Close Menu
maincoin.money
    What's Hot

    Polygon, an Ethereum scaling network, is reportedly on the verge of acquiring the Bitcoin kiosk company Coinme, according to sources.

    January 8, 2026

    Bank of America Raises Coinbase Rating to ‘Buy’ as Exchange Expands Beyond Cryptocurrency

    January 8, 2026

    Severely Underappreciated Bitcoin Endures Ongoing Bear Market Without Clear Signs of Recovery

    January 8, 2026
    Facebook X (Twitter) Instagram
    maincoin.money
    • Home
    • Altcoins
    • Markets
    • Bitcoin
    • Blockchain
    • DeFi
    • Ethereum
    • NFTs
      • Regulation
    Facebook X (Twitter) Instagram
    maincoin.money
    Home»Markets»North Korea Shifts Focus to Attacking Entire Blockchains Such as Ethereum
    Markets

    North Korea Shifts Focus to Attacking Entire Blockchains Such as Ethereum

    Ethan CarterBy Ethan CarterOctober 19, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    North Korea Shifts Focus to Attacking Entire Blockchains Such as Ethereum
    Share
    Facebook Twitter LinkedIn Pinterest Email

    A novel cyber threat is emerging from North Korea as its state-sponsored hackers explore embedding harmful code directly into blockchain networks.

    On October 17, Google’s Threat Intelligence Group (GTIG) announced that this method, termed EtherHiding, signifies a new phase in how hackers conceal, distribute, and manage malware across decentralized systems.

    Sponsored

    Sponsored

    What is EtherHiding?

    GTIG clarified that EtherHiding enables attackers to weaponize smart contracts and public blockchains like Ethereum and BNB Smart Chain by utilizing them to store malicious payloads.

    Once a piece of code is uploaded to these decentralized ledgers, it becomes nearly impossible to remove or block due to their immutable nature.

    “While smart contracts offer innovative methods for building decentralized applications, their unchangeable nature is exploited in EtherHiding to host and deliver malicious code in a manner that cannot easily be blocked,” GTIG noted.

    In practice, hackers compromise legitimate WordPress sites, often by taking advantage of unpatched vulnerabilities or stolen credentials.

    After gaining access, they insert a few lines of JavaScript—referred to as a “loader”—into the website’s code. When a visitor opens the infected page, the loader seamlessly connects to the blockchain to retrieve malware from a remote server.

    EtherHiding on BNB Chain and Ethereum.
    EtherHiding on BNB Chain and Ethereum. Source: Google Threat Intelligence Group

    GTIG emphasized that this attack usually leaves no visible transaction trail and incurs minimal to no fees since it occurs off-chain. This effectively enables attackers to remain undetected.

    Sponsored

    Sponsored

    Notably, GTIG traced the initial instance of EtherHiding to September 2023, during a campaign known as CLEARFAKE, which deceived users with fake browser update prompts.

    How to Prevent the Attack

    Cybersecurity experts indicate that this tactic indicates a transformation in North Korea’s digital strategy, shifting from merely stealing cryptocurrency to utilizing blockchain itself as a stealth weapon.

    “EtherHiding signifies a transition towards next-generation bulletproof hosting, where the inherent characteristics of blockchain technology are repurposed for malicious purposes. This technique highlights the ongoing evolution of cyber threats as attackers adapt and exploit new technologies to their benefit,” GTIG stated.

    John Scott-Railton, a senior researcher at Citizen Lab, labeled EtherHiding as an “early-stage trial.” He cautioned that combining it with AI-driven automation could render future attacks significantly more challenging to detect.

    “I anticipate that attackers will also explore directly loading zero-click exploits onto blockchains aimed at systems & apps managing blockchains… especially if they are sometimes hosted on the same systems & networks that handle transactions / have wallets,” he added.

    This new attack vector could have serious repercussions for the crypto industry, considering the prolific nature of North Korean attackers.

    Data from TRM Labs indicates that North Korean-associated groups have already pilfered over $1.5 billion in crypto assets this year alone. Investigators believe these funds are used to finance Pyongyang’s military initiatives and evade international sanctions.

