Coinbase收紧员工安全措施,应对朝鲜远程工作者威胁。
Coinbase Tightens Workforce Security After North Korea Remote-Worker Threats

原始链接: https://www.zerohedge.com/crypto/coinbase-tightens-workforce-security-after-north-korea-remote-worker-threats

Coinbase 正在面临来自朝鲜黑客的网络威胁激增,他们试图通过远程工作申请渗透该公司。首席执行官布莱恩·阿姆斯特朗透露,朝鲜 IT 工作人员,通常受到政权胁迫,正在进行协同努力,以获取对敏感系统的访问权限并窃取加密货币。 作为回应,Coinbase 正在加强安全措施,包括对所有员工进行强制性的美国现场培训,以及对访问关键数据的人员要求美国公民身份/指纹识别。此前,该公司最近发生了一起数据泄露事件,可能导致交易所损失高达 4 亿美元,并引发了对用户安全的担忧,这不仅仅是财务损失——还包括由于个人信息泄露而可能造成的实际威胁。 这个问题不仅仅局限于 Coinbase;朝鲜特工最近从其他加密货币公司窃取了 90 万美元。Coinbase 也是 2024 年美国网络钓鱼攻击中最常被冒充的品牌,这凸显了保持警惕的持续需求。

相关文章

原文

Authored by Zoltan Vardai via CoinTelegraph.com,

Coinbase, the world’s third-largest cryptocurrency exchange by volume, has come under a wave of threats from North Korean hackers seeking remote employment with the company.

North Korean IT workers are increasingly targeting Coinbase’s remote worker policy to gain access to its sensitive systems.

In response, Coinbase CEO Brian Armstrong is rethinking the crypto exchange’s internal security measures, including requiring all workers to receive in-person training in the US, while people with access to sensitive systems will be required to hold US citizenship and submit to fingerprinting.

“DPRK is very interested in stealing crypto,” Armstrong told Cheeky Pint podcast host John Collins in a Thursday episode. “We can collaborate with law enforcement […] but it feels like there’s 500 new people graduating every quarter, from some kind of school they have, and that’s their whole job.”

He added that some operatives are coerced into working for the regime. “In many of these cases, it’s not the individual person’s fault. Their family is being coerced or detained if they don’t cooperate,” said Armstrong.

Brian Armstrong on the Cheeky Pint podcast. Source: YouTube

Armstrong’s comments come amid a wave of rising North Korean cyber activity beyond Coinbase.

In June, four North Korean operatives infiltrated multiple crypto firms as freelance developers, stealing a cumulative $900,000 from these startups, Cointelegraph reported.

Armstrong’s new measures come three months after the exchange confirmed that less than 1% of its transacting monthly users were affected by a data breach, which may cost the exchange up to $400 million in reimbursement expenses, Cointelegraph reported on May 15.

However, the “human cost” of this data breach may be much higher for users, according to Michael Arrington, the founder of TechCrunch and Arrington Capital, who highlighted that the breach included home addresses and account balances, leading to potential physical attacks.

Source: Michael Arrington

Among all United States crypto firms, the Coinbase brand was most impersonated in phishing attacks in 2024, fraudulently used across 416 reported phishing scams in the four previous years, according to a Mailsuite report shared with Cointelegraph.

US brands most impersonated by scammers. Source: Mailsuite

Accounting for all US brands, Facebook’s parent company, Meta, was the most impersonated brand by scammers, appearing in at least 10,457 reported scam incidents during the past four years.

The US Internal Revenue Service was the second on the list, having been impersonated in at least 9,762 scams.

联系我们 contact @ memedata.com