Bybit’s $1.4B breach.
ID: e788c3df-d7a0-5172-a89a-1611cef4fad1
STIX ID: report--e788c3df-d7a0-5172-a89a-1611cef4fad1
Feed Name: The CyberWire
Silent Push researchers uncovered infrastructure attributed to the Lazarus APT linked to the $1.4B Bybit crypto heist, highlighting the domain bybit-assessment.com registered hours before the attack; the investigation details patterns of test entries, VPN usage, fake job interview scams targeting crypto users, malware deployment tied to North Korean-linked groups (TraderTraitor, Contagious Interview), and impersonation of major crypto platforms such as Coinbase, Binance, and Kraken to lure victims.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
