Bitrefill Cyberattack Exposes 18,500 Records, Lazarus Group Suspected

TheNewsCrypto2026-03-18 tarihinde yayınlandı2026-03-18 tarihinde güncellendi

Özet

Bitrefill, a cryptocurrency payment platform, was targeted by a cyberattack attributed to the North Korea-linked Lazarus Group on March 1, 2026. The breach, which began with a compromised employee laptop, exposed approximately 18,500 customer purchase records, including email addresses, crypto payment addresses, and IP data. The attackers primarily focused on moving funds from hot wallets and exploiting the gift card system, rather than stealing full customer data. Bitrefill quickly detected the unusual activity, shut down systems to prevent further damage, and has committed to covering all losses with its own funds. The company has since enhanced security measures, including stronger access controls and improved monitoring, and confirmed that most services are back to normal. This was Bitrefill's first major security breach in over a decade.

Bitrefill, a cryptocurrency payment platform, reported that it was the target of a cyberattack on March 1, 2026, and it attributed the attack to the Lazarus Group, a hacker collective associated with North Korea. The attack exposed about 18,500 customer purchase records and impacted several aspects of Bitrefill’s systems, including its cryptocurrency wallets.

How this Breach Happened

According to the firm, the breach began with the compromised employee’s laptop. In this case, the hackers were able to enter Bitrefill’s infrastructure and access production keys by moving funds from the hot wallet to exploit its gift card system. The company noticed unusual activity and quickly shut down systems to stop further damage.

The attacker accessed about 18,500 purchase records, which include email addresses, crypto payment addresses, and IP address data. The firm says that the hackers did not try to steal full customer data, and their main focus was on the crypto funds and the gift cards.

Bitrefill confirmed that it will cover all losses using its own funds. The company said it remains financially stable and that most services, including payments and accounts, are now back to normal.

Bitrefill has taken steps to improve security by providing stronger access control, better monitoring systems, external security testing, and faster response systems for future attacks. Additionally, it collaborates with blockchain analysts and security experts. According to Bitrefill, the hack was the company’s first significant security breach in more than ten years. Despite the attack’s damage, the business swiftly responded and resumed operations.

Highlighted Crypto News:

SEC and CFTC Introduce Crypto Classification Framework

TagsBitrefillCryptocurrency

İlgili Sorular

QWhat company was targeted in the cyberattack and who is suspected to be behind it?

ABitrefill, a cryptocurrency payment platform, was targeted, and the attack is attributed to the Lazarus Group, a hacker collective associated with North Korea.

QHow many customer records were exposed in the Bitrefill breach?

AApproximately 18,500 customer purchase records were exposed.

QWhat type of information was accessed in the compromised purchase records?

AThe accessed information includes email addresses, crypto payment addresses, and IP address data.

QHow did the attackers initially gain access to Bitrefill's systems?

AThe breach began with a compromised employee's laptop, which allowed the hackers to enter the infrastructure and access production keys.

QWhat steps has Bitrefill taken to improve its security following the attack?

ABitrefill has implemented stronger access control, better monitoring systems, external security testing, and faster response systems. It is also collaborating with blockchain analysts and security experts.

İlgili Okumalar

Token Doesn't Need a Chinese Name, But the Business Behind It Does

Recent discussions in China have intensified around finding an appropriate Chinese translation for the technical term "Token," driven by its growing economic and industrial significance. Previously an obscure technical term within AI circles, Token has now entered mainstream discourse due to its role as a billing unit in cloud services, a revenue metric for AI companies, and a key indicator in national AI industry statistics. Proposed translations include "智元" (suggested by AI media, implying "intelligence unit"), "模元" (proposed by academics, leaning toward "model unit"), and "符元" (a more neutral, technical term meaning "symbol unit"). The debate is not merely linguistic but reflects broader commercial and narrative control over the AI industry. Different translations align with different stakeholders’ interests: "智元" benefits those emphasizing intelligent computation, while "模元" reinforces the role of model developers. The term already had an academic translation—“词元” (ciyuan)—since 2021, but it gained little attention until Tokens became a valuable economic unit. As Token consumption in China surges—reaching 180 trillion per day—the naming contest underscores deeper issues of market influence, branding, and “coinage” rights in the emerging AI-driven economy. Ultimately, those who produce Tokens may hold the power to define them, regardless of the chosen name.

marsbit58 dk önce

Token Doesn't Need a Chinese Name, But the Business Behind It Does

marsbit58 dk önce

TGE in a Bear Market: Is Backpack the Starting Point or the End?

Backpack, a prominent Solana ecosystem wallet and centralized exchange, conducted its TGE (Token Generation Event) for the BP token on March 23. The total supply is set at 1 billion tokens, with 25% (250 million) unlocked at TGE—24% for points holders and 1% for Mad Lads NFT holders. No team or investor tokens are in the initial circulation. The tokenomics are designed to prevent insider dumping: founders, employees, and investors receive no direct token allocation. Instead, the team’s share is held in a company treasury, locked until at least one year after a future IPO. Tokens are released based on key milestones like regulatory progress and product expansion. Users could claim tokens by completing TGE verification on Backpack platform. The project implemented strict anti-Sybil measures, including KYC and manual confirmation requirements, reclaiming over 50 million "fake points." Backpack introduced a staking-to-equity mechanism: users staking BP for at least one year can convert tokens into company shares, with 20% of equity allocated to stakers. Market predictions from Polymarket suggest an FDV between $100-200 million at launch, aligning with Backpack’s previous $120 million valuation. The project has raised $17 million in Series A funding and is reportedly negotiating a new round at a $1 billion pre-money valuation. Amid a bear market, Backpack’s TGE is a significant test of market confidence and project sustainability.

比推1 saat önce

TGE in a Bear Market: Is Backpack the Starting Point or the End?

比推1 saat önce

İşlemler

Spot
Futures
活动图片