By using this site, you agree to the Privacy Policy..
Accept
Latest cryptocurrency newsLatest cryptocurrency newsLatest cryptocurrency news
  • BITCOIN
  • Crypto Tracker App
  • ETHEREUM
  • RIPPLE
  • Crypto News
  • FINANCE NEWS
  • BLOCKCHAIN
  • CONTACT
  • TURKISHTURKISHTURKISH
Reading: Mysterious Forces Behind Major Crypto Heist Revealed
Share
Font ResizerAa
Latest cryptocurrency newsLatest cryptocurrency news
Font ResizerAa
  • BITCOIN
  • Crypto Tracker App
  • ETHEREUM
  • RIPPLE
  • Crypto News
  • FINANCE NEWS
  • BLOCKCHAIN
  • CONTACT
  • TURKISHTURKISHTURKISH
Follow US
© 2025 BLOCKCHAIN Information Technologies. >> BH NEWS.
Powered By LK SOFTWARE
Latest cryptocurrency news > Cryptocurrency > Mysterious Forces Behind Major Crypto Heist Revealed
Cryptocurrency

Mysterious Forces Behind Major Crypto Heist Revealed

BH NEWS
Last updated: 5 April 2026 15:55
BH NEWS 4 weeks ago
Share
SHARE

Contents
How Did the Attackers Infiltrate the System?Which Vulnerabilities Were Exploited?

Emerging details shed light on the significant cyber breach targeting Drift Protocol, culminating in losses estimated at $270 million. Recent disclosures by the protocol’s development team reveal that a nefarious group, suspected of connections to North Korea, meticulously executed the attack over a period of six months, employing advanced methods to breach security systems.

How Did the Attackers Infiltrate the System?

The group’s initial entry into the system took place at a renowned cryptocurrency conference in late 2025. Disguised as representatives from a quantitative trading firm, they exhibited technical proficiency and seemingly credible backgrounds. This facilitated their gradual acceptance within the Drift network, where they showcased their intricate knowledge of operational protocols.

Which Vulnerabilities Were Exploited?

Beginning in October, the infiltrators extended their reach by engaging directly with the Drift community through Telegram. By offering typical DeFi trading strategies, they gained trust among critical stakeholders. To further solidify their position, they injected over $1 million into the protocol between December 2025 and January 2026, cultivating a sense of trust with core team members.

The subsequent months saw their relationships with Drift contributors deepen, reinforced by in-person meetings at global industry events. This trust was pivotal in enabling the eventual breach.

The technical investigation revealed two primary methods of attack. One method involved a member of the group introducing a wallet app via Apple’s TestFlight platform, which effectively bypassed security protocols by masquerading as a legitimate tool.

The use of popular code editors like VSCode and Cursor posed another opportunity for exploitation, as these contained vulnerabilities allowing remote control of devices upon opening malicious files.

By leveraging these vulnerabilities, the group circumvented security protocols and secured multisig privileges necessary to execute the attack. Prepared detrimental transactions sat in waiting for over a week before being activated on April 1, facilitating a rapid and complete withdrawal of funds from Drift Protocol.

Significant evidence indicates the involvement of UNC4736, a group allegedly working on behalf of North Korea. Known as AppleJeus and Citrine Sleet, this group has been connected to multiple recent cyberattacks within the cryptocurrency industry.

It appears that those who attended conferences may not be North Korean nationals, instead relying on sophisticated forged identities and professional connections to infiltrate these types of organizations, adding layers of complexity to direct attribution.

In response, Drift’s team urged other firms to conduct rigorous audits of multisig access and device security. They emphasized the necessity of reevaluating multisig management’s efficacy as a security model in decentralized finance, given the increasing sophistication of cyber threats.

“This incident underscores the urgent need for enhanced vigilance across the industry,” emphasized a Drift representative.

You can follow our news on Telegram and Coinmarketcap
Disclaimer: The information contained in this article does not constitute investment advice. Investors should be aware that cryptocurrencies carry high volatility and therefore risk, and should conduct their own research.

You Might Also Like

Is Crypto Summer Starting?

Bitcoin Rallies: What Lies Ahead?

Could Bitcoin Hit $350,000 Soon?

Crypto Chaos Hits Markets

Impending Drama: Bitcoin Markets on Edge as Japan Decides

Share This Article
Facebook X Email Print
Previous Article Bitcoin’s Resilience Despite Market Doldrums: What Lies Ahead?
Next Article Unraveling the Patterns in Cryptocurrency Market Waves
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Bitcoin’s Struggle: New Proposals and Analyzing Market Signals
BITCOIN (BTC)
Bitcoin’s Ambiguous Trajectory: Analyzing Mixed Signals and Market Reactions
BITCOIN (BTC)
Tether Sees Historic Profit and Strategic Reserve Changes
Tether (USDT)
Whale Activity Fuels Dogecoin’s Remarkable Rise
DOGECOIN (DOGE)
An Unpredictable Future: Bitcoin’s Potential $16 Trillion Boom by 2030
BITCOIN (BTC)
US Manufacturing Sees Promising Uptick, but Will It Last?
ECONOMICS

CRYPTOCURRENCIES

  • Avalanche (AVAX)
  • Cardano (ADA)
  • CHAINLINK (LINK)
  • Solana (SOL)
about us

Stay informed with BH NEWS, your trusted source for the latest cryptocurrency news, trends, and analysis. From market updates to blockchain innovations, we deliver the insights you need to navigate the world of digital assets confidently.

OUR PARTNERS

  • COINTURK NEWS
  • NEWSLINKER
  • 21MILYON
  • COINTURK

Corporate

  • About Us
  • Cookie Policy
  • Contact

Find Us on Socials

© 2026 BH NEWS.
Powered By LK SOFTWARE
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?