> 资讯
Skynet DPRK Crypto Threats Report: North Korea-Linked Hackers Stole $6.75 Billion in Crypto Since 20
2026-05-13 资讯 CertiKNEW YORK, May 13, 2026 (GLOBE NEWSWIRE) -- CertiK today released its latest report analyzing North Korea's role in cryptocurrency-related cybercrime, revealing that DPRK-linked threat actors have stolen an estimated $6.75 billion across 263 incidents between 2016 and early 2026. The findings highlight the evolution of state-sponsored cyber operations into a sustained, industrial-scale revenue stream.
The report underscores a structural shift in the threat landscape: fewer attacks, but significantly higher impact, with North Korea consistently responsible for the largest and most sophisticated exploits in the digital asset ecosystem.
A Disproportionate Share of Global Losses
According to the report, the broader crypto ecosystem recorded 656 security incidents in 2025, resulting in $3.4 billion in total losses. Of these, 79 incidents (12%) were attributed to DPRK-linked actors, yet they accounted for $2.06 billion, or approximately 60% of all funds stolen. This imbalance reflects a deliberate strategy focused on high-value targets, rather than volume.
The report also highlights a series of increasingly large exploits, culminating in the $1.5 billion Bybit hack in February 2025, the largest cryptocurrency theft on record. Additional case studies, including the $625 million Ronin Bridge exploit (2022) and the $285 million Drift Protocol attack, illustrate a steady escalation in technical sophistication and financial impact.
The trend has continued into 2026. From January onward, 185 incidents resulted in approximately $1.1 billion in total losses, with $620.9 million (55%) attributed to DPRK actors. A significant portion of this figure stems from the $291 million KelpDAO exploit, further reinforcing the concentration of losses among a small number of high-value attacks.
Human Vulnerabilities, Not Code, Remain the Primary Target
A key finding of the report is that DPRK-linked attacks rarely rely on exploiting smart contract vulnerabilities. Instead, they consistently target human and operational weaknesses.
Social engineering remains the dominant entry point, including fake job offers, impersonation of venture capital firms, and compromised developer environments. In parallel, supply chain attacks have emerged as a defining tactic. The Bybit incident demonstrated that even institutional-grade multisignature wallets can be compromised by targeting trusted third-party infrastructure rather than the underlying code.
Laundering Infrastructure Operates at Industrial Scale
Beyond initial compromise, DPRK-linked actors have developed a highly efficient laundering pipeline. Within one month of the Bybit exploit, 86.29% of stolen ETH had been converted into Bitcoin, using a combination of mixing services, cross-chain bridges, decentralized exchanges, and over-the-counter (OTC) brokers.
This level of coordination points to a mature, systematized process designed to rapidly obfuscate and redistribute stolen assets.
Expanding Threat Surface Through Insider Infiltration
CertiK's report identifies a growing risk from insider threats. DPRK operatives have infiltrated DeFi projects under false identities, securing employment within target organizations. In several documented cases, these individuals have facilitated or enabled attacks from within, providing intelligence or direct access to critical systems.
National Security Implications
The findings reinforce that cryptocurrency theft linked to the DPRK extends beyond financial crime. According to international monitoring bodies and intelligence assessments, proceeds from these operations are used to support North Korea's nuclear and ballistic missile programs.
Full report: https://indd.adobe.com/view/595e40e3-3953-4d4b-aeaa-3e9954d5d844
- 搜索
-
- 05-14比克电池荣登2025中国小圆柱电池出货量排行榜第五 以创新科技赋能智慧生活
- 05-13New Summer Program from Corona Invites the World to Experience “This Is Living”
- 05-13Dryad Launches Gen-4-Pro Silvanet Wildfire Sensor, Setting New Standard in Ultra-Early Fire Detectio
- 05-13浦阳江畔品质人居 诚通·悦江湾现房敬献浦江
- 05-13Takeda Announces FY2025 Full Year Results and FY2026 Outlook, Highlighted by Excellent Pipeline Prog
- 05-13Hytera Advances AI-Powered Critical Communications at Global Partner Summit 2026
- 05-13Telehouse Canada 推进重大基础设施升级,加速赋能 AI 驱动型企业发展
- 05-13GenNx360 Capital Partners完成向VSE Corporation出售Precision Aviation Group的交易,交易总额约20.25亿美元,采用现金和股权方式支付
- 05-13Lenovo实现一周部署生产就绪型代理人工智能,重塑企业工作流程
- 05-13Venture Global宣布与TotalEnergies和Vitol签署液化天然气采购协议