Ethereum Foundation Identifies 100 State-Sponsored Hackers, Including DPRK Actors

iconKuCoinFlash
Share
Share IconShare IconShare IconShare IconShare IconShare IconCopy
AI summary iconSummary

expand icon
Blockbeats reports that the Ethereum Foundation identified approximately 100 state-sponsored hackers, including actors linked to DPRK, targeting blockchain security across Web3 projects. Over six months, the ETH Rangers initiative warned 53 blockchain projects, uncovering infiltration attempts via fake identities within EVM (Ethereum Virtual Machine) development teams. More than $5.8 million in funds were frozen, along with 785 reported vulnerabilities. DPRK hackers used remote workers to carry out account takeovers. The Ethereum Foundation has called for a decentralized defense to counter ongoing threats.

BlockBeats report, April 17: The Ethereum Foundation recently released a summary report on the ETH Rangers security initiative, disclosing that during the six-month security funding program, researchers identified approximately 100 suspected state-sponsored cyber actors, including infiltrators from North Korea (DPRK), who have been active across multiple Web3 projects.


The report shows that the investigation was advanced through projects such as the "Ketman Project," during which researchers issued warnings to approximately 53 blockchain projects, revealing that these individuals infiltrated development teams under false identities and participated in fund transfers and technical roles. Meanwhile, some of the related funds, amounting to hundreds of thousands of dollars, have been frozen.


The security team has also incorporated this intelligence into its threat analysis framework for the Lazarus Group and disclosed it at security conferences such as DEF CON, demonstrating that state-sponsored cyberattacks continue to infiltrate cryptocurrency infrastructure.


In terms of overall outcomes, the program has collectively frozen or recovered over $5.8 million in funds, reported or documented more than 785 vulnerabilities, and addressed 36 security incidents, indicating that the security threats facing the current Ethereum ecosystem have escalated from isolated vulnerability exploits to systemic risks involving state-level actors.


In addition, the report notes that North Korea-linked hackers have infiltrated projects through methods such as "remote IT workers," employing various attack vectors including account takeovers, infiltration of freelance platforms, and fund transfers, making them a key focus of industry defense efforts.


The Ethereum Foundation emphasizes that the security of decentralized networks requires a "decentralized defense," and it will continue to support security research, threat intelligence, and talent development to address escalating state-sponsored cyber threats.

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.