Bitcoin

Bitcoin

$109,009.52

BTC 0.21%

Ethereum

Ethereum

$2,623.33

ETH 1.86%

  • Login
  • Register
Metaverse Media Group
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
No Result
View All Result
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
No Result
View All Result
Metaverse Media Group

$50 Million Radiant Capital Hack Traced to North Korean Cybercriminals

$50 Million Radiant Capital Hack Traced to North Korean Cybercriminals

Be In Cryptoby Be In Crypto
13 December 2024
On October 16, 2024, Radiant Capital, a decentralized cross-chain lending protocol built on LayerZero, was the victim of a highly sophisticated cyberattack that resulted in a staggering $50 million loss. The attack has since been linked to North Korean hackers, marking another alarming chapter in the growing wave of cybercrime targeting decentralized finance (DeFi). Report Links North Korean Actors…

On October 16, 2024, Radiant Capital, a decentralized cross-chain lending protocol built on LayerZero, was the victim of a highly sophisticated cyberattack that resulted in a staggering $50 million loss.

The attack has since been linked to North Korean hackers, marking another alarming chapter in the growing wave of cybercrime targeting decentralized finance (DeFi).

Report Links North Korean Actors to Radiant Capital Incident

Sponsored
.divm, .divd {display: none;}
@media screen and (max-width: 768px) {.divm {display: block;}}@media screen and (min-width: 769px) {
.divd {display: block;}}

Sponsored

A report from OneKey, a Coinbase-backed crypto hardware wallet manufacturer, attributed the attack to North Korean hackers. The report extends from a recent medium post shared by Radiant Capital, which provided an incident update on the October 16 attack.

Reportedly, Mandiant, a leading cybersecurity firm, further linked the breach to UNC4736, a DPRK-aligned group also known as AppleJeus or Citrine Sleet. This group operates under the Reconnaissance General Bureau (RGB), North Korea’s primary intelligence agency.

Mandiant’s investigation revealed that the attackers meticulously planned their operation. They staged malicious smart contracts across multiple blockchain networks, including Arbitrum, Binance Smart Chain, Base, and Ethereum. These efforts reflect the advanced capabilities of DPRK-backed threat actors in targeting the DeFi sector.

The breach began with a calculated phishing attack on September 11, 2024. A Radiant Capital developer received a Telegram message from an individual impersonating a trusted contractor. The message included a zip file purportedly containing a smart contract audit report. This file, “Penpie_Hacking_Analysis_Report.zip,” was laced with malware known as INLETDRIFT, a macOS backdoor that facilitated unauthorized access to Radiant’s systems.

Sponsored

Sponsored

When the developer opened the file, it appeared to contain a legitimate PDF. However, the malware silently installed itself, establishing a backdoor connection to a malicious domain at atokyonews[.]com. This allowed the attackers to spread the malware further among Radiant’s team members, gaining deeper access to sensitive systems.

The hackers’ strategy culminated in a man-in-the-middle (MITM) attack. By exploiting compromised devices, they intercepted and manipulated transaction requests within Radiant’s Gnosis Safe Multisig wallets. While transactions appeared legitimate to developers, the malware covertly altered them to execute a transfer Ownership call, seizing control of Radiant’s lending pool contracts.

Execution of the Heist, Industry Implications, and Lessons Learned

Despite Radiant’s adherence to best practices, such as using hardware wallets, transaction simulations, and verification tools, the attackers’ methods bypassed all defenses. Within minutes of securing ownership, the hackers drained funds from Radiant’s lending pools, leaving the platform and its users reeling.

The Radiant Capital hack serves as a stark warning to the DeFi industry. Even projects adhering to rigorous security standards can fall prey to sophisticated threat actors. The incident highlighted critical vulnerabilities, including:

  • Phishing Risks: The attack began with a convincing impersonation scheme, emphasizing the need for heightened vigilance against unsolicited file sharing.
  • Blind Signing: While essential, hardware wallets often display only basic transaction details, making it difficult for users to detect malicious modifications. Improved hardware-level solutions are necessary to decode and validate transaction payloads.
  • Front-End Security: The reliance on front-end interfaces for transaction verification proved inadequate. Spoofed interfaces enabled hackers to manipulate transaction data undetected.
  • Governance Weaknesses: The absence of mechanisms to revoke ownership transfers left Radiant’s contracts vulnerable. Implementing time locks or requiring delayed fund transfers could provide critical reaction time in future incidents.
Sponsored
.divm, .divd {display: none;}
@media screen and (max-width: 768px) {.divm {display: block;}}@media screen and (min-width: 769px) {
.divd {display: block;}}

Sponsored

In response to the breach, Radiant Capital has engaged leading cybersecurity firms, including Mandiant, zeroShadow, and Hypernative. These firms assist in the investigation and asset recovery. The Radiant DAO is also collaborating with US law enforcement to trace and freeze stolen funds.

In the Medium post, Radiant also reaffirmed its commitment to sharing lessons learned and enhancing security across the DeFi industry. The DAO emphasized the importance of adopting strong governance frameworks, strengthening device-level security, and moving away from risky practices like blind signing.

“Looks like things could have stopped at step 1,” one user on X commented.

The Radiant Capital incident aligns with a recent report, which indicated how North Korean hackers continue to shift tactics. As cybercriminals grow more sophisticated, the industry must adapt by prioritizing transparency, strong security measures, and collaborative efforts to combat such attacks.

