ZachXBT:起底朝鲜加密货币开发者不为人知的幕后

币界网Published on 2024-08-16Last updated on 2024-08-16

币界网报道:

作者:Stephen Katte,CoinTelegraph;编译:白水,

区块链调查员 ZachXBT 表示,他发现了一个复杂的朝鲜开发者网络的证据,这些开发者每月为“成熟的”加密项目工作,收入高达 50 万美元。”

ZachXBT 在 8 月 15 日的 X 帖子中告诉他的 618,000 名粉丝,他认为一个“亚洲的单一实体”,可能在朝鲜运营,每月收入 30 万至 50 万美元,雇用至少 21 名员工参与超过 25 个加密项目。

I7kIpLVnvtoiBh26K6JQxMmXpQPRBi74DLCk4lJ5.jpeg

区块链研究员 ZachXBT 声称发现 21 名朝鲜人使用假身份正在开展数十个加密项目。来源:ZachXBT

“最近,一个团队向我寻求帮助,因为恶意代码被推送后,国库中的 130 万美元被盗,”ZachXBT 说道。

“团队不知道,他们雇佣了多名使用假身份的朝鲜 IT 工作人员作为开发人员。”

ZachXBT 声称,朝鲜工人最近窃取的 130 万美元通过一系列交易进行了洗钱,包括转移到盗窃地址,最后将 16.5 个以太坊转移到两个不同的交易所。

在对这些开发者进行进一步调查后,ZachXBT 认为他们是一个更广泛网络的一部分。

通过跟踪多个付款地址,他发现一群开发者“上个月收到了 37.5 万美元”,之前的交易总额为 550 万美元,这些资金从 2023 年 7 月到 2024 年的某个时间流入了一个交易所存款地址。

这些付款随后与朝鲜的 IT 工作者和个人 Sim Hyon Sop 联系在一起,后者因涉嫌协调资金转移而受到外国资产控制办公室 (OFAC) 的制裁,这些资金转移最终用于支持朝鲜的武器计划。

nD9q0WnOlolu3OYbMFBoSqNfvwEmubF4ozNY7HrN.jpeg

ZachXBT 认为一群使用假身份的朝鲜开发者在过去一个月内获得了 375,000 美元。来源:ZachXBT

ZachXBT 表示,他的调查发现,其他付款地址与另一名 OFAC 制裁的个人 Sang Man Kim 密切相关,后者过去曾与朝鲜相关的网络犯罪有关。

美国执法部门认为,Kim“参与向 Chinyong 海外朝鲜工人代表团的家庭成员支付工资”,并因向中国和俄罗斯的朝鲜附属团队出售 IT 设备而获得 200 万美元的加密货币。

ZachXBT 还发现,自称在美国和马来西亚工作的开发人员之间存在俄罗斯电信 IP 重叠的情况。至少有一名工人“在记事本上意外泄露了他们的其他身份”。

他发现的一些开发人员甚至是由招聘公司安排的,在某些情况下,他们互相推荐工作。

“许多经验丰富的团队都雇用了这些开发人员,所以把他们单独归咎于他们是不公平的,”ZachXBT 说。

“在发布另一个项目后不久,我发现他们雇佣了我表中列出的一名朝鲜 IT 工作者(Naoki Murano),并在他们的聊天中分享了我的帖子。两分钟内,Naoki 就离开了聊天室并清除了他的 GitHub。”

据信,多年来,与朝鲜有关的组织是多起网络攻击和其他诈骗的幕后黑手。其网络犯罪手法通常涉及网络钓鱼、利用软件漏洞、网络入侵、私钥漏洞和面对面渗透。据了解,有些人还从事这些工作来赚取薪水,然后将薪水寄回该国。

2022 年,美国司法部、国务院和财政部发布联合咨询警告,警告朝鲜工人涌入各种自由职业技术工作,尤其是加密货币。

据称,与这个隐士王国有关的最臭名昭著的组织拉撒路集团 (Lazarus Group) 在截至 2023 年的六年间窃取了超过 30 亿美元的加密资产。

Related Reads

Interview with PPP: How the World Cup Ignited the Prediction Market, and How to Find "Replicable Smart Money"?

