The post Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal appeared on BitcoinEthereumNews.com. The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group. The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B. The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics. South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group. The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets. Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar The ‘Merger Chaos’ Theory Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company.  On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered.  Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition. Forensic Signature: The Admin Key The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.” Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has… The post Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal appeared on BitcoinEthereumNews.com. The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group. The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B. The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics. South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group. The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets. Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar The ‘Merger Chaos’ Theory Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company.  On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered.  Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition. Forensic Signature: The Admin Key The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.” Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has…

Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal

  • The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group.
  • The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B.
  • The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics.

South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group.

The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets.

Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar

The ‘Merger Chaos’ Theory

Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company. 

On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered. 

Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap

Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition.

Forensic Signature: The Admin Key

The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.”

Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has a documented history of targeting digital-asset platforms.

Upbit Identifies Unauthorized Solana Outflow

Dunamu, the operator of Upbit, confirmed that 44.5 billion won in Solana-affiliated digital assets were moved without authorization. However, the exchange stated that it plans to cover the full amount using its own reserves.

Upbit separately reported an outflow of 54 billion won (nearly $38 million) across multiple Solana ecosystem tokens, including Double Zero (2Z), Official Trump (TRUMP), Bonk, and Jupiter (JUP). The exchange attributed the transfers to a wallet compromise.

Following the detection of the outflow, Upbit suspended deposits and withdrawals to conduct a review of its wallets and security procedures. The exchange stated that it identified the scale of the unauthorized withdrawals immediately and would ensure no losses are passed on to customers.

Geopolitical Context: The Cash Crunch 

Analysts note that Pyongyang is facing a critical shortage of foreign currency. With international sanctions tightening, the regime has historically turned to crypto theft to fund strategic objectives. 

The complexity of the Upbit operation, moving funds through a high-throughput chain like Solana rather than Bitcoin, suggests an evolution in their money laundering capabilities, designed to outpace tracing tools before the stolen assets can be frozen.

Disclaimer: The information presented in this article is for informational and educational purposes only. The article does not constitute financial advice or advice of any kind. Coin Edition is not responsible for any losses incurred as a result of the utilization of content, products, or services mentioned. Readers are advised to exercise caution before taking any action related to the company.

Source: https://coinedition.com/upbit-hack-lazarus-group-naver-dunamu-acquisition-solana/

Market Opportunity
Nowchain Logo
Nowchain Price(NOW)
$0.00088
$0.00088$0.00088
-4.34%
USD
Nowchain (NOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Ethereum Price Prediction: ETH Targets $10,000 In 2026 But Layer Brett Could Reach $1 From $0.0058

Ethereum Price Prediction: ETH Targets $10,000 In 2026 But Layer Brett Could Reach $1 From $0.0058

Ethereum price predictions are turning heads, with analysts suggesting ETH could climb to $10,000 by 2026 as institutional demand and network upgrades drive growth. While Ethereum remains a blue-chip asset, investors looking for sharper multiples are eyeing Layer Brett (LBRETT). Currently in presale at just $0.0058, the Ethereum Layer 2 meme coin is drawing huge [...] The post Ethereum Price Prediction: ETH Targets $10,000 In 2026 But Layer Brett Could Reach $1 From $0.0058 appeared first on Blockonomi.
Share
Blockonomi2025/09/17 23:45
‘Primal’ Creator Genndy Tartakovsky Talks Zombified Season 3

‘Primal’ Creator Genndy Tartakovsky Talks Zombified Season 3

The post ‘Primal’ Creator Genndy Tartakovsky Talks Zombified Season 3 appeared on BitcoinEthereumNews.com. A zombified Spear appears in Season 3 of Adult Swim’s
Share
BitcoinEthereumNews2026/01/15 06:04
‘Dr. Quinn’ Co-Stars Jane Seymour And Joe Lando Reuniting In New Season Of ‘Harry Wild’

‘Dr. Quinn’ Co-Stars Jane Seymour And Joe Lando Reuniting In New Season Of ‘Harry Wild’

The post ‘Dr. Quinn’ Co-Stars Jane Seymour And Joe Lando Reuniting In New Season Of ‘Harry Wild’ appeared on BitcoinEthereumNews.com. Joe Lando and Janey Seymour in “Harry Wild.” Courtesy: AMC / Acorn Jane Seymour is getting her favorite frontier friend to join her in her latest series. In the mid-90s Seymour spent six seasons as Dr. Micheala Quinn on Dr. Quinn, Medicine Woman. During the run of the series, Dr. Quinn met, married, and started a family with local frontiersman Byron Sully, also known simply as Sully, played by Joe Lando. Now, the duo will once again be partnering up, but this time to solve crimes in Seymour’s latest show, Harry Wild. In the series, literature professor Harriet ‘Harry’ Wild found herself at crossroads, having difficulty adjusting to retirement. After a stint staying with her police detective son, Charlie, Harry begins to investigate crimes herself, now finding an unlikely new sleuthing partner, a teen who had mugged Harry. In the upcoming fifth season, now in production in Dublin, Ireland, Lando will join the cast, playing Pierce Kennedy, the new State Pathologist, who becomes a charming and handsome natural ally for Harry. Promotional portrait of British actress Jane Seymour (born Joyce Penelope Wilhelmina Frankenberg), as Dr. Michaela ‘Mike’ Quinn, and American actor Joe Lando, as Byron Sully, as they pose with horses for the made-for-tv movie ‘Dr. Quinn, Medicine Woman: the Movie,’ 1999. (Photo by Spike Nannarello/CBS Photo Archive/Getty Images) Getty Images Emmy-Award Winner Seymour also serves as executive producer on the series. The new season finds Harry and Fergus delving into the worlds of whiskey-making, theatre and musical-tattoos, chasing a gang of middle-aged lady burglars and working to deal with a murder close to home. Debuting in 2026, Harry Wild Season 5 will consist of six episodes. Ahead of the new season, a 2-part Harry Wild Special will debut exclusively on Acorn TV on Monday, November 24th. Source: https://www.forbes.com/sites/anneeaston/2025/09/17/dr-quinn-co-stars-jane-seymour-and-joe-lando-reuniting-in-new-season-of-harry-wild/
Share
BitcoinEthereumNews2025/09/18 07:05