Charts
DataOn-chain
VIP
Market Cap
API
Rankings
CoinOSNew
CoinClaw🦞
Language
  • 简体中文
  • 繁体中文
  • English
Leader in global market data applications, committed to providing valuable information more efficiently.

Features

  • Real-time Data
  • Special Features
  • AI Grid

Services

  • News
  • Open Data(API)
  • Institutional Services

Downloads

  • Desktop
  • Android
  • iOS

Contact Us

  • Chat Room
  • Business Email
  • Official Email
  • Official Verification

Join Community

  • Telegram
  • Twitter
  • Discord

© Copyright 2013-2026. All rights reserved.

简体繁體English
|Legacy
BTCBTC
💲67129.09
+
0.18%
ETHETH
💲2051.57
-
0.56%
WLDWLD
💲0.2608
-
4.12%
SOLSOL
💲80.22
+
0.22%
USDCUSDC
💲1.00
+
0.01%
XRPXRP
💲1.31
-
0.76%

Slow Mist Cosine: Confirmed Bybit attacker is North Korean Lazarus Group, revealed its attack method

律动BlockBeats
律动BlockBeats|2月 23, 2025 12:08
According to BlockBeats, on February 23rd, Cosine, the founder of SlowMist, stated in a post, "Through forensic analysis and correlation tracing, we have confirmed that the attacker behind the Bybit theft incident is North Korea's Lazarus Group. This is a national level APT attack targeting cryptocurrency trading platforms Attackers use pyyaml for remote code execution (RCE) to distribute malicious code and gain control of target computers and servers. This method bypasses the majority of antivirus software. After synchronizing intelligence with partners, multiple similar malicious samples are obtained. The attacker's main goal is to invade the infrastructure of cryptocurrency trading platforms, gain control of wallets, and illegally transfer large amounts of encrypted assets in wallets SlowMist published a summary article revealing the attack methods of Lazarus Group, and analyzed a series of tactics such as social engineering, vulnerability exploitation, privilege escalation, intranet penetration, and fund transfer. At the same time, based on actual cases, defense suggestions against APT attacks were summarized, hoping to provide reference for the industry, help more institutions improve their security protection capabilities, and reduce the impact of potential threats
+5
Mentioned
|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

Timeline

3月 25, 12:04【GMX and MIM Spell related contracts attacked, resulting in losses of up to $13 million】
3月 25, 12:03【North Korea's Bitcoin reserves reach 1.14B】
3月 25, 08:53【Risk control and security issues of Bybit】
3月 24, 22:29【Trump instructs to block phone registration benefits】
3月 24, 15:25【The Trump administration requests a suspension of Judge Clinton's decision】
3月 24, 13:46【MicroStrategy controls nearly half of Satoshi Nakamoto's Bitcoin reserves】
3月 23, 05:08【Movement responds to airdrop controversy, MoveDrop is coming soon】
3月 22, 15:28【ZOTH sets up a $500000 bounty to obtain clues about stolen funds】
3月 22, 14:30【Zoth protocol encounters targeted attacks by hackers】
3月 22, 01:00【RWA protocol Zoth hacked 8.85 million yuan for the second time within a month】

HotFlash

|
APP
Windows
Mac
Share To

X

Telegram

Facebook

Reddit

CopyLink

APP
Windows
Mac

X

Telegram

Facebook

Reddit

CopyLink

Hot Reads