国产av日韩一区二区三区精品,成人性爱视频在线观看,国产,欧美,日韩,一区,www.成色av久久成人,2222eeee成人天堂

Home web3.0 Lazarus Group Used Fake Blockchain Game to Exploit Zero-Day Vulnerability in Google Chrome

Lazarus Group Used Fake Blockchain Game to Exploit Zero-Day Vulnerability in Google Chrome

Oct 24, 2024 am 09:54 AM
Lazarus Group Chrome vulnerability fake NFT game

The North Korean Lazarus Group of hackers used a fake blockchain-based game to exploit a zero-day vulnerability in Google’s Chrome browser and install spyware

Lazarus Group Used Fake Blockchain Game to Exploit Zero-Day Vulnerability in Google Chrome

North Korean Lazarus Group hackers have exploited a zero-day vulnerability in Google Chrome to install spyware that steals wallet credentials, using a fake blockchain-based game to carry out the attack.

The Lazarus Group’s activities were detected by Kaspersky Labs analysts in May, who reported the exploit to Google. The vulnerability has since been fixed by Google.

Playing at a high risk

The hackers’ game, which was fully playable, was promoted on LinkedIn and X. It was called DeTankZone or DeTankWar and featured tanks represented by non-fungible tokens (NFTs) that competed in a global tournament.

Interestingly, users could get infected from the game’s website even without downloading the game itself. The hackers reportedly modeled the game on the existing DeFiTankLand.

According to the report, the hackers deployed Manuscrypt malware, followed by a previously unseen “type confusion bug in the V8 JavaScript engine.” This marked the seventh zero-day vulnerability found in Chrome in 2024 up to mid-May.

“The fake game was noticed by Microsoft Security back in February. However, by the time Kaspersky was able to look into it, the threat actor had already removed the exploit from the website,” Boris Larin, principal security expert at Kaspersky, told Securelist.

Despite this, the lab went ahead and informed Google about the exploit, and Chrome fixed the vulnerability before the hackers could reintroduce it.

Screenshot from Lazarus Group’s fake game, as shared by SecureList

Related: FBI highlights 6 Bitcoin wallets linked to North Korea, urging crypto exchanges to be vigilant

North Korea has a thing for crypto

Zero-day vulnerabilities are those that a vendor is made aware of for the first time, without any patch being ready for it. In this case, it took Google 12 days to patch the vulnerability in question.

Earlier this year, another zero-day vulnerability in Chrome was exploited by a separate North Korean hacker group to target crypto holders.

As reported by Microsoft Threat Intelligence, Lazarus Group is known to have a strong preference for cryptocurrency. According to crypto crime watcher ZachXBT, the group laundered over $200 million in crypto from 25 hacks between 2020 and 2023.

The United States Treasury Department has also accused Lazarus Group of being behind the 2022 attack on Ronin Bridge, which resulted in the theft of crypto valued at over $600 million.

Over the seven-year period from 2017 to 2023, North Korean hackers stole a total of more than $3 billion in crypto, according to cybersecurity firm Recorded Future.

Magazine: Lazarus Group’s favorite exploit revealed — An analysis of crypto hacks by the notorious group

The above is the detailed content of Lazarus Group Used Fake Blockchain Game to Exploit Zero-Day Vulnerability in Google Chrome. For more information, please follow other related articles on the PHP Chinese website!

Statement of this Website
The content of this article is voluntarily contributed by netizens, and the copyright belongs to the original author. This site does not assume corresponding legal responsibility. If you find any content suspected of plagiarism or infringement, please contact admin@php.cn

Hot AI Tools

Undress AI Tool

Undress AI Tool

Undress images for free

Undresser.AI Undress

Undresser.AI Undress

AI-powered app for creating realistic nude photos

AI Clothes Remover

AI Clothes Remover

Online AI tool for removing clothes from photos.

Clothoff.io

Clothoff.io

AI clothes remover

Video Face Swap

Video Face Swap

Swap faces in any video effortlessly with our completely free AI face swap tool!

Hot Tools

Notepad++7.3.1

Notepad++7.3.1

Easy-to-use and free code editor

SublimeText3 Chinese version

SublimeText3 Chinese version

Chinese version, very easy to use

Zend Studio 13.0.1

Zend Studio 13.0.1

Powerful PHP integrated development environment

Dreamweaver CS6

Dreamweaver CS6

Visual web development tools

SublimeText3 Mac version

SublimeText3 Mac version

God-level code editing software (SublimeText3)

Ouyi download tutorial Ouyi latest version download tutorial (full version) Ouyi download tutorial Ouyi latest version download tutorial (full version) Jun 18, 2025 pm 07:39 PM

As the world's leading cryptocurrency exchange, OKX provides a safe and reliable trading environment and a rich variety of digital assets. 1. Visit the official website www.okx.com to download the application; 2. Select the Android or iOS version according to the device; 3. Install the application and complete registration or login; 4. Enable two-factor verification to ensure account security. The platform supports spot trading, leveraged trading, contract trading, DeFi, OKX Earn financial management and NFT market.

