Thursday, April 17, 2025
HomecryptocurrencyNorth Korean Hackers Stolen $2.2 Billion from Crypto Platforms in 2024

North Korean Hackers Stolen $2.2 Billion from Crypto Platforms in 2024

Published on

SIEM as a Service

Follow Us on Google News

North Korean hackers are estimated to have stolen a staggering $2.2 billion in 2024, up 21% from 2023.

With advanced tactics and increasing sophistication, the Democratic People’s Republic of Korea (DPRK) has positioned itself as a dominant force in crypto theft, targeting both decentralized finance (DeFi) platforms and centralized exchanges to fund its state-sponsored programs.

The year 2024 marked the fifth time in the past decade that crypto theft exceeded $1 billion annually, highlighting the escalating exploitation of the digital asset sector.

- Advertisement - Google News

The number of hacking incidents surged to 303, up from 282 in 2023. While the first half of the year saw an unprecedented $1.58 billion stolen—an 84% increase compared to the same period in 2023—the pace slowed in the latter half, coinciding with a geopolitical shift involving newfound collaboration between Russia and North Korea.

DPRK’s Increasingly Aggressive Cyber Campaign

North Korea’s hacking groups, including the infamous Lazarus Group, accounted for $1.34 billion of the stolen funds in 2024, a sharp increase of 102.88% from 2023.

These state-sponsored hackers were linked to 47 incidents, representing 61% of the year’s total stolen value. These exploits ranged from massive centralized exchange hacks to smaller, highly targeted strikes.

One of the year’s largest incidents involved the Japanese exchange DMM Bitcoin, which suffered a $305 million loss in May due to vulnerabilities in its security infrastructure.

The stolen funds were funneled through mixing services and bridging protocols, complicating efforts to trace and recover the assets.

While DeFi platforms were the primary targets in early 2024, centralized services became the hackers’ focus by mid-year, with attacks on exchanges like WazirX and DMM Bitcoin demonstrating the vulnerabilities of private key management.

Private key compromises accounted for 43.8% of crypto theft this year, underscoring the importance of robust security measures.

The timing of North Korea’s exploits raises questions about geopolitical factors. Following a summit between Vladimir Putin and Kim Jong Un in June, North Korea’s hacking activity seemingly decreased by 53.73%, while non-DPRK-related crypto theft rose slightly.

Experts speculate that Pyongyang may have redirected resources toward its military collaboration with Russia, including supplying weapons for the ongoing conflict in Ukraine.

The unprecedented scale of theft in 2024 has reignited calls for enhanced security protocols within the crypto industry.

Predictive technologies, such as machine learning tools developed by Hexagate and Chainalysis, are becoming vital in detecting and preventing attacks before they occur.

However, closing security gaps will require collaboration between regulators, law enforcement, and private companies to combat increasingly sophisticated hackers.

Investigate Real-World Malicious Links, Malware & Phishing Attacks With ANY.RUN – Try for Free

Divya
Divya
Divya is a Senior Journalist at GBhackers covering Cyber Attacks, Threats, Breaches, Vulnerabilities and other happenings in the cyber world.

Latest articles

Ransomware Attacks Surge 126%, Targeting Consumer Goods and Services Sector

The cybersecurity landscape witnessed a dramatic escalation in ransomware attacks, marking a concerning trend...

CrazyHunter Hacker Group Exploits Open-Source GitHub Tools to Target Organizations

A relatively new ransomware outfit known as CrazyHunter has emerged as a significant threat,...

Threat Actors Leverage Cascading Shadows Attack Chain to Evade Detection and Hinder Analysis

A sophisticated multi-layered phishing campaign was uncovered, employing a complex attack chain known as...

Microsoft Vulnerabilities Reach Record High with Over 1,300 Reported in 2024

The 12th Edition of the Microsoft Vulnerabilities Report has revealed a significant surge in...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Ransomware Attacks Surge 126%, Targeting Consumer Goods and Services Sector

The cybersecurity landscape witnessed a dramatic escalation in ransomware attacks, marking a concerning trend...

CrazyHunter Hacker Group Exploits Open-Source GitHub Tools to Target Organizations

A relatively new ransomware outfit known as CrazyHunter has emerged as a significant threat,...

Threat Actors Leverage Cascading Shadows Attack Chain to Evade Detection and Hinder Analysis

A sophisticated multi-layered phishing campaign was uncovered, employing a complex attack chain known as...