Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnSquareMore
North Korea has infiltrated up to 20% of crypto firms, security expert says

North Korea has infiltrated up to 20% of crypto firms, security expert says

Crypto.NewsCrypto.News2025/11/22 16:00
By:By Vignesh KarunanidhiEdited by Anthony Patrick

Up to one-fifth of all crypto companies may have North Korean workers embedded in their operations, a security expert warned at Devconnect in Buenos Aires.

Summary
  • Up to 20% of crypto companies may unknowingly have North Korean workers embedded.
  • An estimated 30–40% of crypto job applicants are DPRK attempts to infiltrate firms.
  • North Korea has stolen over $3B in crypto in three years, funding nuclear programs.

Pablo Sabbatella, who founded web3 audit firm Opsek and serves as a Security Alliance member, shared estimates that suggest the problem extends far beyond isolated incidents.

Job applications flooding into crypto firms show an even more troubling picture. Sabbatella estimates that roughly 30% to 40% of applicants are North Korean attempts at gaining employment.

Sanctions evasion through identity theft schemes

International sanctions prevent North Koreans from applying for jobs under their real identities. The workaround involves recruiting people in other countries to serve as fake employees.

Freelance platforms like Upwork and Freelancer have become hunting grounds for these recruiters, who target workers in Ukraine, the Philippines, and similar nations.

The arrangement splits earnings 80-20, with the North Korean agent taking the larger share. Collaborators provide verified credentials or allow remote use of their identity.

U.S. companies face particular targeting. North Korean agents claim to be non-English speaking Chinese applicants who need interview assistance.

The “front person” gets their computer infected with malware during this process and grants the agent access to American IP addresses and overall internet access than North Korea allows.

Companies often retain these workers long-term. “They work well, they work a lot, and they never complain,” Sabbatella told local news. Performance keeps suspicions low while access to sensitive systems grows.

Weak security practices enable massive theft operations

Pyongyang’s cyber operations have netted over $3 billion in stolen cryptocurrency across three years, according to U.S. Treasury Department figures from November.

The stolen funds flow directly into North Korea’s nuclear weapons development programs.

Sabbatella placed blame squarely on industry practices. Crypto companies show weaker operational security than any other computing sector, he argued.

Founders publicly reveal their identities, mishandle private keys, and succumb to manipulation tactics.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

Bolivia’s Digital Currency Bet: Navigating Volatility with Stable Solutions

- Bolivia's government permits banks to custody cryptocurrencies and offer crypto-based services, reversing a 2020 ban to combat inflation and dollar shortages. - Stablecoin transactions surged 530% in 2025, with $14.8B processed as Bolivians use USDT to hedge against boliviano depreciation (22% annual inflation). - State-owned YPFB and automakers like Toyota now accept crypto payments, while Banco Bisa launches stablecoin custody to expand financial inclusion for unbanked populations. - The policy faces c

Bitget-RWA2025/11/27 07:10
Bolivia’s Digital Currency Bet: Navigating Volatility with Stable Solutions

Switzerland's Postponement of Crypto Tax Highlights Worldwide Regulatory Stalemate

- Switzerland delays crypto tax data sharing until 2027 due to ongoing political negotiations over OECD CARF partner jurisdictions. - Revised rules require crypto providers to register and report client data by 2026, but cross-border data exchange remains inactive until 2027. - Global alignment challenges exclude major economies like the U.S., China, and Saudi Arabia from initial data-sharing agreements. - Domestic legal framework passed in 2025, but partner jurisdiction negotiations delay implementation u

Bitget-RWA2025/11/27 07:10
Switzerland's Postponement of Crypto Tax Highlights Worldwide Regulatory Stalemate

Visa and AquaNow Upgrade Payment Infrastructure through Stablecoin Integration

- Visa partners with AquaNow to expand stablecoin settlement in CEMEA via USDC , aiming to cut costs and settlement times. - The initiative builds on a $2.5B annualized pilot program, leveraging stablecoins to modernize payment infrastructure. - Visa's multicoin strategy aligns with industry trends, as regulators and competitors like Mastercard also explore stablecoin integration. - Regulatory progress in Canada and risks like volatility highlight evolving opportunities and challenges in digital asset adop

Bitget-RWA2025/11/27 07:10
Visa and AquaNow Upgrade Payment Infrastructure through Stablecoin Integration

Bitcoin Updates: Large Holder Liquidations and Retail Investor Anxiety Lead to a Delicate Equilibrium in the Crypto Market

- A long-dormant crypto whale sold 200 BTC after a 3-year hibernation, intensifying market scrutiny over investor sentiment and liquidity shifts. - Bitcoin struggles above $92,000 amid weak technical indicators, mixed ETF flows ($74M inflow for BTC vs. $37M ETH outflow), and diverging institutional/retail behaviors. - Whale activity highlights fragile market balance: large holders accumulate BTC while retail investors liquidate, with over $557M in BTC moved from Coinbase to unknown wallets. - Technical bea

Bitget-RWA2025/11/27 07:10