Official correct address of Ouyi Exchange APP Official correct address of Ouyi Exchange APP Jun 17, 2025 pm 01:24 PM

To obtain the official correct address of the Ouyi Exchange APP, you need to go through the following three official channels: 1. Download the official website, visit the official domain name [adid]fe9fc289c3ff0af142b6d3bead98a923[/adid] and download the corresponding system version; 2. Follow the official social media account to obtain the latest download information; 3. Contact the official customer service to confirm. At the same time, users should be alert to phishing websites, check domain names, install antivirus software, enable secondary verification and avoid leakage of personal information to ensure account security.

gate.io official website latest address gate.io web version latest login portal gate.io official website latest address gate.io web version latest login portal Jun 24, 2025 pm 07:00 PM

Gate.io is a safe and reliable digital asset trading platform, and users should access it through their official address to avoid security risks. To ensure the security of your account, please use a secure network environment, enable two-factor verification, change your password regularly, beware of phishing websites and fraudulent information, and check the official email address. Gate.io provides a wide range of transaction types, contract trading, financial management and lending, Startup's first release platform, independently developed GateChain public chain, multiple security guarantees, 7x24-hour customer service support, and a fully functional mobile app. To start using Gate.io, you can access its official website to register an account, complete real-name authentication, top up and start trading.

2025's latest top ten virtual digital currency trading platform software recommendations 2025's latest top ten virtual digital currency trading platform software recommendations Jun 19, 2025 pm 12:00 PM

Choosing a reliable cryptocurrency trading platform is crucial to ensure transactions are secure, reduce costs and enhance the experience. The top ten exchanges in 2025 include: 1. OKX, with powerful technology and a variety of trading methods; 2. Binance, large trading volume and perfect ecology; 3. Huobi, focusing on compliance and user expansion; 4. Coinbase, suitable for novices; 5. Kraken, high security and low fees; 6. Bitfinex, aimed at professional users; 7. Bybit, focusing on derivatives; 8. KuCoin, rich currency; 9. Gemini, strict supervision; 10. Gate.io, providing innovative products. When choosing, you should pay attention to security, transaction volume, handling fees, currency, user experience, customer service and compliance.

The latest ranking of secure digital currency app software. Take stock of the secure virtual currency trading app in 2025 The latest ranking of secure digital currency app software. Take stock of the secure virtual currency trading app in 2025 Jun 19, 2025 am 11:54 AM

Cryptocurrency traders should choose a safe and reliable and versatile trading platform to ensure asset security and trading efficiency. 1. OKX: a global leading platform, providing a variety of trading methods such as spot and contracts, and supporting convenient registration and identity verification processes; 2. Binance: is known for its low fees and rich currency, suitable for global users; 3. Huobi: has a long history, high security, and diverse products; 4. Coinbase: has a friendly interface and strong compliance, suitable for beginners; 5. Kraken: is known for its professionalism and transparency; 6. KuCoin: has a rich currency and provides a variety of reward plans; 7. Bitfinex: is aimed at professional users, providing leveraged trading; 8. Gate.io: Innovative products and

Which virtual digital currency trading platform is better? Recommended by the top ten digital currency app exchanges Which virtual digital currency trading platform is better? Recommended by the top ten digital currency app exchanges Jun 19, 2025 pm 12:12 PM

Choosing the right virtual digital currency trading platform is crucial. The top ten mainstream platforms recommended include OKX, Binance, Huobi, Coinbase, Kraken, Bitfinex, Gate.io, KuCoin, Bybit and MEXC. 1. OKX provides a wide range of trading products and financial products; 2. Binance is known for its low fees and strong trading engine; 3. Huobi supports a variety of trading services such as spot and contracts; 4. Coinbase is suitable for beginners; 5. Kraken is highly secure; 6. Bitfinex has good trading depth; 7. Gate.io has a friendly user interface; 8. KuCoin supports a variety of small currencies;

Top 10 digital virtual currency trading platforms What are the easy currency trading apps? Top 10 digital virtual currency trading platforms What are the easy currency trading apps? Jun 19, 2025 pm 12:03 PM

When choosing a reliable cryptocurrency trading platform, you must give priority to security, fees, currency and functions. The top ten reliable platforms in 2025 include OKX, Binance, Huobi, Coinbase, Kraken, KuCoin, Bitfinex, Gemini, Bitstamp and Crypto.com. They each have their own characteristics. For example, OKX provides a variety of transaction methods and focuses on security; Binance is known for its low handling fees; Coinbase is suitable for beginners; Kraken and Gemini emphasize compliance and security, etc. When choosing, you should consider the following five points: 1. Security: Check whether you have dual-factor certification, cold storage and other measures; 2. Transaction fees: Compare the rates of different platforms and

Recommended Top Ten Cryptocurrency Trading Platforms in 2025 Summary of the Top Ten Cryptocurrency Exchange List Recommended Top Ten Cryptocurrency Trading Platforms in 2025 Summary of the Top Ten Cryptocurrency Exchange List Jun 19, 2025 pm 12:15 PM

The top ten exchanges in 2025 include: 1. OKX, leading with technical strength and diverse trading methods; 2. Binance, famous for its rich currency and large trading volume; 3. Huobi, focusing on compliance and expanding the ecosystem; 4. Coinbase, a user-friendly platform suitable for beginners; 5. Kraken, recognized for security and low fees; 6. Bitfinex, an advanced tool for professional traders; 7. Bybit, focusing on derivatives and high leverage trading; 8. KuCoin, providing a wide range of currency options; 9. Gemini, emphasizing regulatory compliance and institutional services; 10. Gate.io, covering multiple transactions