:

NORTH KOREA'S CRYPTO THEFTS HIT $1B IN 2024

SECURITY DESK■ 1 MIN READ
FRI, SEP 25, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A $357 million hack of crypto exchange Bitget on Thursday is attributed to North Korean hackers, pushing the nation-state's digital-asset thefts past $1 billion this year, according to analytics firm Elliptic Enterprises.

The Bitget breach marks a significant escalation in cyber theft targeting cryptocurrency platforms. Elliptic's analysis links the attack to North Korea-linked threat actors based on operational patterns and technical indicators. The milestone reflects an ongoing trend of state-sponsored actors targeting crypto exchanges to circumvent international sanctions. North Korea has increasingly relied on digital-asset theft as a revenue stream, with sophisticated hacking operations targeting exchanges, DeFi protocols, and blockchain networks. Bitget has not yet disclosed complete details about the breach scope or recovery efforts. The exchange joins a growing list of platforms hit by major security breaches this year. Cyber analysts warn that exchanges face mounting pressure to strengthen security infrastructure against advanced threat actors with nation-state resources. The $1 billion threshold underscores the scale of organized crypto theft and highlights vulnerabilities in the digital-asset ecosystem.

■ SOURCES

► Bloomberg Tech

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

A U.S. Army soldier was sentenced to 70 months in federal prison for hacking AT&T and Verizon and stealing call and text metadata from over 100 million customers. He was also ordered to pay nearly $300,000 in restitution.

1H AGO— Industry Desk

A cross-site request forgery (CSRF) vulnerability in the popular Elementor WordPress plugin could allow unauthenticated attackers to create administrator accounts on affected sites.

4H AGO— Industry Desk

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about active exploits targeting critical vulnerabilities in SharePoint, WSO2, and Adobe Commerce. Attackers are actively leveraging these flaws in real-world attacks.

5H AGO— Security Desk

Multiple Supabase customers have inadvertently exposed sensitive user data online due to misconfiguration and inadequate security settings. The incidents underscore risks inherent in rapidly deployed AI-generated and minimally-configured applications.

5H AGO— Industry Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.