Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (2,099)
  • Analysis (2,262)
  • Bitcoin (2,862)
  • Blockchain (1,745)
  • DeFi (2,062)
  • Ethereum (2,053)
  • Event (71)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (2,108)
  • Press Releases (10)
  • Reddit (1,515)
  • Regulation (1,976)
  • Security (2,737)
  • Thought Leadership (3)
  • Videos (43)
Hand picked
  • After losing thousands on memes and options I’m trying to create an investment strategy.
  • A revival coming as the $SNORT presale ends in 3 days?
  • Is Cardano Entering a Deeper Correction Phase After 350 Million ADA Whale Spills?
  • Solana Price at Risk of Crashing 50% to $104 After Forming This Broader Downtrend
  • Top 5 Blockchain Platforms to Consider
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»Blockchain»North Korean hackers use blockchain to hide cryptocurrency-stealing malware
Blockchain

North Korean hackers use blockchain to hide cryptocurrency-stealing malware

October 17, 2025No Comments
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email


Hackers linked to the North Korean state have begun using public blockchains to spread malware and steal cryptocurrencies, which researchers say is the first known case of a nation-state adopting the technique.

Google security researchers said Thursday they observed a Pyongyang-backed hacking group, tracked as UNC5342, deploying a method known as EtherHiding — a way to embed malicious code into smart contracts on decentralized networks such as Ethereum and BNB Smart Chain.

This technique makes it more difficult to block or remove malware because the code is stored in blockchain ledgers that cannot be taken offline or modified. The malicious code remains accessible as long as the blockchain itself is operational, according to the researchers.

“This represents an evolution toward next-generation, ironclad hosting,” Google said, noting that attackers are increasingly exploiting the same decentralization features that make blockchain resilient.

Malware hidden in smart contracts

Since February, UNC5342 has used EtherHiding as part of a social engineering campaign that tricks developers – often those working in the cryptocurrency or technology industries – into uploading malware disguised as work-related files or coding challenges.

Once a target opens the file, a malicious script connects to the blockchain to retrieve the encrypted code of a smart contract. This code installs the JadeSnow loader, which in turn provides a more persistent backdoor known as InvisibleFerret which has been used in several cryptocurrency thefts.

Since malicious payloads are stored on decentralized blockchains, they cannot be removed through traditional takedown efforts. Attackers can also quietly update or replace their malware by modifying the smart contract, Google said.

The pseudonymous nature of blockchain adds another layer of anonymity, making it difficult to identify the people behind the transaction.

Google said EtherHiding was first used in 2023 by a financially motivated group known as UNC5142, but this is the first time a state-sponsored actor has adopted it.

The company added that even though hackers rely on decentralized blockchains to store their code, they still interact through centralized web services that defenders can monitor or block to disrupt attacks.

“In other words, UNC5142 and UNC5342 use permissioned services to interact with blockchains without permission,” the researchers said.

Get more information with the

Future saved

Intelligence cloud.

Learn more.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleTrump’s $2,000 Tariff ‘Dividend’ Stimulus Check Idea Could Be About To Blow Up The Bitcoin Price, Crypto And Stock Market
Next Article Bitcoin and Ether ETFs See Outflows After Record Market Liquidations

Related Posts

Blockchain

Hackers use blockchain to hide malware in plain sight

October 17, 2025
Blockchain

Blockchain could reduce government spending, Philippine official says

October 16, 2025
Blockchain

Blockchain.ai auction ends at $405,000, but previous holder files lawsuit to stop transfer – Domain Name Wire

October 16, 2025
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

WOW Summit Hong Kong 2025 Concludes, Cementing the City’s Status as a Global Tech Epicenter

October 15, 2025

Hong Kong once again became the heartbeat of global innovation as WOW Summit Hong Kong…

Event

bepay money to Launch $1 Million Bitcoin Rewards Program at Invest Payments & Banking Forum Dubai 2025

October 13, 2025

 Global Cross-Border Payment Platform Partners with Giakaa Capital to Engage $1 Trillion+ AUM Representatives and…

1 2 3 … 57 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

Is Cardano Entering a Deeper Correction Phase After 350 Million ADA Whale Spills?

October 17, 2025

Ethereum leads with 16,000 new developers in 2025, Solana follows with 11,500

October 17, 2025

Rep. Downing to Introduce Crypto-Friendly 401(k) Bill

October 17, 2025
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2025 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 104,748.06
ethereum
Ethereum (ETH) $ 3,724.84
tether
Tether (USDT) $ 1.00
bnb
BNB (BNB) $ 1,044.78
xrp
XRP (XRP) $ 2.24
solana
Solana (SOL) $ 178.21
usd-coin
USDC (USDC) $ 1.00
staked-ether
Lido Staked Ether (STETH) $ 3,723.68
tron
TRON (TRX) $ 0.307785
dogecoin
Dogecoin (DOGE) $ 0.179443