logo

The North Korean Lazarus Group uses macOS malware toolkit to attack cryptocurrency and fintech companies

By: rootdata|2026/04/22 20:42:02
0
Share
copy

According to CoinDesk, monitoring by CertiK reveals that the Lazarus Group is conducting an attack operation named Mach-O Man targeting executives in the fintech and cryptocurrency industries. This operation utilizes ClickFix social engineering techniques, sending fake online meeting invitations to lure victims into pasting repair commands on their Mac terminals, thereby gaining access to company and financial systems.

CertiK researcher Natalie Newson stated that the Lazarus Group has stolen over $500 million through attacks on Drift and KelpDAO in the past two weeks. Mach-O Man is a modular macOS malware toolkit developed by the Chollima division of the Lazarus Group, capable of automatically deleting itself after use to evade detection.

Additionally, attackers have implemented this attack by hijacking DeFi project domain names and replacing them with fake Cloudflare messages.

-- Price

--

You may also like

What are the noteworthy signals for the cryptocurrency industry after the Wash hearing?

Although this hearing ostensibly focuses on the independence of the Federal Reserve, it is actually a direct confrontation over the boundaries of power between the White House, Congress, and the central bank.

High ETH BTC Price Ratio: What It Means for Traders in 2026

Explore why the eth btc price ratio just hit a 10-week high in April 2026. We analyze the massive ETH ETP inflows and what this historic pivot means for your trading strategy this year. Is Ethereum finally ready to outpace Bitcoin?

What Is the New York Lawsuit Against Coinbase? Is Your Crypto Safe After the April 2026 Case

Wondering why New York sued Coinbase and Gemini in April 2026? Here's what the lawsuit means, whether your crypto funds are safe right now, and what could change for crypto users next.

Finally, Polymarket is teaming up with Kalshi to take a bite out of this cake

The two giants in the prediction market are expected to successively announce the expansion of perpetual contract products in the short term. This not only expands their product and revenue boundaries and supports the continuously rising financing and valuation but also responds to the potential thr...

ENI officially announces the completion of its strategic brand upgrade: advancing from a foundational protocol to a global institutional-level financial new infrastructure

ENI has announced a comprehensive brand upgrade, officially transitioning from a foundational public chain to an "Enterprise Blockchain as a Service (BaaS) platform," dedicated to building a global bridge connecting traditional finance and Web3.

The person who brings Web3 closest to AI

If not liquidated, the AI project he invested in has now reached a valuation of several billion dollars.

Contents

Popular coins

Latest Crypto News

Read more