Interview with PPP: World Cup Ignites Prediction Markets, How to Find “Replicable Smart Money”? With the World Cup underway, prediction markets are experiencing a historic surge in data and activity. However, most ordinary users struggle to achieve consistent profits amidst the volatility. Simply chasing "smart money" signals on social media is often ineffective due to slow manual execution. Even dedicated copy-trading tools can be misleading, as high total profits don't guarantee a strategy is suitable or sustainable for others to follow. Prediction market strategy platform PPP (Prediction Position Platform) argues that not all profitable addresses are fit for copying. Truly replicable "smart money" must demonstrate stable, long-term profitability across key metrics like win rate, max drawdown, and strategy consistency. PPP aims to solve this by building a system that structures complex on-chain data into actionable strategies for users. It employs a dual AI-modeling and manual-review process to analyze addresses based on performance, risk, capital allocation, and more, filtering out偶然性盈利 to identify statistically reliable strategies. The platform categorizes these strategies into two main products: a "Strategy Square" featuring long-term, vetted strategies with strict criteria like a six-month minimum track record, and a "Trading Leaderboard" highlighting shorter-term, high-performing opportunities from the past 30 days. Both are presented with clear style descriptions (e.g., "high implied win rate, high volatility"). Currently accessible via a Telegram Bot, PPP offers features like one-click trading, address copying, and an AI address analysis tool. It uses a subscription model and a non-custodial wallet. A trial run by the author yielded significant short-term gains, though subsequent drawdowns highlighted the importance of risk management and adjusting copy parameters per strategy. PPP’s core value lies not just in copy-trading, but in compiling and structuring混沌的交易信号 into replicable strategies, reducing information asymmetry in prediction markets. While it can’t guarantee future profits, it provides a more systematic, higher-probability entry point for users navigating the uncertain but opportunity-rich landscape, especially during events like the World Cup.

Odaily星球日报4m ago

Interview with PPP: How the World Cup Ignited the Prediction Market, and How to Find "Replicable Smart Money"?

Odaily星球日报4m ago

Bitcoin at 59,000 Is Not the Bottom, One Last Drop Needed! Chain Data and Liquidity Analysis: Where is BTC's True Bottom?

Based on analysis by trader Mr. Beggar, Bitcoin's (BTC) recent low of $59k is likely not the final cycle bottom. He argues that while a bottom is near, a final downward movement is still probable to target liquidity below that level, making a deeper low healthier for a sustainable reversal. Mr. Beggar's framework combines on-chain data for long-term cycles and liquidity-based technical analysis for shorter-term trades. His "four deep bear buying models" include Cointime Price (market cost weighted by coin holding time) and AVIV (an enhanced MVRV indicator), which currently suggest prices are nearing cyclical bottom zones. While a PSIP (Percent Supply in Profit) signal has flashed below 50%, it alone is not considered definitive; typically, the first signal is not the final bottom. He presents three potential scenarios for the current market: 1) a direct drop from here, 2) an upward liquidity sweep (stop hunt) of the recent high near $67.3k before declining, and 3) a direct reversal without new lows. He heavily discounts the third scenario due to significant un-swept liquidity in the $59k-$62.3k range, suggesting the market must revisit these levels. Mr. Beggar shares that he used on-chain signals to identify potential cycle tops in late 2024/early 2025 and later established low-leverage BTC-denominated short positions. He emphasizes the importance of risk management and staying within one's expertise ("strike zone"), warning against investing in assets like AI/semiconductor stocks simply because they are rising.

marsbit33m ago

Bitcoin at 59,000 Is Not the Bottom, One Last Drop Needed! Chain Data and Liquidity Analysis: Where is BTC's True Bottom?

marsbit33m ago

From Signal Monitoring to Strategy Copy Trading: How PPP Lowers the Barrier to Trading on Polymarket?

