Crypto2Community
HomeCrypto NewsReviewsGuidesGamblingTradingPress Release

Crypto 2 Community

  • About Us
  • Editorial Policy
  • Why Trust Us
  • Contact Us
  • Privacy Policy
  • Submit a Press Release

Cryptocurrency

  • Best Cryptos to Buy Now
  • Best Crypto Exchanges
  • How To Buy Cryptocurrency
  • Best Crypto Wallets
  • Best Altcoins to Buy

Gambling

  • Best Bitcoin Casinos
  • Best Ethereum Casinos
  • Best Crypto Live Casinos
  • Best Crypto Faucet Casinos
  • Provably Fair Bitcoin Casinos

Best Platforms

  • eToro Review
  • BC.Game Review
  • Jackbit Review
  • Metaspins Review
  • CryptoLeo Review

© 2026 Crypto2Community.com

CAUTION: The content presented on this platform is not intended as financial guidance, and we lack the authorization to offer investment advice. Any material found on this website should not be construed as an endorsement or recommendation of any specific trading strategy or investment decision. The information provided herein is of a general nature, and therefore it is essential to evaluate it in the context of your objectives, financial circumstances, and requirements.

Investment activities involve speculation and entail inherent risks to your capital. This website is not intended for utilization in jurisdictions where the described trading or investment activities are prohibited, and it should only be accessed by individuals who are legally permitted to do so. Depending on your country or state of residence, your investment may not be eligible for investor protection, hence it is advisable to conduct thorough research independently or seek appropriate guidance. While this website is accessible to you free of charge, please note that we may receive commissions from the companies featured on this site.

Disclosure: 18+ Rules regarding online gambling vary from country to country, please ensure you are following them and gamble responsibly. The content on this website is provided for entertainment purposes only. We may utilise affiliate links within our content, and receive commission.

Home/Crypto News
Crypto News

North Korean Hackers Exploit Chrome Flaw to Steal Cryptocurrencies

Author
Syed Ali Haider
Syed Ali Haider
Crypto Writer
Fact Checked by Joshua Downes
Last updated: August 31, 2024
Cryptocurrency trading is speculative and your capital is at risk when you trade. We may earn affiliate commissions from some of the products on this page - at no extra cost to you.
TweetShareLinkedIn0
North Korean Hackers Exploit Chrome Flaw to Steal Cryptocurrencies

Highlights:

  • North Korean hackers exploit Chrome’s zero-day flaw to steal crypto assets.
  • Google fixed the vulnerability on August 21; users should update their browsers.
  • The hacking group was identified as Citrine Sleet, notorious for targeting the crypto industry.

According to a report published on August 30 by Microsoft’s cybersecurity team, a group of North Korean hackers known as the “Citrine Sleet” exploited a previous flaw in Google Chrome to steal cryptocurrency from people. 

Advertisement

Banner

🇰🇵 North Korean hackers exploited a zero-day flaw in Chrome to steal crypto – Google patched the bug on Aug 21

They stole $3B in crypto from 2017 to 2023 🤯

Hacker group creates fake websites masquerading as legitimate crypto trading platforms and uses them to distribute fake… pic.twitter.com/tIHiKOsOMF

— Rektology (@rektlogy) August 30, 2024

Microsoft first identified the cyberattack on August 19, when hackers exploited a vulnerability in the Chromium engine, the core code for Chrome and other popular browsers like Microsoft Edge. This type of flaw is known as a “Zero-day,” meaning Google was unaware of the issue and had no time to fix it before exploitation.

The team identified Citrine Sleet with “medium confidence.” The group targets the cryptocurrency sector and developed the AppleJeus trojan malware, also used by the Lazarus Group. This software is often disguised as job applications or crypto wallets. Once installed, it gives hackers control over the victim’s device, enabling them to steal cryptocurrency.

Google fixed this flaw on August 21, two days after Microsoft alerted them, so users should update their browsers. Microsoft has notified affected customers but has not disclosed how many organizations or individuals were affected by the attack.

How North Korean Gang Exploits Chrome

This was the third patched vulnerability of this type in Chromium this year. The hackers employed FudModule rootkit malware to gain remote code execution. The group then typically installed AppleJeus to collect information needed to control the target’s crypto assets. Chrome versions before 128.0.6613.84 are vulnerable to this attack.

The report stated:

“The threat actor creates fake websites masquerading as legitimate cryptocurrency trading platforms and uses them to distribute fake job applications or lure targets into downloading a weaponized cryptocurrency wallet or trading application based on legitimate applications.” 

Citrine Sleet was first detected in December 2022, when Microsoft named it DEV-0139. At that time, it created fake identities on Telegram, posing as OKX cryptocurrency exchange employees. Targets were asked to evaluate an Excel document with accurate information on various exchanges’ fee structures. The document also contained a malicious file that created a backdoor into their computer.

