North Korean Hackers Behind $1.4B Crypto Heist, Exploited Safe Wallet Infrastructure

North Korean Hackers Execute $1.4B Crypto Heist Through Safe Infrastructure Rather Than Direct Bybit Attack

  • North Korean Hackers executed a $1.4 billion cryptocurrency heist by infiltrating Safe‘s infrastructure rather than targeting Bybit directly.
  • The attackers planted malicious JavaScript code in Safe‘s AWS-hosted infrastructure, specifically targeting Bybit‘s contract address.
  • Two independent Cybersecurity firms, Verichains and Sygnia Labs, confirmed the attack vector through detailed forensic analysis.
  • The hackers removed the malicious code within two minutes of completing the theft, demonstrating sophisticated operational security.
  • The incident raises serious concerns about security vulnerabilities in widely-used cryptocurrency infrastructure providers.

North Korean hackers have orchestrated the largest cryptocurrency theft in history, stealing $1.4 billion from Bybit by compromising the infrastructure of wallet provider Safe, according to independent security audits released this week.

- Advertisement -

Forensic investigations by cybersecurity firms Verichains and Sygnia Labs revealed that the attackers injected malicious code into Safe‘s Amazon Web Services infrastructure. The code was specifically engineered to activate only when interacting with Bybit‘s contract address, demonstrating an unprecedented level of tactical sophistication.

The hack’s execution showcases the evolution of state-sponsored cryptocurrency theft. Within two minutes of draining the funds, the attackers cleaned their tracks by removing the malicious code from Safe‘s systems, leaving minimal forensic evidence.

Safe has acknowledged that the breach originated from a compromised developer machine, though maintaining that their smart contracts and source code remained secure. The company has since rebuilt its infrastructure and updated security credentials.

Bybit emphasized that their own systems remained uncompromised, stating: “Bybit is and remains 100% secure.” The exchange has transferred remaining assets away from Safe-administered wallets as a precautionary measure.

- Advertisement -

Taylor Monahan, MetaMask‘s security expert, cautioned against hasty conclusions, noting: “I think it’s been presumptuous for us to assume it was Bybit the first five days… I think it’s presumptuous to flip 180 degrees and say it’s Safe’s fault on day six.”

This incident represents a significant escalation in North Korean cryptocurrency operations, which have previously focused on smaller-scale attacks. The sophisticated nature of the hack has sent shockwaves through the cryptocurrency industry, prompting calls for enhanced security measures across infrastructure providers.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Hyperliquid Unlock Dilutes HYPE Holders by $331M amid $268M+

Hyperliquid unlocked 12,457,813 HYPE tokens from a founding vesting allocation, increasing circulating supply by...

Quintenz Joins SUI Group Board to Guide $200M Treasury Plan.

Brian Quintenz has been appointed to the board of Sui Group.The appointment aims to...

AMD Unveils Helios AI Rack to Challenge Nvidia’s Lead at CES

AMD CEO Lisa Su unveiled new AI chips and the Helios AI data center...

PepsiCo, Siemens and NVIDIA Deploy AI Digital Twins to Scale

PepsiCo has formed a partnership with Siemens and NVIDIA to use digital twin technology...

Lego unveils Smart Brick: app-free lights, sounds, Star Wars

Lego introduced the Smart Brick, a tech-packed 2x4 brick that adds lights, sound, and...
- Advertisement -

Must Read

Top 8 Best Anonymous Web Hosting Companies That Accept Crypto

Nowadays, there is plenty of information about people online, and malicious people use them to carry out inappropriate activities. If you want to keep...
Bitcoin (BTC) $ 92,523.00 1.64%
Ethereum (ETH) $ 3,244.40 0.27%
XRP (XRP) $ 2.26 2.43%
Bittensor (TAO) $ 288.22 6.98%
Polkadot (DOT) $ 2.18 1.16%
Cardano (ADA) $ 0.412541 1.73%
Chainlink (LINK) $ 13.78 1.51%
Hyperliquid (HYPE) $ 27.48 1.47%
Monero (XMR) $ 445.57 3.26%
Hedera (HBAR) $ 0.127727 1.09%
Toncoin (TON) $ 1.89 0.67%