North Korean Hackers Use Fake Video Calls to Target Wealthy Crypto Investors
Summary
- North Korean hacking group BlueNoroff has been trying to hack the digital-asset wallets of high-net-worth individuals through fake video meetings.
- BlueNoroff checks whether MetaMask and Solana (SOL)-based wallets are installed, gathers information, and then selectively distributes malware.
- Huntress and Arctic Wolf said the attack has affected industry participants and investors in more than 20 countries and urged extra caution.
Forecast Trend Report by Period



North Korean hackers have been trying to breach digital-asset wallets owned by wealthy individuals by luring them into fake video meetings.
Cryptopolitan reported on July 27 that cybersecurity firm Huntress said in a recent report that BlueNoroff, a North Korean hacking group, has been using fake Zoom and Microsoft Teams meetings to bait victims while checking for browser-based digital-asset wallets.
Once a victim enters a fake video-meeting page, BlueNoroff checks whether MetaMask, an Ethereum-based wallet, or Solana-based wallets are installed. It then relays information on the detected wallets to the attackers.
Based on the data it gathers, BlueNoroff identifies high-net-worth targets and selectively distributes malware. Victims are shown a message saying their microphone is not working and are prompted to install fake software. Downloading the file infects their device with malware.
BlueNoroff is also said to have used hacked Telegram, LinkedIn and other social media accounts belonging to people close to the victim to invite them to fake video meetings.
Huntress said BlueNoroff has persistently targeted digital-asset industry participants and investors using the tactic, urging extra caution. Another security firm, Arctic Wolf, estimated that the campaign has so far resulted in more than 100 victims across more than 20 countries.
Uk Jin
wook9629@bloomingbit.ioH3LLO, World! I am Uk Jin.