A cyber heist orchestrated by a North Korean hacking group has resulted in the theft of over $300 million worth of cryptocurrency from the Japan-based exchange DMM Bitcoin. The group, known as TraderTraitor and believed to be affiliated with the Lazarus Group, which has alleged ties to the Pyongyang authorities, carried out the theft, as confirmed by Japan’s National Police Agency and the FBI in the United States.
The Lazarus Group first gained infamy a decade ago when it was implicated in the hacking of Sony Pictures in retaliation for the release of “The Interview,” a satirical film mocking North Korean leader Kim Jong Un. This recent cryptocurrency heist demonstrates the group’s continued capacity for cyber attacks and financial theft.
The FBI released a statement detailing the orchestrated theft of $308 million worth of cryptocurrency from DMM by North Korean cyber actors. The operation involved targeted social engineering tactics, with a hacker posing as a recruiter on LinkedIn to contact an employee of a different crypto wallet software company. By sending a seemingly innocuous pre-employment test containing malicious code, the hacker was able to compromise the system and impersonate the employee, ultimately manipulating a legitimate transaction request by a DMM employee to siphon off the significant sum of Bitcoin.
The collaborative efforts of the FBI, Japan’s National Police Agency, and other international partners are focused on exposing and combatting North Korea’s utilization of cybercrime and cryptocurrency theft as revenue sources for the regime. The sophisticated cyber-warfare program operated by North Korea, dating back to the mid-1990s, now includes a formidable 6,000-strong cyber unit known as Bureau 121, operating from multiple countries, as reported by the US military in 2020.
This latest cyber heist underscores the ongoing threat posed by North Korean cyber actors and their capabilities to conduct large-scale financial thefts through intricate social engineering tactics. The international community remains vigilant in monitoring and combatting such illicit activities conducted by state-affiliated hacking groups for financial gain.

