US Sanctions Three Alleged Crypto Hacking Groups from North Korea

News


The U.S. has sanctioned three North Korean entities for cyber crimes, mentioning cryptocurrency thefts as one of the reasons for the action.

In a Sept. 13 announcement, the U.S. Department of the Treasury identified the Lazarus Group, Bluenoroff and Andariel as entities now on its the sanctions list, who are believed to be responsible for the theft of $571 million worth of cryptos from five exchanges in Asia in 2017 and 2018.

The announcement comes just days after the North said that it would be holdings its second cryptocurrency-related conference, inviting the community to share information and do deals next February in Pyongyang.

The Treasury department said the stolen funds, including coins from cryptocurrency exchanges, are believed to have been used in the development of nuclear weapons and ballistic missiles.

As a result of the designation, all assets owned or controlled by any of the three entities are now blocked and must be reported to Office of Foreign Assets Control (OFAC). The announcement said that “U.S. persons,” which broadly includes citizens, residents and companies incorporated in the U.S., are generally prohibited from dealing with the blocked entities. Anyone violating the sanctions could themselves be subject to designation by the Treasury.

Further, any financial institution in any country that deals with the blocked entities could lose their correspondent banking relationships with U.S. financial institutions, essentially locking them out of the dollar market.

Lazarus, which is the parent of the other two groups and also known as Apple Worm and Guardians of Peace, was involved in the WannaCry 2.0 ransomware attacks of 2017, the announcement added.

Bluenoroff, which came to the attention of security companies in 2014 and is sometimes known as APT38 or Stardust Chollima, has stolen funds from financial institutions, including $80 million from the Central Bank of Bangladesh, and has targeted cryptocurrency exchanges.

Andariel was first noticed by the internet security community in 2015 and is also attempting to engage in theft and sow confusion. It was said to be responsible for a 2016 hack into the personal computer of the South Korean Defense Minister.

All three groups are controlled by North Korea and related to the Reconnaissance General Bureau (RGB), according to the announcement.

A recent U.N. report alleges that the North has stolen $2 billion worth of crypto and fiat currencies in 35 separate attacks in 17 countries. South Korea’s UPbit exchange may have been one of the targets, with the North using phishing attacks to gain control of the computers of customers.

North Korea image via Shutterstock



Source link

Infolinks.com, 3210366 , DIRECT rubiconproject.com, 20322, RESELLER, 0bfd66d529a55807 google.com, pub-6373315980741255, RESELLER, f08c47fec0942fa0 google.com, pub-4299156005397946, RESELLER, f08c47fec0942fa0 Adtech.com, 11409, RESELLER appnexus.com, 3251, RESELLER Pubmatic.com, 60809,RESELLER,5d62403b186f2ace Pubmatic.com, 158270, RESELLER,5d62403b186f2ace sovrn.com, 268479, DIRECT, fafdf38b16bf6b2b lijit.com, 268479, DIRECT, fafdf38b16bf6b2b lijit.com, 268479-eb, DIRECT, fafdf38b16bf6b2b aol.com, 6202, RESELLER aol.com, 17744, RESELLER lkqd.net, 295, RESELLER, 59c49fa9598a0117 lkqd.com, 295, RESELLER, 59c49fa9598a0117 Freewheel.tv, 482337, RESELLER Freewheel.tv, 480609, RESELLER appnexus.com, 7666, RESELLER, f5ab79cb980f11d1 rubiconproject.com, 156042, RESELLER, 0bfd66d529a55807 pubmatic.com, 156872, RESELLER, 5d62403b186f2ace Rubiconproject.com, 20848, RESELLER, 0bfd66d529a55807 contextweb.com, 559988, RESELLER, 89ff185a4c4e857c rhythmone.com, 2221906906,DIRECT,a670c89d4a324e47 districtm.io, 101519, RESELLER indexexchange.com, 175407, RESELLER 33across.com, 0010b00002CpYhEAAV, RESELLER, bbea06d9c4d2853c rubiconproject.com, 16414, RESELLER, 0bfd66d529a55807 pubmatic.com, 156423, RESELLER, 5d62403b186f2ace rhythmone.com, 2439829435, RESELLER, a670c89d4a324e47 indexexchange.com, 185506, RESELLER Smartadserver.com,3238,RESELLER contextweb.com,560288,RESELLER,89ff185a4c4e857c pubmatic.com,156439,RESELLER pubmatic.com, 154037,RESELLER rubiconproject.com,16114,RESELLER, 0bfd66d529a55807 openx.com,537149888,RESELLER,6a698e2ec38604c6 sovrn.com, 257611,RESELLER, fafdf38b16bf6b2b appnexus.com,3703,RESELLER,f5ab79cb980f11d1 EMXDGT.com, 68, RESELLER, 1e1d41537f7cad7f rubiconproject.com, 17262, RESELLER, 0bfd66d529a55807 indexexchange.com, 184311, RESELLER gumgum.com,13318,RESELLER,ffdef49475d318a9 adtech.com,12094,RESELLER google.com, pub-5617098146054077, RESELLER, f08c47fec0942fa0 spotx.tv, 74964, RESELLER, 7842df1d2fe2db34 openx.com, 540362347, RESELLER, 6a698e2ec38604c6 advertising.com, 24831, RESELLER appnexus.com, 10736, RESELLER

Leave a Reply

Your email address will not be published. Required fields are marked *

four × three =