Tech News
← Home  ·  All topics

Cryptocurrency Theft

5 GoKawiil briefs on this topic

North Korean group WaterPlum infects 30,000 devices via fake coding tests, steals $10.7M

Authorities in Australia, Germany, Japan and the US say a North Korean hacking group known as WaterPlum has compromised over 30,000 devices and 7,000 crypto wallets by posing as recruiters and sending malware-laced coding tests to tech workers. The scheme has netted at least $10.71 million in cryptocurrency, funneled back to North Korea.

North Korea's WaterPlum hackers infect 30,000 devices via fake job coding tests, steal $10.7M

Cybersecurity agencies from Japan, the US, Australia and Germany issued a joint advisory identifying North Korea's WaterPlum group as the actor behind malware hidden in fake job application coding tests. The scheme has infected over 30,000 devices across 100 countries and compromised more than 7,000 crypto wallets, netting $10.71 million believed to fund the North Korean government.

North Korean group WaterPlum breached 30,000 devices, stole $10.7M in crypto

A joint advisory from law enforcement in Japan, the US, Australia and Germany says the North Korean-linked group WaterPlum infected over 30,000 devices across more than 100 countries between December 2025 and July 2026. The hackers drained more than 7,000 cryptocurrency wallets and moved over $10.7 million worth of crypto assets to North Korea, using fake job interviews and malicious code disguised as coding tests or software projects to infect victims.

Malone Lam pleads guilty in $245 million crypto theft ring formed via Minecraft meetups

Malone Lam, a 22-year-old Singaporean living in Miami, has pleaded guilty to racketeering charges tied to a cybercrime ring that allegedly stole and laundered hundreds of millions in cryptocurrency. Prosecutors say the 12-member group, which reportedly first connected through Minecraft before meeting in person in 2023, targeted wealthy crypto holders using social engineering, with individual thefts ranging from $800,000 to a single $245 million heist. Lam now faces up to 20 years in prison, with sentencing still pending.

Cisco Talos Uncovers Two ClickFix Campaigns Exploiting Google Sheets and Trusted Services

Cisco Talos researchers identified two separate ClickFix-style social engineering campaigns that trick victims into executing malicious code themselves, one aimed at stealing cryptocurrency and another designed to gain persistent enterprise network access. One campaign uses a publicly shared Google Sheet to distribute malicious browser code that hijacks Chrome transaction interfaces, while both operations abuse legitimate cloud services and trusted software to disguise malicious activity as normal user behavior.