The post Lazarus Group suspected in Bitrefill hack that compromised hot wallets appeared on BitcoinEthereumNews.com. The notorious Lazarus Group may have been behindThe post Lazarus Group suspected in Bitrefill hack that compromised hot wallets appeared on BitcoinEthereumNews.com. The notorious Lazarus Group may have been behind

Lazarus Group suspected in Bitrefill hack that compromised hot wallets

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

The notorious Lazarus Group may have been behind a cyberattack on crypto e-commerce store Bitrefill, the firm estimates.

Summary

  • Bitrefill linked a March 1 cyberattack to tactics associated with the Lazarus and BlueNoroff groups, after attackers compromised an employee laptop and drained funds from hot wallets.
  • Around 18,500 purchase records were accessed, though the company said only limited customer information was exposed and there was no evidence of a full database breach.

Detailing the March 1 incident in a Tuesday X post, the firm said the attackers used malware, on-chain tracing, and reused IP and email infrastructure to drain funds from its hot wallets after compromising an employee’s laptop. Attackers also allegedly accessed around 18,500 purchase records, although this involved only “limited customer information.”

“We find many similarities between this attack and past cyberattacks by the DPRK Lazarus / Bluenoroff group against other companies in the crypto industries,” the firm wrote.

Bitrefill is a crypto e-commerce platform that allows customers to spend digital assets on real-world products and gift cards. It added that the attackers were primarily financially motivated, as there was “no evidence that they extracted our entire database.”

“The attackers ran a limited number of queries consistent with probing to understand what there was to steal, including cryptocurrency and Bitrefill gift card inventory,” it added.

Bitrefill did not disclose how much crypto was stolen but said it would absorb the losses from its operational capital.

“We have already significantly improved our cybersecurity practices, but vow to continue to draw learnings from this experience to make sure user and company balances and data remain maximally safe,” Bitrefill said, adding that all operations were back to normal.

The company has since strengthened its security posture and has contacted law enforcement while working with security firms to investigate and respond to the incident.

Lazarus group remains a major threat

Over the years, the Lazarus Group has been credited with some of the crypto industry’s largest hacks.

One of the biggest attacks involved crypto exchange Bybit, which lost around $1.4 billion last year. The group was also a suspected actor behind the hack of South Korean crypto exchange Upbit and UK-registered trading platform Lykke.

Source: https://crypto.news/lazarus-group-suspected-in-bitrefill-hack-that-compromised-hot-wallets/

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Leonardo AI Unveils Comprehensive Image Editing Suite with Six Model Options

Leonardo AI Unveils Comprehensive Image Editing Suite with Six Model Options

Leonardo AI releases detailed guide to AI image editing featuring Nano Banana, GPT Image 1.5, and Flux models as competition heats up with Adobe, Google, and Canva
Share
BlockChain News2026/03/19 12:39
RBA warns high and rising risk of severe shock to world economy amid Iran war

RBA warns high and rising risk of severe shock to world economy amid Iran war

The post RBA warns high and rising risk of severe shock to world economy amid Iran war appeared on BitcoinEthereumNews.com. The Reserve Bank of Australia (RBA)
Share
BitcoinEthereumNews2026/03/19 11:49
Headwind Helps Best Wallet Token

Headwind Helps Best Wallet Token

The post Headwind Helps Best Wallet Token appeared on BitcoinEthereumNews.com. Google has announced the launch of a new open-source protocol called Agent Payments Protocol (AP2) in partnership with Coinbase, the Ethereum Foundation, and 60 other organizations. This allows AI agents to make payments on behalf of users using various methods such as real-time bank transfers, credit and debit cards, and, most importantly, stablecoins. Let’s explore in detail what this could mean for the broader cryptocurrency markets, and also highlight a presale crypto (Best Wallet Token) that could explode as a result of this development. Google’s Push for Stablecoins Agent Payments Protocol (AP2) uses digital contracts known as ‘Intent Mandates’ and ‘Verifiable Credentials’ to ensure that AI agents undertake only those payments authorized by the user. Mandates, by the way, are cryptographically signed, tamper-proof digital contracts that act as verifiable proof of a user’s instruction. For example, let’s say you instruct an AI agent to never spend more than $200 in a single transaction. This instruction is written into an Intent Mandate, which serves as a digital contract. Now, whenever the AI agent tries to make a payment, it must present this mandate as proof of authorization, which will then be verified via the AP2 protocol. Alongside this, Google has also launched the A2A x402 extension to accelerate support for the Web3 ecosystem. This production-ready solution enables agent-based crypto payments and will help reshape the growth of cryptocurrency integration within the AP2 protocol. Google’s inclusion of stablecoins in AP2 is a massive vote of confidence in dollar-pegged cryptocurrencies and a huge step toward making them a mainstream payment option. This widens stablecoin usage beyond trading and speculation, positioning them at the center of the consumption economy. The recent enactment of the GENIUS Act in the U.S. gives stablecoins more structure and legal support. Imagine paying for things like data crawls, per-task…
Share
BitcoinEthereumNews2025/09/18 01:27