Still the worst six months of Crypto? North Korea hacks lead to $ 2.1b in robberies



Cryptographic investors lost more than $ 2.1 billion for hacks and exploits in the first half of 2025, marking the worst six months recorded for cryptographic security and an indication of some national states that intensify their cyber campaigns in cryptographic space.

The 75 registered incidents crossed the maximum of previous H1 since 2022 in approximately 10% and almost coincide with the entire 2024, a TRM Labs report published on Friday said on Friday. But increasing alarms is who is doing an important part of theft.

Researchers say that groups linked to North Korea are responsible for $ 1.6 billion, or 70% of all funds stolen this year.

In the center of the increase in the increase of the $ 1.5 billion, Bybit Hack in February, which is now believed to be carried out by North Korea, marking the greatest robbery of cryptography in history and biased the average size of the hack of the year to $ 30 million, or twice the last year of last year.

The threat is not limited to Pyongyang. On June 18, a group that is believed to be linked to Israel, Gonjashke Darende (Sparrow Predator), stole $ 90 million of the Iranian Nobitex exchange, according to reports in reprisals for the alleged role of the platform in the evasion of the sanction.

The stolen funds were sent to the directions of vanity (which can be spent by design and the tokens sent are considered burned), which suggests a political motive on the profits.

Attack vectors are quickly evolving. More than 80% of stolen funds arose from infrastructure at the infrastructure level, including private key and frontal kidnappings.

These attacks, which often involve social engineering or internal access, are demonstrating to be ten times more lucrative than traditional exploits of intelligent contracts. Defi’s vulnerabilities, including Flash and Re-Employing Loan attacks, which prevailed in 2021-22, represented a relatively small losses.

Read more: North Korea computer pirates are aimed at the main cryptographic companies with hidden malware in employment applications

Leave a Comment

Your email address will not be published. Required fields are marked *