Guide

Ever wished you could browse as if you were sipping tea in London, even while sitting in your flat thousands of miles away? That's exactly what a British proxy allows you to do – without the airfare, timezone jet lag, or passport stamps. Whether you're conducting business, testing ad campaigns, or just need accurate location-based data, learning how to use a British proxy isn't just smart – it's a modern-day essential for digital professionals. Understanding What a British Proxy Really Does Let's start with the basics. A British proxy acts like a digital disguise that routes your internet connection through a server located in the United Kingdom. It's as if you're placing a mask over your real location and slipping into a digital trench coat stamped with a UK post code. Websites you visit see you as a UK user – even if you're thousands of miles away. The most common use cases? Marketing agencies testing geo-targeted content, ecommerce managers verifying pricing and stock on UK stores, or even SEO specialists running region-specific audits. A British proxy helps you blend in online like a true local Brit, without raising flags or triggering anti-bot systems. Why Businesses Are Turning to UK-Based Proxies Think of British proxies as business tools with a regional accent. For companies targeting the UK market, data accuracy is everything. Imagine testing a local search engine result or analyzing product availability in the UK without one – your insights could be completely off. A proxy gives you eyes on the ground without physically being there. Besides accuracy, British proxies also offer reliability and reduced latency when accessing UK-based content or services. The closer your proxy is to the source of the content, the faster and more stable your connection. For companies running programmatic campaigns, media buying, or price aggregation, that kind of precision is priceless. How to Set Up a British Proxy in Minutes You might think using a proxy involves code or some hacker-level wizardry, but the setup is actually simpler than brewing a cuppa. Here's how it typically goes: Choose a provider that offers high-quality UK IPs with low block rates (like Select the type of proxy (residential, datacenter, mobile – depending on your need). Copy the credentials (IP address, port, username, password). Insert the proxy details into your software, browser, automation tool, or scraper. Whether you're using Google Chrome, Firefox, or automation tools like Selenium or Puppeteer, there's usually a place in the settings to input proxy details. It's often as simple as filling in a few boxes. Comparing Proxy Types for UK Use Cases Proxy Type Best For Speed Block Resistance Cost Level Residential Web scraping, SEO, retail monitoring Moderate Very High Medium/High Datacenter Bulk tasks, speed-sensitive workloads Very Fast Medium Low Mobile Ad verification, social testing Slower Very High High Choosing the right one depends on what you want to achieve. If you're scraping retail sites for product prices in the UK, a residential proxy is your best friend. If you're just verifying how a page looks from Manchester or Birmingham quickly, datacenter proxies might be enough. Common Mistakes to Avoid When Using UK Proxies Let's talk about what not to do. Many first-time users assume one UK proxy is the same as another. It's not. Picking low-quality proxies can get your IP blacklisted or blocked. That's a fast track to frustration. Also, avoid reusing the same IP for too many requests. That raises digital red flags. Most premium proxy services offer rotating IPs to keep your activity natural. Don't forget to clear your browser cookies before each session either – cookies can betray your real location like crumbs on a detective's coat. When Should You Use a British Proxy Over Others? Simple: when your task, data, or audience is UK-specific. Think about an ecommerce consultant auditing product visibility across Tesco or ASOS listings. Or a marketing analyst validating UK-specific ad delivery. Using a US or German IP for these tasks will give you the wrong view. Context is everything. A british proxy ensures that the content you're seeing is precisely what a native UK user would see. Additionally, some services offer compliance or pricing differences for UK residents. Using a proxy allows businesses to validate these variances and respond strategically. The One-Proxy-Fits-All Myth – Why Geo-Specific Matters Proxies aren't one-size-fits-all. A Japanese proxy can't replace a British one if your target is the UK. Different regions come with different behaviors, languages, even legal requirements. If your SEO or web scraping needs are focused on the UK, only a properly configured British proxy can ensure accurate insights and unfiltered access. If your business involves analytics, research, or operations tied to the UK, you can't afford to fly blind. A British proxy doesn't just make your tasks easier – it makes your data smarter, your campaigns sharper, and your competitive edge that much keener. With the right setup and a clear understanding of how and when to deploy your proxy, you're no longer just online. You're online strategically – with the precision of a royal guardsman and the stealth of a London fog. Let your proxy do the heavy lifting while you stay one step ahead in the digital game. Ahmedabad Plane Crash

