North Korean Hackers Target NFT Investors with Massive Phishing Campaign
Hackers linked to North Korea’s Lazarus Group have reportedly been running a large-scale phishing campaign targeting non-fungible token (NFT) investors, using almost 500 phishing domains. Blockchain security firm SlowMist released a report revealing that the group, known as an Advanced Persistent Threat (APT), has been using decoy websites disguised as various NFT-related platforms and projects to dupe victims into thinking they are minting a legitimate NFT by connecting their wallet to the site, when in fact the NFT is fraudulent and the victim’s wallet is left vulnerable to the hacker. SlowMist said the campaign has been ongoing for several months