The post Zerion hit by AI-enabled social engineering as North Korean hackers target human layer appeared on BitcoinEthereumNews.com. North Korean hackers are increasinglyThe post Zerion hit by AI-enabled social engineering as North Korean hackers target human layer appeared on BitcoinEthereumNews.com. North Korean hackers are increasingly

Zerion hit by AI-enabled social engineering as North Korean hackers target human layer

2026/04/15 15:58
3분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 [email protected]으로 연락주시기 바랍니다

North Korean hackers are increasingly bypassing high-tech security barriers by weaponizing artificial intelligence to manipulate the employees behind the code.

Summary

  • Zerion confirmed a $100,000 security breach after North Korean hackers used artificial intelligence to impersonate trusted contacts and compromise hot wallet credentials.
  • The Security Alliance identified a cluster of 164 malicious domains used in low-pressure campaigns to infiltrate crypto firms through platforms like Slack and LinkedIn.

Zerion, a popular crypto wallet provider, confirmed on Wednesday that a long-term social engineering campaign linked to the DPRK successfully breached its systems last week. 

While the hackers walked away with roughly $100,000 from the company’s hot wallets, the breach serves as a stark warning about the rising sophistication of “AI-enabled” identity theft within the digital asset industry.

The company reported that the attackers managed to hijack active login sessions and credentials belonging to team members, eventually gaining access to private keys. 

Despite the intrusion, Zerion’s internal post-mortem verified that user funds and core infrastructure remained untouched, though the web app was briefly taken offline as a preventative measure. 

This incident follows a much larger $280 million exploit of Drift Protocol earlier this month, which security analysts described as a “structured intelligence operation” rather than a simple technical bug.

The Security Alliance (SEAL) recently highlighted the scale of this threat after tracking and blocking 164 domains linked to the North Korean group UNC1069. 

Their findings suggest the group specializes in “multiweek, low-pressure social engineering campaigns” conducted across platforms like Slack, Telegram, and LinkedIn. 

By impersonating trusted colleagues or established brands, these actors slowly erode the targets’ defenses before deploying malicious payloads.

“UNC1069’s social engineering methodology is defined by patience, precision, and the deliberate weaponization of existing trust relationships,” SEAL noted in its investigation.

This methodical approach is now being bolstered by generative tools. Google’s Mandiant unit previously identified the use of AI to create deepfake images and videos, allowing hackers to pose as legitimate participants in Zoom meetings. 

The goal is to move past traditional phishing and create a digital environment where a victim has no reason to doubt the person on the other side of the screen.

MetaMask developer Taylor Monahan recently pointed out that this isn’t a new phenomenon, but rather the perfection of a decades-long strategy. 

North Korean IT workers have been quietly integrating themselves into decentralized finance projects and crypto firms for at least seven years, often operating as legitimate contributors.

The blockchain security firm Elliptic explained in a recent analysis that the risk profile for the industry has fundamentally changed. 

“The evolution of the DPRK’s social engineering techniques, combined with the increasing availability of AI to refine and perfect these methods, means the threat extends well beyond exchanges,” the firm stated. 

Individual developers and any staffer with access to internal infrastructure are now viewed as primary entry points for state-sponsored theft, the researcher added.

Source: https://crypto.news/zerion-hit-by-ai-enabled-social-engineering-as-north-korean-hackers-target-human-layer/

시장 기회
Solayer 로고
Solayer 가격(LAYER)
$0,08203
$0,08203$0,08203
+%0,49
USD
Solayer (LAYER) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, [email protected]으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!