Bitrefill Cyberattack Exposes 18,500 Records, Lazarus Group Suspected

TheNewsCryptoPublicado em 2026-03-18Última atualização em 2026-03-18

Resumo

Bitrefill, a cryptocurrency payment platform, was targeted by a cyberattack attributed to the North Korea-linked Lazarus Group on March 1, 2026. The breach, which began with a compromised employee laptop, exposed approximately 18,500 customer purchase records, including email addresses, crypto payment addresses, and IP data. The attackers primarily focused on moving funds from hot wallets and exploiting the gift card system, rather than stealing full customer data. Bitrefill quickly detected the unusual activity, shut down systems to prevent further damage, and has committed to covering all losses with its own funds. The company has since enhanced security measures, including stronger access controls and improved monitoring, and confirmed that most services are back to normal. This was Bitrefill's first major security breach in over a decade.

Bitrefill, a cryptocurrency payment platform, reported that it was the target of a cyberattack on March 1, 2026, and it attributed the attack to the Lazarus Group, a hacker collective associated with North Korea. The attack exposed about 18,500 customer purchase records and impacted several aspects of Bitrefill’s systems, including its cryptocurrency wallets.

How this Breach Happened

According to the firm, the breach began with the compromised employee’s laptop. In this case, the hackers were able to enter Bitrefill’s infrastructure and access production keys by moving funds from the hot wallet to exploit its gift card system. The company noticed unusual activity and quickly shut down systems to stop further damage.

The attacker accessed about 18,500 purchase records, which include email addresses, crypto payment addresses, and IP address data. The firm says that the hackers did not try to steal full customer data, and their main focus was on the crypto funds and the gift cards.

Bitrefill confirmed that it will cover all losses using its own funds. The company said it remains financially stable and that most services, including payments and accounts, are now back to normal.

Bitrefill has taken steps to improve security by providing stronger access control, better monitoring systems, external security testing, and faster response systems for future attacks. Additionally, it collaborates with blockchain analysts and security experts. According to Bitrefill, the hack was the company’s first significant security breach in more than ten years. Despite the attack’s damage, the business swiftly responded and resumed operations.

Highlighted Crypto News:

SEC and CFTC Introduce Crypto Classification Framework

TagsBitrefillCryptocurrency

Perguntas relacionadas

QWhat company was targeted in the cyberattack and who is suspected to be behind it?

ABitrefill, a cryptocurrency payment platform, was targeted, and the attack is attributed to the Lazarus Group, a hacker collective associated with North Korea.

QHow many customer records were exposed in the Bitrefill breach?

AApproximately 18,500 customer purchase records were exposed.

QWhat type of information was accessed in the compromised purchase records?

AThe accessed information includes email addresses, crypto payment addresses, and IP address data.

QHow did the attackers initially gain access to Bitrefill's systems?

AThe breach began with a compromised employee's laptop, which allowed the hackers to enter the infrastructure and access production keys.

QWhat steps has Bitrefill taken to improve its security following the attack?

ABitrefill has implemented stronger access control, better monitoring systems, external security testing, and faster response systems. It is also collaborating with blockchain analysts and security experts.

Leituras Relacionadas

The Demise of the Trillion-HKD ETF Myth: SK Hynix Plummets, Hong Kong Switches from 'Double Leverage' to 'Flexible Leverage', South Korea Restricts Leveraged ETF Investments

South Korea's AI-driven bull market has taken a sharp downturn, severely impacting SK Hynix's stock and prompting regulatory tightening in both Hong Kong and South Korea on single-stock leveraged products. The CSOP SK Hynix Daily Leveraged (2x) ETF, once the world's largest single-stock leveraged ETF with over HKD 130 billion in assets, saw its value plummet by over 80% as SK Hynix shares fell nearly 46% from their June peak, erasing more than HKD 100 billion. In response, Hong Kong's Securities and Futures Commission (SFC) revised its regulatory framework. Starting August 3rd, fixed 2x leverage for single-stock leveraged and inverse products will shift to a dynamic "flexible leverage" mechanism, where daily leverage can vary up to a maximum of 2x. This aims to balance market development with investor protection but has sparked debate about changes to the products' core features and potential reduced appeal for risk-seeking investors. Simultaneously, South Korean authorities announced plans to further restrict single-stock leveraged ETFs following two consecutive days of market circuit breakers. Proposed measures include capping individual investors' allocations to such products at 20% of their total financial investment assets, increasing trading costs, and enhancing suitability requirements. The Finance Minister publicly apologized, acknowledging insufficient initial risk assessment. Analysts note that while the long-term fundamentals for South Korean semiconductor firms like SK Hynix remain solid, short-term market volatility is heightened due to concentrated leveraged bets and shifting global risk sentiment. The regulatory moves in both markets signal a clear shift from encouraging innovation towards prioritizing risk control, reminding investors of the amplified risks inherent in leveraged products.

