Security Agency: Suspected North Korean hacker group collaborates to attack cryptocurrency companies to steal keys and cloud assets
Security research organization Ctrl-Alt-Intel disclosed that a group of hackers suspected to be linked to North Korea has targeted staking platforms, exchange software vendors, and cryptocurrency exchanges.
The attackers exploited the React2Shell vulnerability (CVE-2025-55182) and compromised cloud environments using obtained AWS access credentials, enumerating resources such as S3, EC2, RDS, EKS, and ECR, and extracting keys and credentials from Secrets Manager, Terraform files, Kubernetes configurations, and Docker containers. Researchers stated that the attackers downloaded 5 Docker images and stole source code, including components related to ChainUp clients.
The attack infrastructure involved a South Korean server 64.176.226[.]36 and the domain itemnania[.]com. The report indicated that this activity is consistent with North Korean-related attack characteristics, but the attribution confidence level is moderate, and the source of the AWS credentials remains unclear.
You may also like

In the name of charity, for the benefit of the family: How the Trump family turned charity into profit?

Will Gold Break $4,500 After Tonight's Fed Decision? What XAUT and PAXG Traders Need to Know

Cursor, why did you get on Musk's spaceship?

Morning Report | DeepSeek completes over $7 billion in financing, with a valuation exceeding $50 billion; Musk's personal wealth has surpassed the total market value of Bitcoin

SharpLink CEO: How to understand that Ethereum developers have just surpassed 1 million?

Morning Report | MiCA grace period expires on July 1; Kalshi's trading volume in the first week of the World Cup breaks $5.1 billion, setting a record

The foundation of SpaceX's trillion-dollar valuation: Who is dividing Musk's annual capital expenditure of tens of billions?

How to exit after asset tokenization?

The stablecoin positioning battle escalates: When compliance is just a ticket to entry, will USD1 become the biggest winner?

A16Z: The sun bears witness, SpaceX is worth 7.5 trillion

Mergers and acquisitions in the cryptocurrency market are exceptionally active

Concerns Behind the Binance Customer Service Controversy

SpaceX Stock Prediction After the IPO: Can SPCX Reach $200 Before QQQ Inclusion?

Congratulations to Carl Moon on His Historic Ferrari Challenge Le Mans Podium Triumph
Crypto influencer and racing enthusiast Carl Moon finished third in the Ferrari Challenge Le Mans Coppa Shell class, marking his best result of the year. As his racing partner and sponsor, WEEX celebrates this remarkable achievement and continues to lead crypto’s journey beyond boundaries, uniting the innovation of digital assets with the passion of motorsport.

Can the CLARITY Act Become Law by July 4? Everything You Need to Know About the Final Battle

France vs Senegal World Cup 2026: Mbappe’s New Era Begins Against a Historic Rival

What is the connection between Huang Zheng of Pinduoduo and blockchain?

