logo

Chinese, N. Korean Threat Groups Build on Asia-Pacific Success

ID: 9a2e63b8-91f2-53af-8bea-f407d9e78584

STIX ID: report--9a2e63b8-91f2-53af-8bea-f407d9e78584

Feed Name: Dark Reading

Threat Score
85/100

Date Published: 2026-06-11

Date Updated: 2026-06-15

Author: Robert Lemos

...
...

Cybercriminal and nation-state-linked groups—primarily associated with North Korea and China—are actively targeting financial firms and cryptocurrency assets across the Asia-Pacific region, using evolving social-engineering techniques (including recruiter impersonation and “pig butchering”), wallet and exchange thefts, and sophisticated money-laundering networks leveraging Chinese-language services, DeFi, mixers, and bridges. The report highlights large aggregated thefts (DPRK-linked groups stole at least $2.02 billion in 2025; notable incidents include a $1.5 billion ByBit theft), thousands of wallet thefts, ongoing data-leak-and-ransom operations, and growing regional cooperation that has enabled seizures and restraints of hundreds of millions in cryptocurrency.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.