    In light of this, GTIG advised crypto users to mitigate their risk by blocking questionable downloads and restricting unauthorized web scripts. The group also urged security researchers to identify and label harmful code embedded within blockchain networks.

    Attacking Blockchains Entire Ethereum focus Korea North Shifts
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Avatar photo
    Ethan Carter

      Ethan is a seasoned cryptocurrency writer with extensive experience contributing to leading U.S.-based blockchain and fintech publications. His work blends in-depth market analysis with accessible explanations, making complex crypto topics understandable for a broad audience. Over the years, he has covered Bitcoin, Ethereum, DeFi, NFTs, and emerging blockchain trends, always with a focus on accuracy and insight. Ethan's articles have appeared on major crypto portals, where his expertise in market trends and investment strategies has earned him a loyal readership.

      Related Posts

      Polygon, an Ethereum scaling network, is reportedly on the verge of acquiring the Bitcoin kiosk company Coinme, according to sources.

      January 8, 2026

      Ethereum serves as the Linux platform for a decentralized Internet of Value.

      January 8, 2026

      Ethereum increases blob capacity in preparation for the Fusaka upgrade.

      January 8, 2026
      Ethereum

      Polygon, an Ethereum scaling network, is reportedly on the verge of acquiring the Bitcoin kiosk company Coinme, according to sources.

      By Ethan CarterJanuary 8, 20260

      Polygon is acquiring the bitcoin ATM provider for between $100 million and $125 million, as…

      Ethereum

      Bank of America Raises Coinbase Rating to ‘Buy’ as Exchange Expands Beyond Cryptocurrency

      By Ethan CarterJanuary 8, 20260

      Bank of America stated that it advised investors to purchase Coinbase’s stock, highlighting its recent…

      Ethereum

      Severely Underappreciated Bitcoin Endures Ongoing Bear Market Without Clear Signs of Recovery

      By Ethan CarterJanuary 8, 20260

      Analysts suggest that a significant rally may only occur once long-term holders have been depleted…

      Ethereum

      Zcash Governance Dispute Drove Down the Token’s Value: Here’s Why the Impact Might Be Overstated.

      By Ethan CarterJanuary 8, 20260

      Although the development team of Electric Coin Company has left to establish a new venture,…

      Recent Posts
      • Polygon, an Ethereum scaling network, is reportedly on the verge of acquiring the Bitcoin kiosk company Coinme, according to sources.
      • Bank of America Raises Coinbase Rating to ‘Buy’ as Exchange Expands Beyond Cryptocurrency
      • Severely Underappreciated Bitcoin Endures Ongoing Bear Market Without Clear Signs of Recovery
      • Zcash Governance Dispute Drove Down the Token’s Value: Here’s Why the Impact Might Be Overstated.
      • XRP ETFs Experience $40 Million in Outflows Following Eight Weeks of Inflows

      At MainCoin.Money, we cover everything from Bitcoin and Ethereum to the latest trends in Altcoins, DeFi, NFTs, blockchain technology, market movements, and global crypto regulations.

      Whether you’re a seasoned investor, a blockchain developer, or just curious about digital assets, our mission is to make crypto news accessible and reliable for everyone.

      Facebook X (Twitter) Instagram Pinterest YouTube
      Top Insights

      Polygon, an Ethereum scaling network, is reportedly on the verge of acquiring the Bitcoin kiosk company Coinme, according to sources.

      January 8, 2026

      Bank of America Raises Coinbase Rating to ‘Buy’ as Exchange Expands Beyond Cryptocurrency

      January 8, 2026

      Severely Underappreciated Bitcoin Endures Ongoing Bear Market Without Clear Signs of Recovery

      January 8, 2026
      Get Informed

      Subscribe to Updates

      Get the latest creative news from FooBar about art, design and business.

      Facebook X (Twitter) Instagram Pinterest
      • About Us
      • Contact us
      • Privacy Policy
      • Disclaimer
      • Terms and Conditions
      © 2026 maincoin.money. All rights reserved.

      Type above and press Enter to search. Press Esc to cancel.