News View Non-AMP

Crypto Scam Exposed! Here’s How Lazarus Uses DeFi Games to Steal Your Money

Published by
Elena R

Lazarus APT, particularly its BlueNoroff subgroup, has become infamous for its high-level cyber attacks on the financial industry, especially targeting cryptocurrency-related businesses. This North Korean-linked hacking group has conducted numerous attacks on major organizations, using advanced malware and exploit techniques to breach defenses.

As the cryptocurrency market continues to soar, so too does the risk of cyberattacks. To understand the full extent of this threat and the tactics employed by these cybercriminals, read on.

Lazarus’ Tools: Manuscrypt, Cutwail, and Turk Power the Campaigns

Since 2013, Lazarus has relied on tools like Manuscrypt, Cutwail, and Turk in over 50 successful campaigns. These powerful tools have helped the group infiltrate targets worldwide, highlighting their technical skill and persistence.

In May 2024, Kaspersky analysts detected the Manuscrypt malware within a Russian system connected to a deceptive website, detankzone[.]com. This site, disguised as a legitimate DeFi NFT game, exploited a zero-day vulnerability in Chrome’s V8 JavaScript engine. This flaw allowed attackers to take full control of any device visiting the site. Following Kaspersky’s report, Google quickly patched the vulnerability and removed all related fake websites.

Blending Technology and Social Engineering

Alongside technical exploits, Lazarus used social engineering by creating fake LinkedIn and X (formerly Twitter) accounts to promote a fake game, “DeTankZone.” They also used a real game, “DeFiTankLand,” as a cover, releasing a convincing game demo to trick users into downloading malware.

This combination of technical hacking and social manipulation underscores Lazarus’ adaptability in bypassing security measures in the crypto industry.

Crypto Investors, Take Note!

This campaign illustrates Lazarus’ ability to evade even the latest security protections. By pairing zero-day vulnerabilities with social engineering, they continue to pose a serious threat to crypto investors.

What’s your take on Lazarus’ latest tactics? Can the crypto sector keep up?

Elena R

Elena is an expert in technical analysis and risk management in cryptocurrency market. She has 10+year experience in writing - accordingly she is avid journalists with a passion towards researching new insights coming into crypto erena.

Recent Posts

Best Cryptocurrencies for June 2025: Ripple (XRP), Dogecoin (DOGE), Mutuum Finance (MUTM)

As market sentiment shifts and fresh momentum builds across digital assets, June 2025 presents a…

June 2, 2025

Live Coin Watch Alert: Bitcoin Solaris’s 21M Fixed Supply Creates Your Second Chance at Bitcoin’s Growth Path

When Bitcoin first emerged, its fixed 21 million supply was mocked. Today, that scarcity has…

June 2, 2025

Singapore Cracks Down on Unlicensed Crypto Firms with Strict New Rules

Singapore’s financial authority announces that unlicensed crypto firms operating overseas after June 30 will be…

June 2, 2025

Can U.S. Buy More Bitcoin? Here’s What David Sacks Revealed

On May 27, 2025, US President’s crypto czar, David Sacks, says there is a pathway…

June 2, 2025

After Monero Surge, Wall Street Ponke Gains Momentum, maybe Under $1?

Hackers used Monero to move stolen Bitcoin, pushing XMR up 24 percent to $269. But…

June 2, 2025

Pakistan Allocates 2,000MW for Bitcoin Mining and AI: A Digital Revolution

Pakistan has allocated 2,000 megawatts (MW) of electricity to fuel Bitcoin mining and artificial intelligence…

June 2, 2025