Kraken Exposes North Korean Hacker Posing as Job Candidate in Bold Infiltration Attempt
By: beincrypto|2025/05/02 20:00:04
0
Share
Kraken, a prominent cryptocurrency exchange, has uncovered a sophisticated infiltration attempt by a North Korean hacker posing as a job candidate. The security and recruitment teams advanced the candidate through the hiring process. The aim was to study their strategies and gather crucial insights. How a North Korean Hacker Tried to Infiltrate KrakenKraken detailed the incident in a recent blog post on May 1. The hacker applied for an engineering role at the exchange, initially appearing as a legitimate candidate, allegedly named Steven Smith. However, several red flags emerged during the hiring process. “What started as a routine hiring process for an engineering role quickly turned into an intelligence gathering operation, as our teams carefully advanced the candidate through our hiring process to learn more about their tactics at every stage of the process,” Kraken noted.The candidate used a different name during the interview and kept switching voices, suggesting coaching. They applied using an email linked to North Korean hackers. Moreover, the Open-Source Intelligence gathering (OSINT) investigation uncovered the candidate’s involvement in a network of fake identities.“This meant that our team had uncovered a hacking operation where one individual had established multiple identities to apply for roles in the crypto space and beyond. Several of the names had previously been hired by multiple companies, as our team identified work-related email addresses linked to them. One identity in this network was also a known foreign agent on the sanctions list,” the blog read.Additionally, technical inconsistencies in their setup, like using remote, colocated Mac desktops accessed via a VPN and altered IDs, pointed to an infiltration attempt. This information confirmed that the candidate was likely a state-sponsored hacker.In a final interview with the candidate, Kraken’s Chief Security Officer, Nick Percoco, and some team members confirmed the company’s suspicions. The candidate’s failure to verify their location or answer questions about their city and citizenship revealed them as an impostor.“Their job is to start employment to steal intellectual property, steal money from those companies, take home a paycheck, and do it in a widespread way,” Percoco told CBS about the hackers.FinCEN Proposes Ban on Huione Group Over North Korean Ties Meanwhile, in another development, the US Financial Crimes Enforcement Network (FinCEN) has proposed banning Cambodia-based Huione Group from the US financial system. The department identified Huione as a key facilitator for North Korean hacker groups, including those involved in cyber heists and “pig butchering” cryptocurrency scams.“Huione Group has established itself as the marketplace of choice for malicious cyber actors like the DPRK and criminal syndicates, who have stolen billions of dollars from everyday Americans,” Secretary of the Treasury Scott Bessent said.FinCEN accused the group of laundering over $4 billion in illicit funds between August 2021 and January 2025. According to the department, Huione’s network, including Huione Pay, Huione Crypto, and Haowang Guarantee, is a preferred marketplace for cryptocurrency criminals, offering services such as payment processing and an illicit online marketplace.“Today’s proposed action will sever Huione Group’s access to correspondent banking, degrading these groups’ ability to launder their ill-gotten gains. Treasury remains committed to disrupting any attempt by malicious cyber actors to secure revenue from or for their criminal schemes,” Bessent added.These incidents highlighted a pattern of North Korean cyberattacks on the cryptocurrency sector. In 2024, hackers stole over $659 million from crypto firms. According to a joint statement from the United States, Japan, and the Republic of Korea, North Korean hackers targeted the industry using tactics like social engineering and malware (e.g., TraderTraitor, AppleJeus). Additionally, North Korean IT workers were identified as insider threats to private sector companies.Previously, BeInCrypto reports have highlighted the notorious Lazarus Group, a North Korean state-sponsored hacking collective’s involvement in Bybit and Upbit thefts. Moreover, hacker groups from the country were also behind the Radiant Capital hack and the DMM Bitcoin exploit.In fact, recently, on-chain investigator ZachXBT uncovered significant North Korean involvement in decentralized finance (DeFi) protocols, with some of them relying on nearly 100% of their monthly volume/fees from the Democratic People’s Republic of Korea (DPRK).The post Kraken Exposes North Korean Hacker Posing as Job Candidate in Bold Infiltration Attempt appeared first on BeInCrypto.
You may also like

On-chain finance: On-chain IPOs and on-chain ICOs, a new frontier in the trillion-dollar market
The United States uses stablecoins to export the dollar, uses on-chain IPOs/ICOs to export assets, and uses OnFi to export financial rules.

Rented Belief: How Much of the Bitcoin ETF Fund Flow is Real Money
Looking at it week by week, the ETF capital flow is mainly driven by a hidden arbitrage trade rather than belief.

The two giants are racing in "credit": loan balances of 9.9 billion vs 14.6 billion USD, Brazil has become the main battlefield
When we see the domestic credit market growing slowly, with major lending platforms and consumer finance companies tightening their strategies and cautiously controlling their volumes; in stark contrast, the overseas credit sector is迎来 a period of rapid expansion.

