Connect with us
DAPA Banner

Crypto World

Bitrefill Links Lazarus Group to Employee Laptop Hack, Stolen Funds

Published

on

Crypto Breaking News

Bitrefill, a crypto-enabled e-commerce platform that lets customers spend digital assets on real-world products and gift cards, disclosed a cybersecurity incident that occurred on March 1. The breach enabled attackers to compromise an employee’s laptop by deploying malware and reusing existing IP and email infrastructure, which in turn granted access to hot wallets and the ability to drain funds. In addition to financial losses, Bitrefill confirmed that information tied to about 18,500 purchases was exposed, potentially revealing limited customer data. Crucially, the company said there is no evidence that the attackers extracted the entire database, suggesting the objective was financial rather than data exfiltration on a wholesale scale. Investigators have pointed to BlueNoroff Group, a North Korean hacking outfit with close ties to the Lazarus Group, as a possible participant or sole attacker in the incident.

Key takeaways

  • The breach occurred on March 1 and targeted an employee’s laptop via malware, with attackers leveraging reused IP and email infrastructure to gain a foothold.
  • Attackers deployed on-chain tracing techniques and accessed Bitrefill’s hot wallets to drain funds, while attempting to map accessible assets.
  • Data exposure affected roughly 18,500 purchase records, but Bitrefill asserts that the full customer database was not accessed and that only limited customer information may have been disclosed.
  • There is attribution to North Korea-linked groups, notably BlueNoroff Group with ties to Lazarus Group, as potential participants or sole operators behind the attack.
  • Bitrefill halted systems to contain the breach, engaged law enforcement, and collaborated with multiple security firms to strengthen defenses and detection capabilities.
  • Operations have largely returned to normal, with Bitrefill reporting that payments, inventory, and customer services are functioning, accompanied by ongoing security enhancements.

Tickers mentioned:

Sentiment: Neutral

Market context: The incident sits within a broader pattern of persistent cybersecurity threats facing crypto platforms, underscored by well-funded actors like Lazarus Group and its affiliated outfits. Lazarus remains associated with some of the most high-profile intrusions in the sector, including a noted $1.4 billion breach on a major exchange in February 2025, which has shaped industry risk perceptions and driven heightened security investments across the ecosystem.

Why it matters

The Bitrefill incident underscores how even firms built around rapid, on-demand crypto services must maintain rigorous operational security and incident response protocols. The attack vector—malware, credential reuse, and compromised hardware—highlights the need for layered defenses that extend beyond perimeter protections to include robust endpoint monitoring, strict access controls, and rapid containment measures. In the wake of the breach, Bitrefill not only contained the immediate risk by taking systems offline but also engaged external security partners to conduct comprehensive reviews and implement enhancements. This approach aligns with a broader industry trend: attackers are increasingly adept at blending traditional cyber techniques with on-chain reconnaissance to maximize impact, even on businesses that otherwise operate with strong security postures.

Advertisement

The incident also illustrates the tension between preserving customer trust and absorbing losses when underwrite costs fall to operational budgets. Bitrefill indicated that it would absorb the losses from its working capital, a decision that could reverberate through risk management discussions in the sector. For users, the event reinforces the importance of monitoring transaction activity, staying alert for unusual account behavior, and understanding that security incidents can surface even when providers are actively investing in defense. For operators and builders, it emphasizes the value of proactive third-party security audits, ongoing staff training, and the adoption of least-privilege access models to limit the blast radius of any future breach.

From a regulatory and policy standpoint, the disclosure and coordinated response with law enforcement signal ongoing collaboration between private firms and public authorities in addressing cross-border cyber threats. The Lazarus-linked threat landscape has long compelled exchanges and wallets to prioritize threat intel sharing, user notification protocols, and rapid incident communications to minimize damage and preserve market integrity. While Bitrefill’s experience is not unique, it contributes to a growing corpus of case studies that underscore the need for transparent post-incident reporting and verifiable security hardening measures in real time.

What to watch next

  • Bitrefill’s ongoing security reviews and any published audit findings from the partnering firms (Security Alliance, FearsOff Security, Recoveris.io, and zeroShadow).
  • Updates on how the company enhances internal access controls and monitoring capabilities to reduce the likelihood of a recurrence.
  • Law enforcement disclosures or official statements that could shed further light on the attribution and motive behind the attack.
  • Any public posts or supplementary communications from Bitrefill clarifying the status of customer data exposure and steps available to users who may have concerns.
  • Industry-wide responses to similar intrusions, including changes in security practices, incident response playbooks, and cross-organization threat intelligence sharing.

