Skynet DPRK Crypto Threats Report: North Korea-Linked Hackers Stole $6.75 Billion in Crypto Since 20
NEW YORK, May 13, 2026 (GLOBE NEWSWIRE) -- CertiK today released its latest report analyzing North Korea's role in cryptocurrency-related cybercrime, revealing that DPRK-linked threat actors have stolen an estimated $6.75 billion across 263 incidents between 2016 and early 2026. The findings highlight the evolution of state-sponsored cyber operations into a sustained, industrial-scale revenue stream.
The report underscores a structural shift in the threat landscape: fewer attacks, but significantly higher impact, with North Korea consistently responsible for the largest and most sophisticated exploits in the digital asset ecosystem.
A Disproportionate Share of Global Losses
According to the report, the broader crypto ecosystem recorded 656 security incidents in 2025, resulting in $3.4 billion in total losses. Of these, 79 incidents (12%) were attributed to DPRK-linked actors, yet they accounted for $2.06 billion, or approximately 60% of all funds stolen. This imbalance reflects a deliberate strategy focused on high-value targets, rather than volume.
The report also highlights a series of increasingly large exploits, culminating in the $1.5 billion Bybit hack in February 2025, the largest cryptocurrency theft on record. Additional case studies, including the $625 million Ronin Bridge exploit (2022) and the $285 million Drift Protocol attack, illustrate a steady escalation in technical sophistication and financial impact.
The trend has continued into 2026. From January onward, 185 incidents resulted in approximately $1.1 billion in total losses, with $620.9 million (55%) attributed to DPRK actors. A significant portion of this figure stems from the $291 million KelpDAO exploit, further reinforcing the concentration of losses among a small number of high-value attacks.
Human Vulnerabilities, Not Code, Remain the Primary Target
A key finding of the report is that DPRK-linked attacks rarely rely on exploiting smart contract vulnerabilities. Instead, they consistently target human and operational weaknesses.
Social engineering remains the dominant entry point, including fake job offers, impersonation of venture capital firms, and compromised developer environments. In parallel, supply chain attacks have emerged as a defining tactic. The Bybit incident demonstrated that even institutional-grade multisignature wallets can be compromised by targeting trusted third-party infrastructure rather than the underlying code.
Laundering Infrastructure Operates at Industrial Scale
Beyond initial compromise, DPRK-linked actors have developed a highly efficient laundering pipeline. Within one month of the Bybit exploit, 86.29% of stolen ETH had been converted into Bitcoin, using a combination of mixing services, cross-chain bridges, decentralized exchanges, and over-the-counter (OTC) brokers.
This level of coordination points to a mature, systematized process designed to rapidly obfuscate and redistribute stolen assets.
Expanding Threat Surface Through Insider Infiltration
CertiK's report identifies a growing risk from insider threats. DPRK operatives have infiltrated DeFi projects under false identities, securing employment within target organizations. In several documented cases, these individuals have facilitated or enabled attacks from within, providing intelligence or direct access to critical systems.
National Security Implications
The findings reinforce that cryptocurrency theft linked to the DPRK extends beyond financial crime. According to international monitoring bodies and intelligence assessments, proceeds from these operations are used to support North Korea's nuclear and ballistic missile programs.
Full report: https://indd.adobe.com/view/595e40e3-3953-4d4b-aeaa-3e9954d5d844
- 2026年杭州无缝钢管新质引领发展高峰论坛圆满成功
- 让口罩成为“健康卫士”;嘉巷科技新突破,太赫磁波功能口罩问世
- 年轻新食代:速冻鲜饺让传统美味遇见现代营养学
- 价值投资,选清瓷!
- 春风送暖护民生 金融惠民传薪火——汝城县农发行开展学雷锋金融安全志愿行动
- “出海”!中医药成全球“网红”,背后的神秘力量是→
- 与光同行 奔赴未来 2024年国际冬季运动(北京)博览会闭幕
- “技术标兵”一步到位!节卡给你工厂“稳稳的幸福”
- 鑫海矿装荣登2025中国矿山设备50强,揭秘晨星工厂硬核实力
- 香港西方寺迎请珍贵长卷经典 开启弘法新篇章
- 芯原推出低功耗AI降噪与AI超分辨率系列IP
- NetApp任命科技行业泰斗Alessandra Yockelson为首席人力资源官
- 国美控股集团与帅猫体育联手打造全新台球娱乐场所
- 从单点智能到生态协同的跨越,AlphaGPT驱动法律行业转型
- 火星人集成灶:以多维度商标保护筑牢品牌防线,践行对消费者与投资者的责任
- EDC养生工作室:将个性化医疗带入平民家庭
- 刘诗诗受阿玛尼邀请参加米兰时装周,生图状态美到无可挑剔
- 健康鲜呼吸,澳柯玛2024空调新品正式发布
- 逗万品牌深圳书城发布会圆满落幕:以创新之力重塑书写价值,引领文具行业新方向
- 坚守合规经营底线 技术创新驱动清越科技稳健前行
- 凝聚‘八一’力量,传承红色基因——艺术家叶建童专题报道
- In Rapid Rise of AI, Employers Turn to Business School Graduates for Human Skills
- Sutherland与ComplyAdvantage推出AI原生“统一金融犯罪合规”解决方案,旨在打击日益复杂的新一代金融犯罪
- 农发行韶山市支行:以金融教育守护百姓“钱袋子”农发行韶山市支行:以金融教育守护百姓“钱袋子”
- Center for Disease Analysis Foundation获得John C. Martin Foundation 700万美元赠款以支持Polaris Observatory计划
- 乐乐趣“莉莉兰的小虫虫”IP推介会在2025CCBF圆满举办,创新互动体验备受瞩目!
- 嘀嗒出行(02559.HK)公布2025年全年业绩 经调整净利润达1.38亿元人民币
- 重磅!鸣望教育签约英国子午线英语,解锁中英教育合作新范式!
- 平安健康CFO臧珞琦亮相中国ESG30人论坛2024年会,分享公司ESG实践成果
- 科技赋能服务焕新,联众优车诠释汽车后市场新价值





