In a cybersecurity twist that sounds more like espionage fiction than reality, Kraken recently intercepted an attempted infiltration by a North Korean hacker—disguised as a job seeker.
What started as an ordinary recruitment process quickly raised eyebrows when an applicant submitted inconsistent identity details and appeared to be guided through their interview in real time, shifting voices mid-conversation. Behind the scenes, Kraken’s security team flagged the behavior and began quietly investigating.
The situation escalated when one of the applicant’s emails matched a list shared among crypto firms—addresses suspected of being tied to sanctioned North Korean actors. A deeper probe uncovered a sprawling network of fake identities used to apply for jobs across the industry, some of which had already slipped past company defenses.
Rather than rejecting the candidate outright, Kraken advanced the individual through staged interview rounds—deliberately buying time to gather intelligence. The trap was set during a final call with the exchange’s Chief Security Officer. A series of live verification questions—ranging from local geography to ID confirmation—left the applicant scrambling and ultimately exposed the deception.
Kraken’s report emphasized that cybersecurity threats now reach far beyond traditional attack surfaces. In an era of AI-generated personas and social engineering, even the HR inbox has become a potential vector for compromise.
The individual in question, Kraken later confirmed, was tied to broader North Korean operations estimated to have drained over $650 million from crypto platforms in 2024 alone.
The company concluded with a stark reminder: not all attacks come through code. Sometimes, they start with a résumé.
Indian crypto exchange CoinDCX has confirmed a $44 million security breach involving one of its internal liquidity accounts.
The United Kingdom’s Home Office is preparing to liquidate a massive cache of seized cryptocurrency—at least $7 billion worth of Bitcoin—according to a new report by The Telegraph.
A former National Crime Agency (NCA) officer has been sentenced to five years and six months in prison after stealing 50 BTC—now worth over £4.4 million—from a criminal investigation he was helping to lead.
The U.S. Securities and Exchange Commission (SEC) has filed emergency enforcement actions against First Liberty Building & Loan, LLC and its founder, Edwin Brant Frost IV, alleging they operated a $140 million Ponzi scheme that spanned more than a decade and defrauded around 300 investors.