Sources & verification

  • Bitrefill’s official post on X detailing the breach, its scope, and immediate response
  • Statements naming BlueNoroff Group and Lazarus Group as potential actors and their relation to the Lazarus ecosystem
  • Public references to the security firms engaged in mitigating the incident: Security Alliance, FearsOff Security, Recoveris.io, zeroShadow
  • Bitrefill’s note that the breach did not appear to access the entire customer database and that the losses will be absorbed from operational capital

Bitrefill breach highlights security lessons for the crypto retail ecosystem

Bitrefill’s experience is a stark reminder that cyber threats targeting crypto-enabled businesses are multifaceted, blending classic malware and credential theft with blockchain-focused reconnaissance. The company’s rapid containment, coupled with its collaboration with multiple security specialists, demonstrates a practical model for incident response that others in the space can emulate. While the attackers’ apparent objective seems financial, the exposure of tens of thousands of purchase records—under a platform that bridges crypto wallets with everyday purchases—serves as a cautionary note about data leakage, privacy considerations, and the ongoing need for rigorous access governance.

In the broader crypto market, the incident dovetails with a continuing pattern where high-profile breaches test the limits of security controls and force operators to balance customer trust with practical risk management. The Bybit event cited in industry chatter underscores a particularly aggressive threat landscape, where attackers leverage sophisticated techniques and persistent campaigns. As platforms expand services, including gift cards and fiat-onramps, the imperative to secure the end-to-end user journey—from authentication to transaction settlement—becomes more pronounced. Bitrefill’s commitment to a thorough security upgrade, including external audits and tightened internal processes, aligns with a prudent standard for the sector in 2026 and beyond.

Risk & affiliate notice: Crypto assets are volatile and capital is at risk. This article may contain affiliate links. Read full disclosure

Advertisement

Source link

Continue Reading
Click to comment

You must be logged in to post a comment Login

Leave a Reply

Crypto World

Bitcoin price outlook: Citigroup predicts $112K despite regulatory roadblocks

Published

on

Bitcoin price outlook: buy signals appear
Bitcoin nears $74K as Citi cuts target to $112K. Regulatory delays and market risks shape the crypto outlook now.
  • Citigroup forecasts Bitcoin at $112,000 despite slow US crypto legislation.
  • Bitcoin price ranges show cautious momentum with potential volatility ahead.
  • Institutional demand remains key amid regulatory uncertainty.

Bitcoin has been steadily climbing over the past week, with its price now sitting around $74,000.

This marks a 6.5% increase over the last seven days, showing renewed momentum after several months of sideways movement.

Citigroup, in its latest update, adjusted its 12-month price forecast for Bitcoin to $112,000, from its previous target of around $143,000.

Citi’s move reflects a cautious optimism shaped by both market dynamics and regulatory developments.

Regulatory headwinds weigh heavily

One of the main reasons for Citigroup’s revised forecast is the slow progress on US cryptocurrency legislation. Lawmakers have yet to finalize clear rules on key issues like stablecoins and decentralized finance.

Advertisement

This lack of clarity is affecting institutional adoption.

Investment firms and hedge funds are hesitant to increase exposure without clear regulatory guidance. The window for passing meaningful crypto laws in the Senate is narrowing.

Internal political divisions are slowing the process further.

Without these legislative catalysts, the market may continue to trade in ranges despite overall optimism.

Advertisement

Citigroup notes that this legislative uncertainty could act as a ceiling for Bitcoin in the near term. Even with strong demand from retail and institutional investors, clear rules are needed to support sustained growth.

What traders should watch out for

Ethereum, Bitcoin’s closest competitor, is also experiencing slower growth due to similar challenges.

Citigroup lowered Ethereum’s 12-month target to $3,175, down from over $4,000. Both cryptocurrencies are influenced by network activity and investor demand, which have shown signs of weakening.

Currently, Bitcoin is trading within a 24-hour range of $73,500 to $74,800, showing relatively stable momentum.

Advertisement

Over the past week, it has moved between $69,000 and $75,600, indicating that volatility is still present.

Citigroup outlines several potential scenarios for Bitcoin’s trajectory. In a bear case, a broader economic downturn or continued regulatory delays could push the price toward $58,000.

On the other hand, strong investor interest and institutional flows could drive it up to $165,000.

These scenarios suggest a wide range of outcomes, highlighting the risks and opportunities for traders.

Advertisement

Even in the base case, Bitcoin is expected to trade around $112,000 within 12 months if adoption trends continue and market confidence improves.

This makes it an attractive, though still volatile, asset for those looking to participate in the cryptocurrency market.