marsbitHá 1m

The Demise of the Trillion-HKD ETF Myth: SK Hynix Plummets, Hong Kong Switches from 'Double Leverage' to 'Flexible Leverage', South Korea Restricts Leveraged ETF Investments

marsbitHá 1m

After the Privatization of the Internet, Silicon Valley Begins Privatizing Human Civilization

"The Privatization of Human Civilization" The article critiques how AI companies like Anthropic are systematically acquiring and digitizing millions of books—sometimes by destroying physical copies—to build proprietary training datasets for models like Claude. While a lawsuit resulted in a settlement, the author argues the deeper issue transcends copyright: it is about the privatization and centralized control of human knowledge and civilization. This process coincides with a powerful Silicon Valley ideology, exemplified by Marc Andreessen's "Techno-Optimist Manifesto" and movements like e/acc (Effective Accelerationism). This worldview frames technological growth and speed as inherently moral, portraying caution, regulation, and public dissent as obstacles to progress. It often envisions intelligence itself, rather than human well-being, as the ultimate goal, potentially sidelining present human concerns. Figures like Peter Thiel and Curtis Yarvin express skepticism towards democratic processes as too slow, suggesting more centralized, founder-led governance is efficient. This logic extends to AI, where a small team within a company defines the model's "constitution"—its rules, values, and definitions of truth and safety—effectively governing how millions understand the world. Thus, the scanned books symbolize a new form of control. Knowledge isn't erased but is ingested into private, opaque systems. The original, decentralized, and contestable nature of books and public knowledge is replaced by a curated, company-controlled output. The public's access to their own cultural heritage becomes mediated by corporate AI, which remembers civilization only in the form its creators dictate. This is not book-burning but a subtler, potentially more complete privatization of human memory and understanding.

marsbitHá 10m

After the Privatization of the Internet, Silicon Valley Begins Privatizing Human Civilization

marsbitHá 10m

Net Profit Soars 1299.9%, Samsung's Q2 Reports the Most Profitable Quarter in History

Samsung Electronics posts record-breaking Q2 2026 results, driven primarily by explosive AI-driven demand for its semiconductor business. Revenue surged 130% year-on-year (YoY) to 171.5 trillion won, while operating profit skyrocketed 1,813.8% to 89.49 trillion won. Net profit reached 71.62 trillion won, a 1,299.9% increase YoY. The Device Solutions (DS) division, which includes memory chips, was the core engine, contributing over 99% of total operating profit. Sales for the DS unit hit a record 127.5 trillion won, with memory revenue reaching 120.8 trillion won, fueled by AI server demand for products like HBM. The company has begun mass production of next-generation HBM4. In contrast, the Device eXperience (DX) division, covering mobile phones and consumer electronics, reported an operating loss of 0.8 trillion won due to rising component costs, highlighting a significant performance split within the company. Other segments showed improvement: Samsung Display's profit rose to 0.7 trillion won, and Harman's profit recovered to 0.4 trillion won. Financially, Samsung's position strengthened dramatically, with cash and equivalents reaching 190 trillion won and operating cash flow hitting a record 105.1 trillion won. The company also engaged in significant share buybacks and dividend payments. Looking ahead, Samsung expects sustained strong demand from AI infrastructure, though acknowledges softer demand in some consumer segments.

marsbitHá 36m

Net Profit Soars 1299.9%, Samsung's Q2 Reports the Most Profitable Quarter in History

marsbitHá 36m

Trading

Spot
活动图片