The post Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal appeared on BitcoinEthereumNews.com. The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group. The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B. The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics. South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group. The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets. Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar The ‘Merger Chaos’ Theory Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company.  On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered.  Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition. Forensic Signature: The Admin Key The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.” Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has… The post Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal appeared on BitcoinEthereumNews.com. The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group. The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B. The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics. South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group. The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets. Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar The ‘Merger Chaos’ Theory Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company.  On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered.  Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition. Forensic Signature: The Admin Key The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.” Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has…

Lazarus Group Suspected in $37M Upbit Hack Amid Naver Deal

  • The Suspect: South Korea links the $30.6M Upbit hack to North Korea’s Lazarus Group.
  • The Timing: The breach hit 24 hours after Naver agreed to buy Upbit’s parent for $10B.
  • The Method: Hackers likely compromised admin keys, mirroring Lazarus’s 2019 tactics.

South Korean authorities have launched a high-level probe into the security breach at Upbit, with initial forensic markers pointing to North Korea’s state-sponsored Lazarus Group.

The investigation has refined the scope of the damage, confirming a loss of 44.5 billion won ($30.6 million), revised down from initial estimates of $37 million following a precise valuation of the stolen Solana assets.

Related: Upbit Confirms $37M Hack: Exchange Says It Will Cover Every Lost Dollar

The ‘Merger Chaos’ Theory

Investigators are now focused on a critical temporal anomaly: the attack commenced less than 24 hours after tech giant Naver Corp. announced a massive $10.3 billion share-swap deal to acquire Dunamu, the exchange’s parent company. 

On Wednesday, Naver Financial confirmed plans to acquire Dunamu as a wholly owned subsidiary. And by Thursday morning, Upbit’s internal alarms triggered. 

Related: Naver to Acquire Upbit Operator Dunamu in $10.3 Billion Stock Swap

Attackers siphoned approximately $30.6 million in Solana (SOL) and ecosystem tokens including Bonk and Jupiter, exploiting the operational friction of the corporate transition.

Forensic Signature: The Admin Key

The attack vector bears the distinct signature of the Lazarus Group’s 2019 offensive against Upbit (which resulted in a $50 million ETH loss). Rather than a complex smart contract exploit, this appears to be an “Administrator Compromise.”

Authorities reported that the latest incident showed similarities to the 2019 theft involving administrator-level compromise. According to one official, it is possible the attackers accessed or impersonated internal administrator accounts rather than breaching server infrastructure directly. This technique aligns with previous hacking patterns attributed to Lazarus, which has a documented history of targeting digital-asset platforms.

Upbit Identifies Unauthorized Solana Outflow

Dunamu, the operator of Upbit, confirmed that 44.5 billion won in Solana-affiliated digital assets were moved without authorization. However, the exchange stated that it plans to cover the full amount using its own reserves.

Upbit separately reported an outflow of 54 billion won (nearly $38 million) across multiple Solana ecosystem tokens, including Double Zero (2Z), Official Trump (TRUMP), Bonk, and Jupiter (JUP). The exchange attributed the transfers to a wallet compromise.

Following the detection of the outflow, Upbit suspended deposits and withdrawals to conduct a review of its wallets and security procedures. The exchange stated that it identified the scale of the unauthorized withdrawals immediately and would ensure no losses are passed on to customers.

Geopolitical Context: The Cash Crunch 

Analysts note that Pyongyang is facing a critical shortage of foreign currency. With international sanctions tightening, the regime has historically turned to crypto theft to fund strategic objectives. 

The complexity of the Upbit operation, moving funds through a high-throughput chain like Solana rather than Bitcoin, suggests an evolution in their money laundering capabilities, designed to outpace tracing tools before the stolen assets can be frozen.

Disclaimer: The information presented in this article is for informational and educational purposes only. The article does not constitute financial advice or advice of any kind. Coin Edition is not responsible for any losses incurred as a result of the utilization of content, products, or services mentioned. Readers are advised to exercise caution before taking any action related to the company.

Source: https://coinedition.com/upbit-hack-lazarus-group-naver-dunamu-acquisition-solana/

Market Opportunity
Nowchain Logo
Nowchain Price(NOW)
$0,0009
$0,0009$0,0009
-2,17%
USD
Nowchain (NOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Is Doge Losing Steam As Traders Choose Pepeto For The Best Crypto Investment?