The road ahead is clearly influenced by policy decisions, investor sentiment, and market activity, and traders will need to watch for both regulatory developments and demand signals to navigate this landscape successfully.

Source link

Continue Reading

Crypto World

Major Governance Platform Tally Announces Shutdown Amid Regulatory Shifts

Published

on

Major Governance Platform Tally Announces Shutdown Amid Regulatory Shifts


Tally announced its shutdown amid the shifting regulatory climate regarding cryptocurrencies in the US.

The regulatory climate in the US is shifting, and although many consider it for the better, the changes are already taking effect.

Tally, a governance tooling platform that’s used by more than 500 decentralized autonomous organizations (DAOs), including Uniswap, Ethereum Name Service (ENS), and Arbitrum, announced that it will be shutting down after more than five years of operations.

Advertisement

In a video posted on X, the CEO of Tally, Dennison Bertram, outlined some reasons for the decision to wind down operations.

The move comes just as the SEC and the CFTC issued joint guidance clarifying that most cryptocurrencies are not securities, a major de-risking event for the entire industry.

While the previous administration pushed many projects toward a decentralized structure in the form of a DAO to reduce legal risk, the current, more relaxed environment has reduced demand for DAO governance, as Wu Blockchain noted in its commentary on the news.

Advertisement

Tally will not be conducting an ICO. Bertram said that continuation plans are already in the works with all of the firm’s enterprise clients, while the interface will remain operational for them as needed.

SPECIAL OFFER (Exclusive)

Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

Advertisement

Source link

Continue Reading

Crypto World

More Australians Pay With Crypto But Bank Restrictions Grow

Published

on

More Australians Pay With Crypto But Bank Restrictions Grow

More Australians reported using cryptocurrency to pay for goods and services in 2026 compared to the year before, but banking friction has continued to weigh on crypto users, according to a newly published report by crypto exchange Independent Reserve.

The annual survey of 2,000 “everyday Australians” was conducted between Jan. 12 and Jan. 30.

It found that the share of Australians using crypto to buy goods or pay for services doubled from 6% to 12%, with the report suggesting “more Aussies are viewing crypto as a practical payment method rather than just a speculative bet.”

Among the respondents who used crypto for goods and services, 21% reported using crypto for online shopping, making it the leading real-world use case.

Advertisement

Another 16% said they used crypto to pay for services such as freelancing and video game purchases.

Despite growing adoption, barriers remain, with some citing a lack of education and training, and the technology being too complex to use.

Online shopping was the main use case for crypto among survey respondents. Source: Independent Reserve

Banking issues on the rise 

Beyond complexity, banking blocks were highlighted as a significant obstacle. A Binance survey last year found that users faced banking barriers when engaging with exchanges and crypto businesses — a problem the Independent Reserve’s survey respondents also flagged. 

Around 30% of investors said they have experienced delays or rejections when trying to buy cryptocurrency or transfer funds to a crypto exchange at least once, compared with 19.3% in 2025.

Banking restrictions on crypto transactions in Australia tightened around 2023, when major banks, including Commonwealth Bank and National Australia Bank, introduced measures such as payment delays, caps on transfers to crypto exchanges and additional identity checks.

Advertisement

Younger investors reported more trouble with transaction delays than their older counterparts, and those making smaller transactions reported greater interference.

Younger users reported higher instances of banking interference when trying to buy crypto. Source: Independent Reserve

“For many Australians, the lack of regulation hits home when a payment to a crypto exchange is delayed or blocked, an issue that has continued to rise for another year,” the report authors said.

“These interruptions affect both consumers and businesses, showing how cautious banks are with crypto when the rules aren’t clear.”

Clear licensing and regulation are the solution

The report said the findings suggest that banks have not relaxed their posture toward crypto and may be refining their approach by focusing on user behavior and transaction patterns instead of transaction size, underscoring the growing need for regulatory clarity.

Related: Crypto lobby slams Australian broadcaster’s ‘sensational’ Bitcoin article

“Clear licensing and regulation can help fix this. By setting high standards for crypto operators, banks would have more confidence that transactions are legitimate,” they added.

Advertisement

“For Australia’s blockchain industry, which has faced banking hurdles for over a decade, effective regulation could finally bridge the gap between exchanges and banks, giving investors and businesses more certainty and reliability.”

Crypto executives told Cointelegraph last month that Australia’s crypto market is making progress in user growth and regulatory reforms, but there are still a range of issues to iron out.

Magazine: Clarity Act risks repeat of Europe’s mistakes, crypto lawyer warns