On October 16, 2024, Radiant Capital, a decentralized lending protocol, suffered a major security breach, resulting in a $50 million loss.
A detailed report has since connected the attack to North Korean hackers, specifically the group UNC4736, which has ties to the country’s intelligence agency. The breach began with a carefully planned phishing scam in September, when a developer was tricked into downloading a malicious file disguised as a contract audit report.
After the malware was activated, the attackers were able to infiltrate Radiant’s internal systems. They then orchestrated a man-in-the-middle (MITM) attack, manipulating transaction data to seize control of the platform’s lending pools.
Despite the platform’s security measures, such as hardware wallets and transaction checks, the hackers succeeded in bypassing these defenses.
The hack has sent shockwaves through the DeFi industry, underscoring the vulnerabilities even sophisticated platforms face. In the aftermath, Radiant has engaged cybersecurity experts to track down the stolen funds and work with law enforcement.
The attack has also raised awareness about gaps in DeFi security, particularly with phishing schemes and transaction validation processes, prompting Radiant to advocate for stronger security protocols across the industry.
A recent cyberattack targeting a UK government official’s social media account has highlighted ongoing concerns over digital impersonation and crypto scams.
A former NFT trader is facing potential prison time after admitting to hiding millions in profits from the IRS through undeclared sales of high-value digital assets.
Cybersecurity researchers are sounding the alarm after discovering a new and increasingly sophisticated attack targeting the crypto community.
Australia’s efforts to combat crypto-related fraud have intensified, with the country’s Securities and Investments Commission (ASIC) targeting 95 companies allegedly involved in deceptive schemes like pig butchering scams.