North Korean hacker group Lazarus deploys fileless Trojan RemotePE, attacking cryptocurrency companies and banks
According to Cryptopolitan, cybersecurity analysts have discovered a new type of fileless remote access trojan (RAT) named RemotePE. It is believed that the cybercrime organization Lazarus Group, associated with North Korea, is using this trojan to attack banks and cryptocurrency companies. The trojan operates entirely in memory, making it difficult for traditional antivirus and forensic tools to detect. Attackers impersonate trading company employees via Telegram, using forged Calendly and Picktime links for social engineering attacks. The malware is loaded in a three-stage chain through DPAPILoader, RemotePELoader, and RemotePE, with the entire process avoiding contact with the file system, utilizing process hollowing, anti-analysis checks, and encrypted C2 communication to evade detection.
This malware was first discovered in September 2025. In the first four months of 2026, the Lazarus organization has stolen approximately $577 million in cryptocurrency assets, accounting for 76% of the total global cryptocurrency theft. Since 2017, the organization has accumulated a total theft amount of $6 billion.
You may also like

Perp DEX: The Next Generation Exchange "War"

10 Counterintuitive Insights on Latin American Payments

The AI gamble of mining companies: Valuations enter a phase of differentiation, and it's hard to turn the tide

A letter from Alliance to entrepreneurs: Written on the occasion of Cursor selling for 60 billion dollars

Stablecoins Finally Find Real Returns: On-Chain Reinsurance Re Explained | Interview with Re Founder Karan Saroya

The impossible triangle is simply a pseudo problem

Will MicroStrategy fall into a death spiral? What will the macro trend be in the second half of the year?

Blockchain Capital Partner: The Core Secret of Arbitrage

STRC unanchored by 11%, can the perpetual motion machine of Strategy still operate?

Bitcoin Market Analysis 2026: Can BTC Reach $150K by Year-End?

Bitcoin ETF Outflows Hit a Record $4.4 Billion: What Are Traders Doing With Their Cash?

WEEX App Just Got Smarter – New Tabs for Faster Trades & Easy Asset Management

WEEX All-New Search Features: Find, Trade & Earn Faster Than Ever

Morning Report | Illinois signs the strictest digital asset tax law in the U.S.; RWA tokenization market size surpasses $43 billion, institutions accelerate the migration of on-chain assets

Full version of the debut Q&A! Federal Reserve Chairman Waller: Sticking to the 2% inflation target, establishing five special working groups, individual did not submit the dot plot

From Disruptor to Shadow Market: The Crypto Market is Becoming a Colony of Traditional Finance

Dalio's important long article: How to position in the current market environment?