Is Doge Losing Steam As Traders Choose Pepeto For The Best Crypto Investment?

The post Is Doge Losing Steam As Traders Choose Pepeto For The Best Crypto Investment? appeared on BitcoinEthereumNews.com. Crypto News 17 September 2025 | 17:39 Is dogecoin really fading? As traders hunt the best crypto to buy now and weigh 2025 picks, Dogecoin (DOGE) still owns the meme coin spotlight, yet upside looks capped, today’s Dogecoin price prediction says as much. Attention is shifting to projects that blend culture with real on-chain tools. Buyers searching “best crypto to buy now” want shipped products, audits, and transparent tokenomics. That frames the true matchup: dogecoin vs. Pepeto. Enter Pepeto (PEPETO), an Ethereum-based memecoin with working rails: PepetoSwap, a zero-fee DEX, plus Pepeto Bridge for smooth cross-chain moves. By fusing story with tools people can use now, and speaking directly to crypto presale 2025 demand, Pepeto puts utility, clarity, and distribution in front. In a market where legacy meme coin leaders risk drifting on sentiment, Pepeto’s execution gives it a real seat in the “best crypto to buy now” debate. First, a quick look at why dogecoin may be losing altitude. Dogecoin Price Prediction: Is Doge Really Fading? Remember when dogecoin made crypto feel simple? In 2013, DOGE turned a meme into money and a loose forum into a movement. A decade on, the nonstop momentum has cooled; the backdrop is different, and the market is far more selective. With DOGE circling ~$0.268, the tape reads bearish-to-neutral for the next few weeks: hold the $0.26 shelf on daily closes and expect choppy range-trading toward $0.29–$0.30 where rallies keep stalling; lose $0.26 decisively and momentum often bleeds into $0.245 with risk of a deeper probe toward $0.22–$0.21; reclaim $0.30 on a clean daily close and the downside bias is likely neutralized, opening room for a squeeze into the low-$0.30s. Source: CoinMarketcap / TradingView Beyond the dogecoin price prediction, DOGE still centers on payments and lacks native smart contracts; ZK-proof verification is proposed,…
Share
BitcoinEthereumNews2025/09/18 00:14
Fed Decides On Interest Rates Today—Here’s What To Watch For

Fed Decides On Interest Rates Today—Here’s What To Watch For

The post Fed Decides On Interest Rates Today—Here’s What To Watch For appeared on BitcoinEthereumNews.com. Topline The Federal Reserve on Wednesday will conclude a two-day policymaking meeting and release a decision on whether to lower interest rates—following months of pressure and criticism from President Donald Trump—and potentially signal whether additional cuts are on the way. President Donald Trump has urged the central bank to “CUT INTEREST RATES, NOW, AND BIGGER” than they might plan to. Getty Images Key Facts The central bank is poised to cut interest rates by at least a quarter-point, down from the 4.25% to 4.5% range where they have been held since December to between 4% and 4.25%, as Wall Street has placed 100% odds of a rate cut, according to CME’s FedWatch, with higher odds (94%) on a quarter-point cut than a half-point (6%) reduction. Fed governors Christopher Waller and Michelle Bowman, both Trump appointees, voted in July for a quarter-point reduction to rates, and they may dissent again in favor of a large cut alongside Stephen Miran, Trump’s Council of Economic Advisers’ chair, who was sworn in at the meeting’s start on Tuesday. It’s unclear whether other policymakers, including Kansas City Fed President Jeffrey Schmid and St. Louis Fed President Alberto Musalem, will favor larger cuts or opt for no reduction. Fed Chair Jerome Powell said in his Jackson Hole, Wyoming, address last month the central bank would likely consider a looser monetary policy, noting the “shifting balance of risks” on the U.S. economy “may warrant adjusting our policy stance.” David Mericle, an economist for Goldman Sachs, wrote in a note the “key question” for the Fed’s meeting is whether policymakers signal “this is likely the first in a series of consecutive cuts” as the central bank is anticipated to “acknowledge the softening in the labor market,” though they may not “nod to an October cut.” Mericle said he…
Share
BitcoinEthereumNews2025/09/18 00:23
Stronger capital, bigger loans: Africa’s banking outlook for 2026

Stronger capital, bigger loans: Africa’s banking outlook for 2026

African banks spent 2025 consolidating, shoring up capital, tightening risk controls, and investing in digital infrastructure, following years of macroeconomic
Share
Techcabal2026/01/14 23:06