Microsoft identified a North Korean threat actor exploiting a zero-day vulnerability in Chromium (CVE-2024-7971) to gain remote code execution. Our assessment of ongoing analysis and observed infrastructure attributes this activity to Citrine Sleet. https://t.co/ITqOQpWn2v

— Microsoft Threat Intelligence (@MsftSecIntel) August 30, 2024

Investigators have also referred to Citrine Sleet as Chollima. Under this name, Kaspersky Labs discovered that it had compromised the 3CX softphone app, targeting cryptocurrency investment startups with AppleJeus.

Korean Hackers & Crypto Theft

In recent years, North Korean hackers have increasingly targeted the cryptocurrency sector. The United Nations Security Council estimates that between 2017 and 2023, they stole $3 billion in cryptocurrency. These cybercriminals have grown more sophisticated, frequently employing advanced techniques to exploit vulnerabilities in cryptocurrency exchanges and financial platforms.

North Korean hacking groups, including the notorious Lazarus Group, have been associated with several high-profile cryptocurrency heists. They often use the stolen funds to evade international sanctions and support the country’s regime. The stolen cryptocurrency is usually laundered through multiple channels, which complicates tracing and recovery efforts. Their growing activity presents a serious threat to the global financial system and has led to enhanced security measures across the cryptocurrency industry.

Advertisement

Banner

Tags

ChromiumCitrine SleetGoogle ChromeMicrosoftNorth Korean Hackers
Syed Ali Haider
Author

Syed Ali Haider

Ali Haider is a contributing crypto writer at Crypto2Community. He is a crypto and blockchain journalist with over six years of experience and has long advocated for digital freedom and cybersecurity. Haider has been featured in several high-profile crypto and finance outlets, including Coincult, AltcoinBeacon, BTCRead, and more.

View full profile ›

ℹ️About Crypto2Community's Editorial Process

Crypto2Community's editorial policy is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict editorial policy and sourcing standards, and each page undergoes diligent review by our team of top crypto industry experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

More by this author:

  • Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
  • Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
  • Blockaid Flags $3M SquidRouterModule Exploit Draining 86 Gnosis Safes

Related Articles:

Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
Crypto News•Weekly Crypto Market Wrap8 hours ago
Raymond Munene
By Raymond Munene5/25/2026
Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
Crypto News10 hours ago
Chinedu Agbakwusi
By Chinedu Agbakwusi5/25/2026
Blockaid Flags $3M SquidRouterModule Exploit Draining 86 Gnosis Safes
Blockaid Flags $3M SquidRouterModule Exploit Draining 86 Gnosis Safes
Crypto News10 hours ago
Austin Mwendia
By Austin Mwendia5/25/2026

Advertisement

Banner

Advertisement

Banner

🔥Latest offers

Play Now

9.85 Stars

🔥 Get up to 60% with all rewards

Claim Bonus

9.65 Stars

💸 300% deposit bonus up to 20,000 USD

Visit eToro

9.95 Stars

Best Crypto Exchange 2025

Virtual currencies are highly volatile. Your capital is at risk.

Visit KuCoin

9.55 Stars

Trading features & low fees

Popular Topics

  • Sei Price Prediction 2025, 2030, 2040
  • Uniswap Price Prediction 2025, 2030, 2040
  • Near Protocol Price Prediction 2025, 2030, 2040
  • Loopring Price Prediction 2025, 2030, 2040
  • Chainlink Price Prediction 2025, 2030, 2040

Trending News

  • Crypto Weekly Market Wrap May 25 – Policy Shifts, Treasury Moves & Security Breaches
  • Bitcoin Demand Falls to Lowest Level as Market Sentiment Turns Bearish
  • Blockaid Flags $3M SquidRouterModule Exploit Draining 86 Gnosis Safes
  • Ethereum Price Analysis – Staking and Institutional Demand Fuel Bullish Outlook Toward $3,000
  • Bitcoin Price Prediction – Weak Institutional Demand Puts BTC at Risk of Drop Toward $65K
  • Tether, Georgia Move to Bring Georgian Lari On-Chain with GEL₮ Stablecoin
  • Top Cryptos to Watch Today, May 25 – BNB, Tron, Hyperliquid
  • Socket Warns TrapDoor Malware Is Targeting Crypto Developers
  • Coinbase CEO Outlines Eight Crypto Upgrades Needed to Fix Global Finance
  • Why the Crypto Market is Down Today?
  • Bitcoin ETFs Bleed $1.26B, But Santiment Says the Signal Is Not Clearly Bearish
  • Grayscale Files Third S-1 Amendment with SEC for HYPE ETF
  • SEC Approves Nasdaq QBTC Bitcoin Index Options for Wall Street Traders
  • Grayscale Names Top Blockchains Set to Benefit From U.S. Crypto Clarity
  • ECB Resists Euro Stablecoins Push Over Bank Stability Concerns
  • Best Memecoins to Purchase Today, May 23 – BONK, PEPE, SIREN
  • Bank of America Holds $53M in Crypto ETF Exposure, BlackRock’s IBIT Takes the Lead
  • BlackRock Moves Over $150M in BTC and ETH to Coinbase Prime
  • THORChain Restart Vote Opens as ADR028 Sets Exploit Recovery Path
  • Sui Removes Gas Fees for USDC and Six Other Stablecoins on Mainnet