Home North Korean hackers BlueNoroff blamed for cyber attack on Canadian gambling firm

North Korean hackers BlueNoroff blamed for cyber attack on Canadian gambling firm

BlueNoroff, the infamous North Korean hacking group, is utilizing deepfakes and fake Zoom calls in a cunning social engineering scheme to steal cryptocurrency. 

Posing as trusted contacts, the BlueNoroff group has tricked employees into downloading malware onto their macOS devices.

Reports from threat researchers at cybersecurity experts Huntress and Field Effect found that on at least two occasions, threat actors associated with the North Korean-linked advanced persistent threat (APT) group, posing as known external contacts, contacted the employees and asked to set up a Zoom call. 

In both cases, the executives agreed.

According to cybersecurity firms Huntress and Field Effect, in two recent cases, attackers contacted employees of an unnamed Canadian online gambling provider and a crypto foundation, requesting Zoom or Google Meet calls. 

During one call, an executive was misled into running a supposed “audio repair tool” that installed malware, giving hackers system control. In another, a fake Zoom domain delivered a group call with deepfakes of senior leaders, prompting the employee to download macOS malware via a malicious link.

Consistent pattern of targeting financial institutions and companies

The researchers have intimated that the malware (once installed) enables the malicious actors to gather sensitive information from the gambling provider’s networks, including login credentials, cookies, and history.

This indicates the hackers are seeking out crypto and other assets, as well as harvestable data.

BlueNoroff, also referred to as APT38, Stardust Chollima, and BeagleBoyz, is a faction of the wider state-sponsored Lazarus Group collective. It is a crucial asset of the North Korean regime’s cybercrime operations to steal crypto, to fund its weapons programs, and to work around international sanctions.

It has been active since at least 2010.

“Focused on financial gain, the group has a consistent pattern of targeting financial institutions, the cryptocurrency ecosystem, gaming and entertainment industry, and fintech companies with primary targets in South Korea, Japan, North America, and Europe,” stated the Ottawa-based Field Effects researchers. 

Image credit: Grok/X

About ReadWrite’s Editorial Process

The ReadWrite Editorial policy involves closely monitoring the gambling and blockchain industries for major developments, new product and brand launches, game releases and other newsworthy events. Editors assign relevant stories to in-house staff writers with expertise in each particular topic area. Before publication, articles go through a rigorous round of editing for accuracy, clarity, and to ensure adherence to ReadWrite's style guidelines.

Graeme Hanna
Tech Journalist

Graeme Hanna is a full-time, freelance writer with significant experience in online news as well as content writing. Since January 2021, he has contributed as a football and news writer for several mainstream UK titles including The Glasgow Times, Rangers Review, Manchester Evening News, MyLondon, Give Me Sport, and the Belfast News Letter. Graeme has worked across several briefs including news and feature writing in addition to other significant work experience in professional services. Now a contributing news writer at ReadWrite.com, he is involved with pitching relevant content for publication as well as writing engaging tech news stories.

Get the biggest iGaming headlines of the day delivered to your inbox

    By signing up, you agree to our Terms and Privacy Policy. Unsubscribe anytime.

    Gambling News

    Explore the latest in online gambling with our curated updates. We cut through the noise to deliver concise, relevant insights, keeping you informed about the ever-changing world of iGaming and its most important trends.

    In-Depth Strategy Guides

    Elevate your game with tailored strategies for sports betting, table games, slots, and poker. Learn how to maximize bonuses, refine your tactics, and boost your chances to beat the house.

    Unbiased Expert Reviews

    Honest and transparent reviews of sportsbooks, casinos and poker rooms crafted through industry expertise and in-depth analysis. Delve into intricacies, get the best bonus deals, and stay ahead with our trustworthy guides.