Lazarus Group Poses As Fenbushi Capital For Phishing Scams, Lures Users Via Linkedin

Lazarus Group’s Latest Cyberattack: Impersonating Fenbushi Capital on LinkedIn


On April 29, 2023, the notorious North Korean hacker collective, Lazarus, gained renewed attention when blockchain security firm SlowMist revealed that the group had been masquerading as Fenbushi Capital, a well-known Asian venture capital firm specializing in investments in blockchain businesses. In an audacious cyber attack, Lazarus is believed to have targeted LinkedIn, the professional networking platform, employing intricate phishing tactics to ensnare unaware users.

Significantly, the Lazarus Group has added LinkedIn as a major tool in their cyber attacks, representing a new danger for users. It’s important to note that this hacking collective has recently begun focusing on crypto-related professionals through LinkedIn, according to reports from the mentioned blockchain security firm.

Lazarus Group Impersonates Fenbushi Capital

The Chief Information Security Officer at Slow Mist issued a warning in a recent post on X about a false LinkedIn account using the name ‘Nevil Bolson’ and falsely claiming to be the Founding Partner at Fenbushi. Users are advised to stay clear of this fake profile, as the authentic account belongs to ‘Remington Ong’.

As a researcher studying cybercrime, I find it fascinating how a false account manipulated users through phishing scams on a professional networking site. The account, disguised as an investment or conference opportunity, lured unsuspecting individuals into clicking malicious links. Regrettably, this is yet another addition to the extensive portfolio of illicit activities attributed to North Korean hacker groups. According to reports, these nefarious acts have caused financial losses totaling nearly $3 billion around the world.

Be cautious of the potential Lazarus attack targeting the fraudulent Fenbushi Capital profile on LinkedIn! @Fenbushi @SlowMist\_Team @boshen1011 @VitalikButerin

— 23pds (@im23pds) April 29, 2024

Lazarus Group’s Hacking Spree

Over the past few days, there have been reports of the Lazarus Group, a hacking organization believed to be backed by the North Korean government, engaging in various exploitation activities. Notably, they transferred $12 million worth of Ether through Tornado Cash, a cryptocurrency tumbler, around mid-March this year. This transaction has generated significant buzz within the crypto community.

As a researcher studying the cryptocurrency market, I’ve come across some concerning developments regarding Railgun (RAIL), the native token of a coin mixing platform. The recent revelation that Lazarus, an infamous cybercrime group, used this platform for illicit activities has raised red flags and cast doubt on RAIL’s future price stability. This incident serves as yet another reminder of the intricate issues surrounding blockchain technology, which continues to challenge users with its complexities despite its long-standing presence in the digital world.

Read More

2024-04-29 10:03