{"id":375428,"date":"2023-02-14T08:44:35","date_gmt":"2023-02-14T13:44:35","guid":{"rendered":"https:\/\/insidebitcoins.com\/?p=375428"},"modified":"2023-06-21T08:31:51","modified_gmt":"2023-06-21T08:31:51","slug":"north-korean-hackers-switch-tactics-and-tools-to-get-your-holdings","status":"publish","type":"post","link":"https:\/\/insidebitcoins.com\/news\/north-korean-hackers-switch-tactics-and-tools-to-get-your-holdings","title":{"rendered":"North Korean Hackers Switch Tactics And Tools To Get Your Holdings."},"content":{"rendered":"

A crypto trading firm called Elliptic Enterprises Ltd has stated that there is the latest information about hackers switching to new tactics to steal virtual currency.<\/p>\n

Sources have reasons to believe that these hackers are associated with the North Korean Government.  <\/span>Their use of new tools to launder digital assets could wipe out investors’ crypto holdings.<\/p>\n

The Lazarus Group: Cyber Criminal Syndicate<\/b><\/h2>\n

These North Korean hackers are sometimes known as the Lazarus Group. According to officials at Elliptic Enterprises Ltd, hackers are using a new laundering tool named ‘Sinbad’. There are speculations on behalf of the firm that ‘Sinbad’ has a probable connection with their previous crypto mixer called ‘Blender’. In May 2022, Blender was sanctioned by the US Treasury. Sinbad is highly likely to be a revamp of Blender.<\/p>\n

The Lazarus Group is a prolific cryptocurrency hacker. They were successful in pulling off some of the massive crypto heists in the last few years. The Lazarus hackers were accused of stealing from an online gaming group called ‘Axis Infinity’. The estimated worth of this launder was more than six hundred million US dollars. Lazarus hackers also hacked from a cryptocurrency bridge called ‘Horizon’. The hackers stole around a hundred million US dollars from Horizon. In 2022, they stole cryptocurrency with an estimated worth of nearly 2 billion US dollars. By doing so, the group broke a number of its own previous records for theft in the year.<\/p>\n

The Lazarus Group was also the main culprit behind intensifying the trends of DeFi protocol hacks in the year 2022.<\/p>\n

Experts believe that Lazarus is using this stolen cyber crime money to fund North Korea’s nuclear weapon programs.<\/p>\n

What is Crypto Mixers?<\/b><\/h2>\n

There is software available that allows users to send cryptocurrency anonymously. Thus, helping to obfuscate the sources and destinations of cryptocurrency holdings. This software is called crypto mixers, cryptocurrency blenders, and also crypto tumblers.<\/p>\n

These are completely legal tools. They help in protecting users’ privacy while dealing with crypto assets. However, there are some evil parties (hackers) who use them to launder stolen digital goods or make other unauthorized payments. Crypto hackers use these mixers to exchange crypto holdings for fiat currency.<\/p>\n

The mixers blend or mix the user’s crypto holding with various sources. Thus, allowing the users to withdraw the balance of their assets later and with completely new and difficult-to-track down addresses.<\/p>\n

Heist money passed through Sinbad<\/b><\/h2>\n

Sinbad is a new custodial Bitcoin mixer. It was launched in October 2022. Around the same time, it also began advertising its services to the public on a Bitcoin talk forum. Even though this tool is comparatively smaller in size than its counterparts, it is being used extensively to launder the money gained from the heists done by the Lazarus Group.<\/p>\n

To date, millions of dollars gained through North Korean-linked hacks have been laundered through Sinbad. The $100 million heist from the horizon was also passed through this new mixer- Sinbad. Elliptic believes that they are continuing to use Sinbad to show their confidence and trust in this new mixer.<\/p>\n

We’<\/span>ll look at it in more detail below.<\/p>\n

Why Sinbad?<\/b><\/h2>\n

The North Korean hackers were previously using a mixer called Blender to support their cybercrime activities and money laundering of stolen digital currency.<\/p>\n

On March 2022, the Lazarus Group, a North Korea-sponsored hacking group, carried out a massive virtual heist from the aforementioned ‘Axis Infinity’. Then, they used the crypto mixer Blender to process over $20 million of these illegally stolen proceeds.<\/p>\n

Thus, last year, the US Treasury imposed its first-ever virtual sanction on the currency mixer Blender. Backing the sanction, the Under Secretary of the Treasury said that it is crucial to stop this mixer since it poses a serious danger to the health of the US economy and the country’s national security. It was also mentioned that state-sponsored cyber crimes and money laundering will also meet their fate and won’t go unnoticed.<\/p>\n

Hackers had also used Tornado Cash previously in a similar capacity. However, Tornado Cash was also sanctioned in August 2022. Soon after its designation, the hackers started using various mixers to make the tracking of digital assets more complicated. Their move was also motivated by the fact that overall transaction volume for Tornado Cash fell tremendously, thus rendering it less effective for use.<\/p>\n

Since then, hackers have adapted and moved on to Sinbad.<\/p>\n

Similarities Between Sinbad and Blender<\/b><\/h2>\n

Crypto experts now believe that the new tool Sinbad is nothing but a mixer of the Blender. The renaming was done to avoid future complications from the government. Let us see in detail why experts think that there is a connection between Sinbad and Blender.<\/p>\n