MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Font ResizerAa
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Reading: Google Exposes $2B DPRK Hack Using EtherHiding Malware Across Ethereum And BNB Blockchains – FinanceFeeds
Share
Font ResizerAa
MarketAlert – Real-Time Market & Crypto News, Analysis & AlertsMarketAlert – Real-Time Market & Crypto News, Analysis & Alerts
Search
  • Crypto News
    • Altcoins
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
    • Press Releases
    • Latest News
  • Blockchain Technology
    • Blockchain Developments
    • Blockchain Security
    • Layer 2 Solutions
    • Smart Contracts
  • Interviews
    • Crypto Investor Interviews
    • Developer Interviews
    • Founder Interviews
    • Industry Leader Insights
  • Regulations & Policies
    • Country-Specific Regulations
    • Crypto Taxation
    • Global Regulations
    • Government Policies
  • Learn
    • Crypto for Beginners
    • DeFi Guides
    • NFT Guides
    • Staking Guides
    • Trading Strategies
  • Research & Analysis
    • Blockchain Research
    • Coin Research
    • DeFi Research
    • Market Analysis
    • Regulation Reports
Have an existing account? Sign In
Follow US
© Market Alert News. All Rights Reserved.
  • bitcoinBitcoin(BTC)$75,777.001.76%
  • ethereumEthereum(ETH)$2,359.361.16%
  • tetherTether(USDT)$1.000.00%
  • rippleXRP(XRP)$1.452.50%
  • binancecoinBNB(BNB)$632.892.00%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$88.644.28%
  • tronTRON(TRX)$0.324439-0.67%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.48%
  • dogecoinDogecoin(DOGE)$0.0986972.93%
Smart Contracts

Google Exposes $2B DPRK Hack Using EtherHiding Malware Across Ethereum And BNB Blockchains – FinanceFeeds

Last updated: October 22, 2025 3:05 am
Published: 6 months ago
Share

Cybersecurity researchers at Google’s Threat Intelligence Group (GTIG) have uncovered a sophisticated hacking campaign by a North Korean state-linked group exploiting public blockchains to host malware through a method called “EtherHiding.” The attackers are believed to have stolen approximately $2 billion in cryptocurrency this year through this technique.

The campaign, attributed to the threat actor cluster UNC5342, targets developers and crypto employees by luring them with fake job offers and coding tasks. Victims download files that load a JavaScript payload, which then interacts with smart contracts on the Ethereum and BNB Smart Chain to retrieve further malicious code — all without leaving visible traces on‐chain.

The EtherHiding Malware and Its Danger

According to Google, EtherHiding allows attackers to embed malicious instructions inside smart contracts that remain immutable and publicly accessible, thereby turning blockchain infrastructure into a decentralized platform that malicious actors can command and control.

The infection chain begins with a compromised website, often a job-recruitment bait for crypto developers. Once the victim downloads and runs a script, it uses a read-only blockchain call to fetch the next malware embedded inside a smart contract. That leads to the installation of a backdoor that enables long-term remote access to the victim’s device and crypto wallets.

Victims, often developers and crypto employees, were tricked through fake job offers or coding tasks. Once a victim downloaded the booby-trapped files, JavaScript payloads connected to blockchain smart contracts to fetch additional malicious instructions without leaving obvious traces on the blockchain. This allowed the attackers to bypass traditional defenses while maintaining operational stealth.

Because the smart contracts are immutable, conventional security solutions like server takedowns or URL blocking don’t work. Attackers can update the code, making the attack infrastructure resilient and persistent.

Google’s Malware Hunt Reinforces The Need For Strong Security

Google and its team have uncovered another vulnerability within the crypto ecosystem, especially via decentralized finance (DeFi) and smart contracts.

For institutions and corporate treasuries holding crypto assets, the risk is broader than just exchange hacks or smart-contract bugs because malware embedded via blockchain calls presents an under-the-radar supply‐chain risk.

Until now, many crypto entities have focused on code audits and wallet security, but may now need to add endpoint protection, supply-chain vetting, and blockchain transaction forensics. If hackers can hide command-and-control infrastructure inside smart contracts, then even regulated asset managers or custodians may face stealth exposure, which could erode confidence in institutional crypto adoption.

Overall, the Google-revealed DPRK campaign using EtherHiding turns a new page in crypto risk. It sends a signal that public blockchains are no longer just assets to steal from, but also infrastructure that attackers can weaponize. As digital assets scale with institutional adoption, the industry must adapt to the ever-growing threat within the crypto ecosystem or risk becoming the next stealth funding channel for cybercrime.

Read more on FinanceFeeds

This news is powered by FinanceFeeds FinanceFeeds

Share this:

  • Share on X (Opens in new window) X
  • Share on Facebook (Opens in new window) Facebook

Like this:

Like Loading...

Related

Best Crypto Presale to Buy: Lyno AI Hits Major Milestone With AI-Powered Utility Buzz
Bitget Launchpool adds Towns Protocol (TOWNS) with over 16M in Token Rewards | Business Upturn
Best Crypto To Buy Now For 3-4x Gains By October: Pepe, VeChain, Remittix and Jasmy Coin | News.az
ZKP Infrastructure Momentum: Analyzing the 10M Token Supply Adjustment vs. Monero and Cardano Market Trends – Crypto Economy
Analysts Rank 6 Top Crypto Presales for Q4 2025. IPO Genie, Bitcoin Hyper, and BlockDAG Make the Cut

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Email Copy Link Print
Previous Article While SOL, DOGE, and BNB Post Feeble 0.5% Gains, is it a Bull Trap? Smart Money is Rotating to Digitap ($TAP) – Crypto Economy
Next Article VanEck Files for First U.S. Lido Staked ETH ETF –
© Market Alert News. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Prove your humanity


Lost your password?

%d