financetom
Cryptocurrency
financetom
/
Cryptocurrency
/
Web3 Security Firms Confirm North Korea’s Role in Radiant Capital Hack
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Web3 Security Firms Confirm North Korea’s Role in Radiant Capital Hack
Dec 9, 2024 2:36 PM

Radiant Capital has revealed new findings about the $50 million hack targeting its decentralized finance (DeFi) platform in October, attributing the attack to a North Korea-aligned hacking group.

The attackers gained access through an elaborate scheme involving malware distributed via Telegram.

$50M Radiant Capital DeFi Hack

The breach, first discovered on October 16, 2024, prompted Radiant to partner with cybersecurity firms like Mandiant, zeroShadow, Hypernative, and SEAL 911 to investigate and mitigate the damage.

According to the official blog post, the attack was traced back to September 11, 2024, when a Radiant developer received a Telegram message from someone impersonating a former contractor. The message, crafted to appear harmless, requested feedback on a supposed career-related PDF file linked to smart contract auditing.

The sender convincingly spoofed a legitimate website, reducing suspicion. Once the file, titled Penpie_Hacking_Analysis_Report.zip, was opened, a macOS backdoor malware named INLETDRIFT was delivered. The malware communicated with an external server and appeared harmless by displaying a realistic PDF.

Despite Radiants adherence to rigorous security protocols, including transaction simulations and payload verifications, the malware evaded detection by manipulating front-end transaction data. Developers unknowingly signed off on malicious transactions, believing they were legitimate. The attackers planning rendered the intrusion nearly undetectable during routine checks.

zeroShadow, a Web3 security solutions provider, has also corroborated Radiant Capitals assessment that the hack was the work of North Korea-linked actors. In a statement on December 9, the platform said,

We also attribute the Radiant Capital October 16 incident to DPRK with high confidence based on multiple indicators that we have gathered on and off chain. We have tracked the movements to Hyperliquid as stemming from Radiant users failing to revoke permissions, and not the initial incidents stolen funds.

Radiants TVL Down by Over 97% This Year

Radiant Capital is a decentralized lending and borrowing protocol that integrates cross-chain capabilities through the use of LayerZero technology. DefiLlamas latest figures place its total value locked (TVL) at a little over $6 million.

The October 16 hack is not the first time Radiant has been compromised this year. Back in January, a smart contract vulnerability was exploited, costing the platform $4.5 million, during which its TVL was significantly higher, surpassing $300 million, highlighting a significant decline in locked assets over the course of the year despite the bull run.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Euro Q3 Fundamental Forecast: Euro Path Dependent on French Politics and US Fed Policy
Euro Q3 Fundamental Forecast: Euro Path Dependent on French Politics and US Fed Policy
Jul 5, 2024
It is tricky to project asset prices over a three-month horizon at the best of times, never mind during a pivotal election in one of Europe’s largest economies and during a time when the Fed is likely to prepare for its first rate cut later this year. Nevertheless, this forecast endeavours to provide the most pertinent factors to consider for...
Crypto Bloodbath: Bitcoin and Altcoins Plummet, Mt. Gox Starts Repayments, German Govt Contineus Selling: Weekly Crypto Recap
Crypto Bloodbath: Bitcoin and Altcoins Plummet, Mt. Gox Starts Repayments, German Govt Contineus Selling: Weekly Crypto Recap
Jul 5, 2024
What a week its been The cryptocurrency markets ultimately took a turn for the worse, but they havent been without their moments. The bottom line is that the total capitalization lost a whopping $200 billion, which is more or less 10% in the past seven days alone. This came on the back of considerable losses from Bitcoin, but especially from...
HODL Instead of Sell: German MP Criticizes Government’s Approach of Selling Bitcoin
HODL Instead of Sell: German MP Criticizes Government’s Approach of Selling Bitcoin
Jul 5, 2024
German Member of Parliament and Bitcoin advocate Joana Cotar has called on the government to halt its rapid Bitcoin sell-offs. Cotar argued that it is neither sensible” nor “productive” and believes that Bitcoin should be adopted as a strategic reserve currency to safeguard against economic instability. Joana Cotar Criticizes German Bitcoin Sell-Offs In a July 4 post on X, Cotar...
‘Buy Bitcoin (BTC)’ Searches Soar Amid the Recent Crypto Market Crash: Details
‘Buy Bitcoin (BTC)’ Searches Soar Amid the Recent Crypto Market Crash: Details
Jul 5, 2024
TL;DR Bitcoins price briefly dropped below $54,000, triggering a market-wide correction, but increased interest in buying BTC suggests some view this as a buy the dip opportunity. Metrics like the Relative Strength Index (RSI) and the Fear and Greed Index indicate the asset is oversold and in fear territory, which might be interpreted as a potential signal for a rebound....
Copyright 2023-2025 - www.financetom.com All Rights Reserved