Crypto Firms Face Daily ‘Fake Zoom’ Attacks Linked To North Korea, Experts Say

bitcoinistPublicado em 2025-12-16Última atualização em 2025-12-16

North Korean-linked hackers are using fake Zoom calls to drain crypto wallets in what security researchers say has become a near-daily threat to the cryptocurrency community. According to multiple security reports, the campaign has already netted roughly $300 million in stolen funds and shows few signs of slowing.

Fake Zoom Meetings Used To Drain Wallets

According to Security Alliance (SEAL) and other researchers, attackers first contact targets through messaging apps such as Telegram. They then invite victims to a video call that looks legitimate.

During the call, the impostors claim there is a problem with sound or video and offer a “fix” — a file or a link that appears to be an official update. When the victim runs the file, malware installs and begins stealing credentials, browser data, and crypto keys.

Several attacks are reported every day, and many follow the same pattern. Researchers say these staged calls let attackers bypass normal caution because people tend to trust someone they see on camera.

NimDoor, Other Malware Strains Target macOS And Wallets

Based on reports, one strain tied to these schemes is NimDoor, a macOS backdoor that can harvest keychain items, browser-stored passwords, and messaging data.

Security teams link NimDoor and related tools to BlueNoroff, a group connected to the Lazarus Group network. BlueNoroff has a long record of attacking crypto firms and exchanges.

Once the malware is in place, wallets have been emptied within minutes. Victims often discover the theft only after seeing outgoing transactions on the blockchain.

Total crypto market cap currently at $2.93 trillion. Chart: TradingView

Deepfakes And Calendar Invites Make Scams More Convincing

Researchers warn that attackers are not simply using fake names. They are also deploying AI-assisted deepfake video and voice tools to impersonate executives or known contacts.

Attackers sometimes send calendar invites that look like genuine meeting requests from platforms such as Calendly, directing targets to attacker-controlled Zoom links.

The level of social engineering makes the calls seem urgent and official, which reduces the time victims take to question what they are being asked to install.

Attackers Target Individuals And Small Firms Alike

Reports have disclosed that victims include individual traders, startup employees, and small teams at crypto companies. Losses are concentrated but widespread, with estimates around $300,000,000.

Some victims have lost funds tied to browser wallets and hot wallets; others had recovery phrases captured and used to drain accounts.

Security teams urge quick action when a suspicious update is offered during a remote session: They warn not to run it, verify separately, and treat unsolicited meeting fixes as high risk.

Featured image from Unsplash, chart from TradingView

Leituras Relacionadas

The Waged Worker Driven to Poverty by AI Subscriptions

"AI Membership: The Hidden Cost Pushing Workers Toward 'Poverty'" The widespread corporate push for AI adoption is creating a hidden financial burden for employees. Companies, from giants like Alibaba to small firms, are mandating AI use, often tying token consumption to KPIs, but frequently refuse to cover the costs. Workers are forced to pay for subscriptions out of pocket to stay competitive and avoid being replaced. Front-end developer Long Shen spends up to 2000 RMB monthly on tools like Cursor and ChatGPT Plus, seeing it as a necessary 3% salary investment to handle 90% of his coding tasks. While it boosted his performance and led to promotions, he now faces idle time at work, pretending to be busy. Designer Peng Peng navigates strict company firewalls by using personal devices and accounts for AI image generation tools like Midjourney, spending hundreds monthly without reimbursement, while her boss demands faster, more numerous revisions. The pressure creates workplace anxiety and suspicion. Programmer Li Huahua, after a friend's experience of raised KPIs following AI success, fears being branded a "traitor" for using it yet worries about falling behind if she doesn't. The dynamic allows management to demand results without understanding the tools or covering expenses, treating employees like AI "agents." While some, like entrepreneur Jin Tu, find high value in paid AI, building entire systems and winning competitions, for most, it's a trap. Free tools like Kimi and Doubao are introducing fees, closing off alternatives. The initial efficiency gains individual advantage, but as AI becomes ubiquitous, the personal edge disappears, workloads increase, and a cycle of dependency begins. Workers like Long Shen realize they cannot maintain AI-generated code without AI, making stopping harder than continuing to pay. The tool promising liberation is instead becoming a compulsory, costly chain in the modern workplace.