A company that was on the verge of bankruptcy has just surpassed Bitcoin in market value
In this wave of AI, capital is clearly more inclined to pay a premium for segments that have real orders, visible supply bottlenecks, and quantifiable profits, which also puts the Crypto AI narrative under more direct scrutiny regarding the certainty of value realization.

B.AI partners with MiniMax to launch a limited-time free experience of M3, enabling zero-threshold implementation of Agentic productivity through full-stack infrastructure
B.AI and MiniMax launch a limited-time free offer for M3, allowing access to top-tier large model core computing power with no threshold.

The second half of the computing power battle: Intel CEO Pat Gelsinger reveals how AI is reshaping the global semiconductor supply chain
Intel CEO Pat Gelsinger's latest discussion: The AI computing power battle has gone beyond the single-point competition of GPUs; the ultimate trump card is to comprehensively restructure the semiconductor supply chain and solve the systemic bottlenecks in advanced manufacturing.

WEEX Live mode: Monitor 20 trading pairs at once and trade like a pro
WEEX Live mode: Multi-screen desktop layout for 20 pairs, TradingView charts, one-click layout, and smart guides. Trade like a pro now.

Morning Report | Secret Network loses $4.67 million due to cross-chain vulnerability; Michael Saylor releases Bitcoin Tracker information again, may disclose increased holdings data next week
Overview of Important Market Events on June 21

Kalshi's biggest competitor is not Polymarket
The competitive logic of the prediction market has changed.

WEEX Makes Affiliate Access Easier on the Web and in the App
WEEX now provides a smoother way to access affiliate-related pages on the web and in the app. Users can find the Affiliate entry more easily and go to the right page based on their login and affiliate status.

Customize Your Spot Trading Page: Drag Modules and Move the Order Panel Where You Want It
Set up your WEEX Spot trading page around the way you trade. Drag supported modules, show or hide key panels, move the order panel to the left or right, and use “Reset layout” at any time to return to the default setup.

Perp DEX: The Next Generation Exchange "War"
This "war" has just begun.

10 Counterintuitive Insights on Latin American Payments
10 conclusions about payments that contradict mainstream beliefs: crypto cards rely on high-net-worth individuals rather than retail, QR codes are replacing cards, stablecoin profits are competing to go to zero, and Latin American regulation is actually 5 years ahead of the United States.

The AI gamble of mining companies: Valuations enter a phase of differentiation, and it's hard to turn the tide
This gamble of transforming into AI is testing the financial strength and execution capability of mining companies.

A letter from Alliance to entrepreneurs: Written on the occasion of Cursor selling for 60 billion dollars
Great companies are forged before they become obvious.

Stablecoins Finally Find Real Returns: On-Chain Reinsurance Re Explained | Interview with Re Founder Karan Saroya
This on-chain reinsurance platform absorbs stablecoins from DeFi, uses them as collateral to underwrite for American insurance companies, collects premiums, and returns the profits to on-chain depositors.

The impossible triangle is simply a pseudo problem
A long time ago, the cryptocurrency industry found its true purpose. But ironically, the path it built for this purpose excluded almost everyone who would actually use it.

Will MicroStrategy fall into a death spiral? What will the macro trend be in the second half of the year?
The cryptocurrency industry may gradually shift from the hype of native altcoins to real asset tokenization, on-chain machine economy, and a more mature industrialization phase.
On-chain finance: On-chain IPOs and on-chain ICOs, a new frontier in the trillion-dollar market
The United States uses stablecoins to export the dollar, uses on-chain IPOs/ICOs to export assets, and uses OnFi to export financial rules.
Rented Belief: How Much of the Bitcoin ETF Fund Flow is Real Money
Looking at it week by week, the ETF capital flow is mainly driven by a hidden arbitrage trade rather than belief.
The two giants are racing in "credit": loan balances of 9.9 billion vs 14.6 billion USD, Brazil has become the main battlefield
When we see the domestic credit market growing slowly, with major lending platforms and consumer finance companies tightening their strategies and cautiously controlling their volumes; in stark contrast, the overseas credit sector is迎来 a period of rapid expansion.
A company that was on the verge of bankruptcy has just surpassed Bitcoin in market value
In this wave of AI, capital is clearly more inclined to pay a premium for segments that have real orders, visible supply bottlenecks, and quantifiable profits, which also puts the Crypto AI narrative under more direct scrutiny regarding the certainty of value realization.
B.AI partners with MiniMax to launch a limited-time free experience of M3, enabling zero-threshold implementation of Agentic productivity through full-stack infrastructure
B.AI and MiniMax launch a limited-time free offer for M3, allowing access to top-tier large model core computing power with no threshold.
The second half of the computing power battle: Intel CEO Pat Gelsinger reveals how AI is reshaping the global semiconductor supply chain
Intel CEO Pat Gelsinger's latest discussion: The AI computing power battle has gone beyond the single-point competition of GPUs; the ultimate trump card is to comprehensively restructure the semiconductor supply chain and solve the systemic bottlenecks in advanced manufacturing.
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com



