The post Bitrefill blames North Korea-linked Lazarus hacker group for compromising 18,500 purchase records appeared on BitcoinEthereumNews.com. Cryptocurrency paymentsThe post Bitrefill blames North Korea-linked Lazarus hacker group for compromising 18,500 purchase records appeared on BitcoinEthereumNews.com. Cryptocurrency payments

Bitrefill blames North Korea-linked Lazarus hacker group for compromising 18,500 purchase records

2026/03/18 15:30
Okuma süresi: 3 dk
Bu içerikle ilgili geri bildirim veya endişeleriniz için lütfen crypto.news@mexc.com üzerinden bizimle iletişime geçin.

Cryptocurrency payments and gift card platform Bitrefill has blamed the North Korea-linked hacking group Lazarus for a cyberattack on March 1, 2026, that compromised parts of its infrastructure and cryptocurrency wallets.

The attackers gained access to production keys, transferred funds from hot wallets, and exposed 18,500 purchase records containing emails, payment addresses, and IP addresses.

Approximately 1,000 records included encrypted usernames. Affected users were notified. Operations have resumed, with the company announcing to cover losses from operational capital. The incident underscores the importance of vigilance regarding crypto and on-chain security.

The modus operandi included malware, on-chain tracing and reused IP and email addresses and was similar to previous attacks attributed to North Korea’s Lazarus Group, also known as Bluenoroff, the company said in a detailed report on X.

The Lazarus Group has previously targeted crypto projects including Ronin Network, Harmony’s Horizon Bridge, WazirX, and Atomic Wallet.

How the attack unfolded

It all began with with a compromised employee laptop, which exposed legacy credentials and allowed attackers to access Bitrefill’s broader infrastructure, including parts of its database and cryptocurrency wallets.

The breach quickly became apparent when the company noticed unusual purchasing patterns among certain suppliers, signaling that attackers were exploiting its gift card inventory and supply chains. The firm also noted that attackers were draining some hot wallets and moving funds to their own addresses, following which, the system was taken offline to contain the damage.

“Bitrefill operates a global e-commerce business with dozens of suppliers, thousands of products, and multiple payment methods across many countries. Safely switching all these things off and bringing them back online is not trivial,” the company said in a statement.

Since the incident, Bitrefill has been working with security researchers, incident response teams, on-chain analysts, and law enforcement to investigate the breach.

Customer data impact

Hackers accessed a small set of purchase records, approximately 18,500, containing

Bitrefill said there is no evidence that customer data was a primary target. Its logs indicate that attackers ran a limited number of queries aimed at cryptocurrency holdings and gift card inventory rather than extracting the entire database.

The platform stores minimal personal data and does not require mandatory KYC. A small subset of purchase records, approximately 18,500, was accessed, containing information such as email addresses, crypto payment addresses, and metadata including IP addresses. About 1,000 records contained encrypted names for specific products; the company is treating this data as potentially compromised and has notified affected customers directly by email.

At present, Bitrefill does not believe customers need to take any additional action, though it advises caution regarding unexpected communications related to Bitrefill or cryptocurrency.

Steps to strengthen security

In response to the breach, Bitrefill said it has already strengthened its cybersecurity practices and is working to draw lessons from the incident.

The company outlined several measures, including conducting comprehensive penetration tests with external experts, tightening internal access controls, enhancing logging and monitoring for faster threat detection, and refining incident response procedures and automated shutdown protocols.

Looking forward

Bitrefill acknowledged that this was its first major attack in more than a decade of operation but stressed that it remains well-funded and profitable, capable of absorbing operational losses. Most systems, including payments, stock, and accounts, are back online, with sales volumes returning to normal.

“Getting hit by a sophisticated attack sucks (a lot),” the company said. “But we survived. We will continue to do our best to continue deserving our customers’ trust.”

Source: https://www.coindesk.com/markets/2026/03/18/bitrefill-accuses-north-korea-linked-lazarus-hacker-group-for-compromising-18-500-purchase-records

Piyasa Fırsatı
Ucan fix life in1day Logosu
Ucan fix life in1day Fiyatı(1)
$0.0003489
$0.0003489$0.0003489
+14.50%
USD
Ucan fix life in1day (1) Canlı Fiyat Grafiği
Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen crypto.news@mexc.com ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

Sobering warning issued about America's 'ticking time-bombs' Trump may soon detonate

Sobering warning issued about America's 'ticking time-bombs' Trump may soon detonate

An economics expert issued a sobering warning on Thursday about the impact President Donald Trump's war in Iran could have at home. Catherine Rampell, economics
Paylaş
Rawstory2026/03/20 09:03
Trump tells Israel not to repeat strikes on Iranian energy as crisis deepens

Trump tells Israel not to repeat strikes on Iranian energy as crisis deepens

QatarEnergy's liquefied natural gas production facilities, amid the US-Israeli conflict with Iran, in Ras Laffan Industrial City, Qatar March 2, 2026.
Paylaş
Rappler2026/03/20 09:08
BlockDAG’s $0.0013 Entry Draws Market Attention Ahead of Deadline

BlockDAG’s $0.0013 Entry Draws Market Attention Ahead of Deadline

The post BlockDAG’s $0.0013 Entry Draws Market Attention Ahead of Deadline appeared on BitcoinEthereumNews.com. Crypto News 20 September 2025 | 00:00 Discover why BlockDAG’s $0.0013 entry is making headlines with nearly $410M raised, 26.3B coins sold, and the limited-time entry closing on Oct 1st. Occasionally, a single figure captures attention across crypto. This time, it isn’t a projection or a chart setup; it is a presale entry point. The $0.0013 price lock from BlockDAG (BDAG) has become more than a presale detail. It represents a marker of timing, reliability, and measurable progress. With more than 26.3 billion coins sold and nearly $410 million already secured, this price is not a teaser. It is a structured offer that continues to attract participants in large numbers. Once October 1st passes, the $0.0013 entry will close, and its significance could be remembered as one of those rare early-stage milestones. The $0.0013 Window Reflects More Than a Temporary Offer Many presales are defined by uncertainty, often shifting timelines and unclear goals. By fixing its presale price at $0.0013 until October 1st, BlockDAG has created a point of clarity in a crowded market. It is less about a discount and more about a defined statement: the project is setting a clear cut-off for early access. This approach has shown results. Over 26.3 billion BDAG coins have already been purchased. That momentum stems from demonstrated progress, not just speculation. A live Testnet, close to 20,000 miners distributed, and more than 3 million daily users of the X1 mobile miner all point to activity happening now rather than deferred promises. On top of this, the return profile is notable. The current batch price is $0.03, while the $0.0013 entry remains open for a limited time. That gap means an ROI of about 2,900% compared with batch 1. Even so, the project is keeping the entry level steady until October 1st, providing…
Paylaş
BitcoinEthereumNews2025/09/20 06:25