From Signal Monitoring to Strategy Copy Trading: How PPP Lowers the Barrier to Polymarket Trading The surge in trading demand on prediction markets like Polymarket, especially during events like the World Cup, exposes a common challenge for novice users: emotional and impulsive trading due to a lack of stable strategies and reliable signals. Prediction Position Platform (PPP) addresses this by serving as a Telegram-based tool for strategy discovery and automated copy-trading on Polymarket. PPP offers a suite of features through a subscription model. Key functionalities include 24/7 market signal monitoring (tracking smart money movements and rapid probability shifts), an "AI Address Analysis" tool to evaluate trader performance metrics, and specialized sections like a "World Cup Zone" for quick access to related markets. Its core value lies in two curated lists: the "Strategy Square," which identifies addresses suitable for long-term tracking based on comprehensive metrics like returns, win rate, and drawdowns, and the "Trading Leaderboard," highlighting recently outperforming addresses for short-term opportunities. Users can manually analyze any address or set up automated copy-trading with customizable parameters like investment amount and stop-loss. After initiating copy-trades, users can manage all positions from a unified dashboard, adjusting parameters or stopping follows as needed, and review historical performance data. Crucially, PPP employs a non-custodial wallet model, meaning user funds remain in their own self-custodied wallets, enhancing security and trust. In summary, PPP aims to reduce the learning curve and trial-and-error cost for Polymarket users by aggregating signals, curating and analyzing profitable traders, and facilitating automated, yet manageable, copy-trading execution.

Odaily星球日报33m ago

From Signal Monitoring to Strategy Copy Trading: How PPP Lowers the Barrier to Trading on Polymarket?

Odaily星球日报33m ago

From the White-Haired Stock God to the Billion-Dollar Fund Titan: The Smart People Shorting NVIDIA Are Getting Rich Using the Same Framework

From "white-haired stock god" to billionaire fund manager, those profiting from shorting NVIDIA share a common framework. The article analyzes the critical bottlenecks in the AI hardware supply chain, which have become key investment focal points. The core argument is that the real constraint on the AI boom isn't software or algorithms, but fundamental physical infrastructure. The piece dissects nine major bottlenecks, organized around the lifecycle of an AI accelerator circuit board. *Before the Board*: The pre-manufacturing stage faces constraints in EDA tools, new materials (like GaN, SiC, InP) replacing silicon, and the critical, non-renewable supply of helium for semiconductor fabrication. *On the Board*: The primary bottlenecks are High-Bandwidth Memory (HBM), essential for unleashing GPU power, and advanced packaging (e.g., CoWoS), required to integrate components. Both are in severe shortage. *Between Boards*: Chip-to-chip communication is hitting limits with copper, pushing photonics and optical interconnects (CPO) as the next-gen solution, with NVIDIA heavily investing in this area. *Around the Board*: Power delivery requires new materials (GaN/SiC) for efficient voltage conversion from 48V to sub-1V. High-density AI racks (120kW+) are forcing a shift from air to liquid cooling as the standard. *Beyond the Board*: The ultimate bottleneck is electricity. AI data centers consume power equivalent to mid-sized cities, and grid expansion lags far behind demand, causing project delays and a scramble for power contracts. Prominent investors like Leopold and "white-haired stock god" are heavily betting on these infrastructure bottlenecks. Leopold's fund, for instance, holds no NVIDIA stock but uses massive put options to short the semiconductor sector while going long on power and physical infrastructure. His thesis is that while chip competition may eventually erode margins, the scarcity of foundational elements like electricity is more persistent. The framework's validity is tied to the supply-demand gap. Major new capacity in HBM and photonics is scheduled for 2027-2028, but demand continues to outpace it. Experts like Intel's CEO suggest no relief before 2028. However, the article warns of a potential reversal around 2028-2029 if AI capex slows and new capacity floods the market, turning scarcity into oversupply. Until then, the imbalance persists.

链捕手1h ago

From the White-Haired Stock God to the Billion-Dollar Fund Titan: The Smart People Shorting NVIDIA Are Getting Rich Using the Same Framework

链捕手1h ago

Trading

Spot
Futures
活动图片