Kraken Exposes North Korea-Backed Hacker Who Masqueraded as a Job Applicant

By: crypto economy|2025/05/02 11:45:01
0
Share
copy
TL;DRKraken identified and thwarted a hacking attempt by a North Korean-backed operative posing as a job candidate during an engineering interview.Inconsistencies like voice fluctuations, mismatched credentials, and a flagged email alerted Kraken’s security team to the imposter’s deceptive tactics.A covert sting operation confirmed the fraudulent identity, underscoring the rising threat of state-sponsored attacks targeting crypto firms.Kraken, the US-based crypto exchange, recently stopped a complex hacking attempt by a North Korean hacker pretending to be a job seeker. The incident began during a routine hiring process for an engineering role when the candidate joined an initial video call under a name that differed from their resume and abruptly corrected it mid-interview. Recruiters also noted the applicant’s voice fluctuated unexpectedly, suggesting real-time coaching by a third party. These inconsistencies triggered immediate suspicion within Kraken’s security team. Further investigation revealed the applicant’s email address matched one flagged by industry partners as part of a North Korean hacking campaign targeting crypto firms. A deeper probe uncovered a network of fake identities and aliases linked to the candidate, including one associated with a sanctioned foreign agent. Technical audits exposed additional red flags, such as the use of remote Mac desktops routed through VPNs to mask their location and altered identification documents tied to a prior identity theft case.Kraken’s Counterintelligence Sting OperationRather than dismissing the candidate, Kraken’s security and recruitment teams orchestrated a covert operation to gather intelligence on the hacker’s methods. The applicant was advanced through multiple interview rounds, including technical assessments and identity verification tasks designed to test their legitimacy. The final stage featured a “chemistry interview” with Chief Security Officer Nick Percoco and other executives, where subtle traps were set. During the call, the candidate was asked to verify their location, present a government-issued ID, and recommend local restaurants in their claimed city of residence. The applicant faltered under pressure, failing to provide coherent answers or produce valid documentation. “By the end of the interview, the truth was clear: this was not a legitimate applicant, but an imposter attempting to infiltrate our systems,” Kraken stated.A Warning Amid Rising State-Sponsored ThreatsKraken disclosed the incident to highlight evolving cyber threats, emphasizing that North Korean hackers are increasingly exploiting hiring pipelines to infiltrate organizations. The crypto exchange noted that state-backed groups stole over $650 million from crypto firms in 2024 alone, with job application schemes becoming a preferred tactic. Nick Percoco reiterated the importance of vigilance, stating, “Don’t trust, verify. State-sponsored attacks aren’t just a crypto or U.S. corporate issue—they’re a global threat.”

-- Price

--

You may also like

Why Is Bitcoin Down in 2026? What We Can Learn From 2022

Why is Bitcoin down in 2026? Bitcoin has just recorded its worst first half since 2022, with back-to-back quarterly losses, record ETF outflows, and extreme fear. Here's what history says, how 2026 differs from the last bear market, and the three signals traders should wat

The large models in the United States are moving towards closure in the name of security

The government successfully inserted itself as an approver between commercial AI models and their users for the first time.

From the white-haired stock god to the billionaire fund mogul, the smart people shorting Nvidia are all getting rich using the same framework

Give up on heavily investing in Nvidia's "nine major bottlenecks"! This article analyzes the underlying logic behind top AI investors making billions: physical infrastructure such as electricity, HBM, and optical interconnects are the true keys to wealth in AI hardware.

Morning Report | CoinEx becomes a key hub for Iran to evade sanctions, involving over $3.8 billion in funds; Kalshi seeks a new round of financing, with a valuation potentially rising to $40 billion

Overview of Important Market Events on June 25

Global Launch: As predictions become the most scarce asset in the AI era, Manadia is defining the next generation of the value internet

The trusted AI prediction ecosystem Manadia, which has secured $7 million in funding from well-known institutions like OKX, will globally launch in June. The core token UMXM has already been listed on multiple mainstream platforms, inviting you to seize the new blue ocean of the trillion-level predi...

Why do cryptocurrency projects always like to change their names?

In many cases, the old names of encryption projects have no competitive advantage, only historical baggage.

Contents

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com