.aff-primary {
display: none;
}
.aff-secondary {
display: block;
}
.aff-ternary {
display: none;
}

Disclaimer

In adherence to the Trust Project guidelines, BeInCrypto is committed to unbiased, transparent reporting. This news article aims to provide accurate, timely information. However, readers are advised to verify facts independently and consult with a professional before making any decisions based on this content. Please note that our Terms and Conditions, Privacy Policy, and Disclaimers have been updated.

Sponsored

Sponsored

Lockridge-Okoth.png
Lockridge Okoth is a journalist at BeInCrypto, focusing on prominent industry companies such as Coinbase, Binance, and Tether. He covers a wide range of topics, including regulatory developments in decentralized finance (DeFi), decentralized physical infrastructure networks (DePIN), real-world assets (RWA), GameFi, and cryptocurrencies. Previously, Lockridge conducted market analysis and technical assessments of digital assets, including Bitcoin and altcoins such as Arbitrum, Polkadot, and…

Lockridge Okoth is a journalist at BeInCrypto, focusing on prominent industry companies such as Coinbase, Binance, and Tether. He covers a wide range of topics, including regulatory developments in decentralized finance (DeFi), decentralized physical infrastructure networks (DePIN), real-world assets (RWA), GameFi, and cryptocurrencies. Previously, Lockridge conducted market analysis and technical assessments of digital assets, including Bitcoin and altcoins such as Arbitrum, Polkadot, and…


READ FULL BIO

Sponsored

#placement_727536_0{ width: 100%;
height: 100%;}

#placement_727536_0_iframe{ width: 100%;
height: 100%;}

Sponsored

RELATED NEWS

9 mins ago

2 hours ago

3 hours ago

5 hours ago

7 hours ago

Read the full article on BeInCrypto.com
in AI, Crypto
Reading Time: 6 mins read
0
0
21
VIEWS
Share on TwitterShare on Facebook

Subscribe to our newsletter

For the latest news & monthly prize giveaways
Join Now

Subscribe to our newsletter

For the latest news & monthly prize giveaways
Join Now
ADVERTISEMENT

Related Posts

Bitget Partners With UNTOLD Festival: Where Crypto Takes the Main Stage
Crypto

Bitget Partners With UNTOLD Festival: Where Crypto Takes the Main Stage

13 minutes ago
19
Metaplanet Aims for ‘Escape Velocity’ in Bitcoin Accumulation With Ambitious Acquisition Strategy
Crypto

Metaplanet Aims for ‘Escape Velocity’ in Bitcoin Accumulation With Ambitious Acquisition Strategy

43 minutes ago
20
Best MPC Wallets in 2025 (So Far): Secure, Smart & Self-Custodial Options Compared
Crypto

Best MPC Wallets in 2025 (So Far): Secure, Smart & Self-Custodial Options Compared

1 hour ago
21

Comments

Please login to join discussion
ADVERTISEMENT

Latest News

  • All
  • Crypto
  • NFTs
  • Technology
  • Business
Bitget Partners With UNTOLD Festival: Where Crypto Takes the Main Stage
Crypto

Bitget Partners With UNTOLD Festival: Where Crypto Takes the Main Stage

Bitcoin.com News
by Bitcoin.com News
13 minutes ago
19
Metaplanet Aims for ‘Escape Velocity’ in Bitcoin Accumulation With Ambitious Acquisition Strategy
Crypto

Metaplanet Aims for ‘Escape Velocity’ in Bitcoin Accumulation With Ambitious Acquisition Strategy

Bitcoin.com News
by Bitcoin.com News
43 minutes ago
20
Best MPC Wallets in 2025 (So Far): Secure, Smart & Self-Custodial Options Compared
Crypto

Best MPC Wallets in 2025 (So Far): Secure, Smart & Self-Custodial Options Compared

Bitcoin.com News
by Bitcoin.com News
1 hour ago
21
‘People Are Going to Die’: A Malnutrition Crisis Looms in the Wake of USAID Cuts
Business

‘People Are Going to Die’: A Malnutrition Crisis Looms in the Wake of USAID Cuts

Wired
by Wired
1 hour ago
21
Indictment Unsealed in Puerto Rico Charging Two Men in $650 Million Omegapro Investment Fraud
Crypto

Indictment Unsealed in Puerto Rico Charging Two Men in $650 Million Omegapro Investment Fraud

Bitcoin.com News
by Bitcoin.com News
2 hours ago
21
Inside OpenAI’s empire: A conversation with Karen Hao
Technology

Inside OpenAI’s empire: A conversation with Karen Hao

Techonolgy Review
by Techonolgy Review
2 hours ago
21
Load More
Next Post
Trump’s Team Proposes FDIC Abolishment as Banking Regulators Threaten Crypto

Trump’s Team Proposes FDIC Abolishment as Banking Regulators Threaten Crypto

ADVERTISEMENT

Follow Us

Categories

  • Crypto
  • NFTs
  • AI
  • Technology
  • Business
  • Crypto
  • NFTs
  • AI
  • Technology
  • Business
Subscribe to our Newsletter

© 2022 Metaverse Media Group – The Metaverse Mecca

Privacy and Cookie Policy | Sitemap

Welcome Back!

Sign In with Google
OR

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Sign Up with Google
OR

Fill the forms below to register

*By registering into our website, you agree to the Terms & Conditions and Privacy Policy.
All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
Bitcoin

Bitcoin

$109,009.52

BTC 0.21%

Ethereum

Ethereum

$2,623.33

ETH 1.86%

  • Login
  • Sign Up
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.

Subscribe to our newsletter

Get the latest news & win monthly prizes

Subscribe to our newsletter

For the Latest News and Monthly Prize Giveaways

Join Now
Join Now