marsbitHá 32m

The Waged Worker Driven to Poverty by AI Subscriptions

marsbitHá 32m

SK Hynix's Trillion-Won Empire: The Successors

"SK Hynix's Trillion-Won Empire and Its Heirs" explores the unconventional succession narrative within SK Group, South Korea's second-largest conglomerate, following SK Hynix's dramatic market rise. Unlike traditional chaebol scripts prioritizing the eldest son, ownership, and political marriages, Chairman Choi Tae-won's three children from his first marriage are charting distinct paths. The eldest daughter, Choi Yun-jeong, is considered the most visible candidate. With a background in biology, consulting, and a PhD, she holds executive roles at SK Bioscience and SK Inc.'s growth strategy unit, focusing on biopharma and new businesses. Her marriage is to an AI infrastructure entrepreneur, not a traditional chaebol heir. The second daughter, Choi Min-jeong, took a unique route by voluntarily serving as a South Korean naval officer, including a tour in the Gulf of Aden. She later worked on policy and strategy for SK Hynix in Washington D.C. before co-founding an AI-driven healthcare startup in San Francisco. She married a former U.S. Marine Corps officer, connecting the family to U.S. defense and policy networks. The son, Choi In-geun, who has Type 1 diabetes, followed a more classic preparatory path with a physics degree and a stint at SK E&S but left to join McKinsey's Seoul office. He remains publicly silent and holds no SK shares, defying the traditional "crown prince" archetype. Their paths unfold against the backdrop of their parents' high-profile, contentious divorce and a record-setting asset division lawsuit. The article argues that as SK Hynix becomes a geopolitical asset in the AI era, the conventional rules of chaebol inheritance are changing. The heirs are being groomed not simply to take over, but to navigate a complex global landscape defined by AI, biotech, geopolitics, and policy, forging legitimacy through their own expertise and networks rather than birth order alone.

marsbitHá 41m

SK Hynix's Trillion-Won Empire: The Successors

marsbitHá 41m

BitMart Research Institute Weekly Highlights: A Comprehensive Review of Macro Environment, Crude Oil, AI Tech Stocks, and Crypto Market

**Weekly Market Review: Macro, Oil, AI Tech Stocks & Crypto Market** **Macroeconomic & Traditional Finance** The April U.S. Non-Farm Payrolls report of 115K new jobs exceeded expectations, but the data's quality was questioned. Growth was heavily concentrated in healthcare, while other sectors contracted, and manufacturing employment turned negative. A statistical model accounted for a large portion of the gains, conflicting with household survey data showing a loss of 226K jobs. Meanwhile, AI's impact on jobs is emerging, with information sector roles declining, though overall unemployment remains at ~4.3%. Oil prices hovered near $100 per barrel. Global oil buffer inventories have drawn down significantly, supporting prices, but high costs are suppressing demand. China's recent reduction in crude imports acted as a market stabilizer. Geopolitically, the U.S. and Iran are likely to reach a tentative agreement to keep the Strait of Hormuz open and avoid price spikes. For AI tech stocks, short-term prospects are mixed. A potential SpaceX IPO in June could pressure current index heavyweights like Nvidia, while smaller components might benefit. The mid-term focus shifts to Q2 earnings, emphasizing AI's return on investment. Long-term risks include potential election policy shifts and massive IPOs from companies like OpenAI, which could test the sector's sustainability. **Crypto Market & Ecosystem** Crypto markets rose moderately, with BTC climbing from ~$77K to ~$82K, driven by improved risk sentiment. Spot trading volumes remain low, but buying pressure is evident. ETF inflows continued (~$791M last week). However, institutional purchases of BTC and ETH were more modest than expected. The derivatives market shows lingering bearish bets, particularly on alts and ETH. A key trend is the "dual-track" model where projects pursue public listings for traditional funding while also building their own blockchains/tokens to capture crypto liquidity, as seen with Circle's ARC chain. Stablecoins and institutional chains present significant future opportunities. *Disclaimer: This is market analysis, not investment advice.*

marsbitHá 1h

BitMart Research Institute Weekly Highlights: A Comprehensive Review of Macro Environment, Crude Oil, AI Tech Stocks, and Crypto Market

marsbitHá 1h

Trading

Spot
Futuros
活动图片