North Korean hackers use AI deepfake Zoom to scam, cryptocurrency companies face dual attack of targeted "social engineering + Trojan"

February 11 News, Google’s security team Mandiant disclosed that a North Korea-linked hacker group is using deepfake videos and fake Zoom calls to carry out highly targeted social engineering attacks against the cryptocurrency industry, and is deploying multiple malicious programs to steal assets and data.

The investigation shows that this operation was launched by the cyber threat group UNC1069. The group has been active since at least 2018 and shifted its focus from traditional finance to the Web3 space after 2023, targeting executives of crypto financial technology companies, software developers, and venture capital professionals. The incident began when an industry executive’s Telegram account was hijacked. The attacker impersonated the individual to contact targets, build trust, and then send fake Calendly video meeting invitations.

After victims clicked the link, they were directed to a fake Zoom domain controlled by the attacker. During the call, the attacker played a deepfake video of what appeared to be the CEO of another crypto company, and claimed there was an “audio malfunction,” tricking the target into running a supposed troubleshooting command on their computer. These commands triggered an infection chain on macOS and Windows systems, silently deploying up to seven malicious software programs.

Mandiant confirmed that these tools can steal Keychain credentials, browser cookies, login information, Telegram sessions, and local sensitive files. Researchers believe that the attackers aim both to directly acquire crypto assets and to gather intelligence for future scams. Deploying so many tools on a single device indicates a carefully planned targeted infiltration.

This incident is not isolated. By 2025, similar AI conference scams had caused losses exceeding $300 million; throughout the year, cyber operations related to North Korea stole approximately $2.02 billion in digital assets, a 51% increase. Chainalysis also pointed out that scam groups utilizing on-chain AI services are significantly more efficient than traditional methods.

As the barrier to deepfake technology continues to lower, the crypto industry faces unprecedented security challenges. Experts warn that online meetings involving funds and system permissions must strengthen multi-factor authentication and device isolation; otherwise, they could become the next attack vector.

View Original
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to Disclaimer.

Related Articles

X million dollar long-form champion Beaverd is exposed as a "Meme coin serial predator," and he coldly retorts, "Cry about it."

Beaverd (@beaverd) wins the $1 million grand prize in the X platform long-form competition but is exposed by Bubblemaps for involvement in Meme coin scams, with profits exceeding $600,000. In response to the allegations, Beaverd not only denies them but also makes provocative remarks, sparking community dissatisfaction. His statements and background have also caused widespread controversy.

動區BlockTempo19m ago

American host's mother kidnapped! The kidnappers demand 85 Bitcoin ransom, but police searches have been unsuccessful.

American "Today Show" host Savannah Gessley's mother was kidnapped, and the kidnappers demanded $6 million in Bitcoin. The case has raised concerns about cryptocurrency crimes and has drawn mainstream society's attention to the risks of blockchain. Law enforcement faces difficulties, with no concrete clues found, and family members released a video for help. This incident serves as a warning about the spread of cryptocurrency crimes in society.

CryptoCity4h ago

Misappropriated $9 million of public funds for extravagance! Former SafeMoon CEO sentenced to 8 years for fraud

Former SafeMoon CEO Braden John Karony was sentenced to 100 months in prison and ordered to pay approximately $7.5 million in illegal proceeds for defrauding investors. He allegedly transferred $9 million worth of assets from the company to fund a luxurious lifestyle. A federal jury found him guilty of conspiracy to commit securities fraud and money laundering. SafeMoon once had a market capitalization of over $8 billion, but it was actually a scam.

区块客6h ago

Japan's Financial Services Agency releases "Draft Guidelines for Strengthening Cybersecurity for Crypto Exchanges" and opens for public comments

The Japanese Financial Services Agency has released a draft of the cybersecurity enhancement guidelines, publicly soliciting opinions until March 11. The draft emphasizes the need to strengthen security management across the entire supply chain of encrypted exchanges to counter increasingly sophisticated cyberattacks, and proposes a three-pillar approach of "self-help, mutual aid, and public assistance."

GateNewsBot6h ago

Google Mandiant: North Korean Hackers Use AI Deepfakes and Fake Zoom Meetings to Attack the Cryptocurrency Sector

Google's security team Mandiant has released a report stating that North Korea-linked hacker group UNC1069 is using AI-generated fake videos and fake Zoom meetings to carry out targeted attacks on cryptocurrency and fintech companies, hijacking Telegram accounts, tricking victims into executing malicious commands, and stealing sensitive data.

TechubNews8h ago
Comment
0/400
00001clvip
· 1h ago
Purely a mafia!
View OriginalReply0
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)