£10,000 invested in this hot growth stock 3 months ago is now worth…
£10,000 invested in this hot growth stock 3 months ago is now worth…

Yahoo

timean hour ago

  • Yahoo

£10,000 invested in this hot growth stock 3 months ago is now worth…

Back in April, stock market investors were freaking out over tariffs. In hindsight, however, this proved to be a golden opportunity to shop for growth stocks. Many were simply coiled springs. One that certainly fits into this category is Joby Aviation (NYSE: JOBY). Shares of the flying air taxi pioneer have gone from $5.93 on 11 April to a 52-week high of $12.33. For those keeping score, that's a gain of 108%! It means any brave soul who loaded up on £10,000 worth of shares back then would now have about £20,000, even after adjusting for a weaker US dollar. I didn't invest in Joby back in April, but it still leaves me with a dilemma. You see, I bought shares of Joby on three separate occasions last year. My cost basis was just over $5, meaning I'm now sitting on gains of more than 100%. I'm bullish on the company's long-term prospects. It recently carried out successful piloted test flights of its electric vertical take-off and landing (eVTOL) aircraft in the United Arab Emirates (UAE). This is ahead of a planned launch next year in Dubai, where Joby has exclusive rights to operate air taxis for six years. It intends to charge passengers the same as a premium Uber ride. Founder and CEO JoeBen Bevirt announced: 'Our flights and operational footprint in Dubai are a monumental step toward weaving air taxi services into the fabric of daily life worldwide.' The company aims to introduce its service at Dubai International Airport, Palm Jumeirah, Dubai Marina, and Dubai Downtown, with vertiport construction already well underway. Management says the airport-to-Palm Jumeirah trip will only take 12 minutes, significantly cutting down a 45-minute car ride. That's not surprising, as Joby's aircraft can transport a pilot and up to four passengers at speeds of up to 200 mph, while emitting almost no noise and zero emissions. Meanwhile, Saudi Arabia is exploring the purchase of Joby's eVTOLs, in a deal worth up to $1bn. All of which begs the question: what dilemma am I referring to? Well, Joby's market cap is now north of $10bn, despite the firm being pre-revenue and still needing to gain full certification from the US Federal Aviation Administration (FAA). The UAE news is great, but there's risk that a delay in regulatory approval in the US sends the stock down sharply. As for profits, we have no idea when those might emerge because Joby is building out a brand new mode of air travel. That's going to take time and a lot of capital. Thankfully, Joby has around $1bn on the balance sheet, as well as the expertise of manufacturing partner and backer Toyota. According to Grand View Research, the global eVTOL market could be worth over $28bn by the 2030s. Joby is currently leading the race to capture a large chunks of this. What I will do here is sell half my position and redeploy the profits into other stocks. That way, I get to keep a sizeable position in Joby, while also minimising risk in my portfolio. Investors interested in Joby should understand the risks here, and expect massive volatility. It's a fascinating stock, albeit now a very speculative one at $12. The post £10,000 invested in this hot growth stock 3 months ago is now worth… appeared first on The Motley Fool UK. More reading 5 Stocks For Trying To Build Wealth After 50 One Top Growth Stock from the Motley Fool Ben McPoland has positions in Joby Aviation and Uber Technologies. The Motley Fool UK has recommended Uber Technologies. Views expressed on the companies mentioned in this article are those of the writer and therefore may differ from the official recommendations we make in our subscription services such as Share Advisor, Hidden Winners and Pro. Here at The Motley Fool we believe that considering a diverse range of insights makes us better investors. Motley Fool UK 2025 Sign in to access your portfolio

DOWNLOAD THE APP

Get Started Now: Download the App

Ready to dive into a world of global content with local flavor? Download Daily8 app today from your preferred app store and start exploring.
app-storeplay-store