The post North Korea-Linked Hackers Account for 59% of 2025 Crypto Thefts, Exceeding $2 Billion: Report appeared on BitcoinEthereumNews.com. North Korean hackersThe post North Korea-Linked Hackers Account for 59% of 2025 Crypto Thefts, Exceeding $2 Billion: Report appeared on BitcoinEthereumNews.com. North Korean hackers

North Korea-Linked Hackers Account for 59% of 2025 Crypto Thefts, Exceeding $2 Billion: Report

  • Record-Breaking Theft: DPRK actors accounted for $2.02 billion stolen, up 51% from last year.

  • Overall crypto losses reached $3.4 billion in 2025, with North Korea dominating 59% of incidents.

  • Evolving Tactics: Attacks dropped by 74%, but individual hauls like the $1.5 billion Bybit hack show increased sophistication, per Chainalysis data.

North Korean cryptocurrency theft surges to $2.02B in 2025, claiming 59% of all hacks. Discover evolving DPRK tactics and industry defenses in this Chainalysis-backed analysis. Stay secure—learn how to spot threats today.

What is the Extent of North Korean Cryptocurrency Theft in 2025?

North Korean cryptocurrency theft has reached unprecedented levels in 2025, with hackers from the Democratic People’s Republic of Korea (DPRK) stealing $2.02 billion in digital assets so far this year. According to a report from blockchain analytics firm Chainalysis, this figure accounts for 59% of the total $3.4 billion in cryptocurrency thefts recorded globally in 2025, marking a 51% increase from the previous year’s totals. The surge highlights the DPRK’s growing reliance on crypto heists to fund state activities amid international sanctions.

How Do North Korean Hackers Evolve Their Attack Strategies?

North Korean hackers have shifted toward fewer but far more impactful operations, as detailed in the Chainalysis report. For instance, the February 2025 attack on Bybit exchange resulted in $1.5 billion stolen, an incident the U.S. Federal Bureau of Investigation (FBI) attributed to DPRK-linked groups. This evolution reduces the number of attacks by 74% compared to prior years while maximizing damage per incident.

Experts note that DPRK actors prioritize high-value targets like centralized exchanges and DeFi protocols. “The cryptocurrency industry must enhance vigilance around these high-value assets,” states the Chainalysis analysis, emphasizing improved detection of DPRK-specific laundering patterns. These patterns include preferences for certain service types and transfer amounts, which help distinguish DPRK activities from other cybercriminals.

Supporting data from Chainalysis reveals a consistent three-wave, 45-day laundering process: initial transfers via Chinese-language services, cross-chain bridging to obscure trails, and heavy use of crypto mixers. This methodology has remained stable over recent years, providing investigators with identifiable on-chain footprints. By focusing on these markers, security teams can better trace and mitigate threats before they escalate.

Frequently Asked Questions

What Percentage of 2025 Crypto Thefts Are Attributed to North Korea?

According to Chainalysis, North Korean hackers are responsible for 59% of all cryptocurrency thefts in 2025, totaling $2.02 billion out of $3.4 billion stolen globally. This dominance underscores the DPRK’s sophisticated cyber operations targeting the crypto sector to bypass sanctions.

How Can Crypto Exchanges Detect North Korean Hacker Infiltration Attempts?

Crypto exchanges like Binance report daily attempts by North Korean actors to gain employment and insider access, often using AI-generated videos and voice changers during interviews. Detection relies on identifying common red flags, such as unusual behavioral patterns, and sharing intelligence via secure channels like Telegram and Signal. Additionally, rigorous code reviews for poisoned NPM packages help prevent supply chain attacks.

Key Takeaways

  • Surge in Efficiency: DPRK thefts rose 51% to $2.02 billion in 2025 with 74% fewer attacks, signaling a strategic pivot to high-impact operations.
  • Laundering Patterns: A distinct 45-day process involving Chinese services, cross-chain bridges, and mixers offers key detection opportunities for blockchain analysts.
  • Industry Response: Exchanges must bolster insider threat detection and code auditing to counter evolving DPRK tactics and prevent future mega-heists.

Conclusion

In 2025, North Korean cryptocurrency theft has redefined cyber risks in the digital asset space, with DPRK hackers securing $2.02 billion—59% of total losses—and demonstrating refined strategies like the Bybit breach. As Chainalysis warns, recognizing these actors’ unique operational rules is crucial for the industry’s defense against state-sponsored threats. Looking ahead, enhanced collaboration and advanced monitoring will be essential to safeguard assets and deter further escalation in 2026.

Source: https://en.coinotag.com/north-korea-linked-hackers-account-for-59-of-2025-crypto-thefts-exceeding-2-billion-report

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Regulation Advances While Volatility Masks the Bigger Picture

Regulation Advances While Volatility Masks the Bigger Picture

The post Regulation Advances While Volatility Masks the Bigger Picture appeared on BitcoinEthereumNews.com. The Crypto Market Feels Shaky — But Here’s What Actually
Share
BitcoinEthereumNews2025/12/20 04:06
U.S. Labor Market Weakness Forecasts Potential Fed Rate Cuts

U.S. Labor Market Weakness Forecasts Potential Fed Rate Cuts

Anxin analyst Chris Yoo signals U.S. labor market strains prompting possible Federal Reserve rate cuts.Read more...
Share
Coinstats2025/12/20 03:48
Top Solana Treasury Firm Forward Industries Unveils $4 Billion Capital Raise To Buy More SOL ⋆ ZyCrypto

Top Solana Treasury Firm Forward Industries Unveils $4 Billion Capital Raise To Buy More SOL ⋆ ZyCrypto

The post Top Solana Treasury Firm Forward Industries Unveils $4 Billion Capital Raise To Buy More SOL ⋆ ZyCrypto appeared on BitcoinEthereumNews.com. Advertisement &nbsp &nbsp Forward Industries, the largest publicly traded Solana treasury company, has filed a $4 billion at-the-market (ATM) equity offering program with the U.S. SEC  to raise more capital for additional SOL accumulation. Forward Strategies Doubles Down On Solana Strategy In a Wednesday press release, Forward Industries revealed that the 4 billion ATM equity offering program will allow the company to issue and sell common stock via Cantor Fitzgerald under a sales agreement dated Sept. 16, 2025. Forward said proceeds will go toward “general corporate purposes,” including the pursuit of its Solana balance sheet and purchases of income-generating assets. The sales of the shares are covered by an automatic shelf registration statement filed with the US Securities and Exchange Commission that is already effective – meaning the shares will be tradable once they’re sold. An automatic shelf registration allows certain publicly listed companies to raise capital with flexibility swiftly.  Kyle Samani, Forward’s chairman, astutely described the ATM offering as “a flexible and efficient mechanism” to raise and deploy capital for the company’s Solana strategy and bolster its balance sheet.  Advertisement &nbsp Though the maximum amount is listed as $4 billion, the firm indicated that sales may or may not occur depending on existing market conditions. “The ATM Program enhances our ability to continue scaling that position, strengthen our balance sheet, and pursue growth initiatives in alignment with our long-term vision,” Samani said. Forward Industries kicked off its Solana treasury strategy on Sept. 8. The Wednesday S-3 form follows Forward’s $1.65 billion private investment in public equity that closed last week, led by crypto heavyweights like Galaxy Digital, Jump Crypto, and Multicoin Capital. The company started deploying that capital this week, announcing it snatched up 6.8 million SOL for approximately $1.58 billion at an average price of $232…
Share
BitcoinEthereumNews2025/09/18 03:42