NewsLayer

Install NewsLayer

Get the app experience — one tap from your home screen, instant loads and breaking-news alerts.

NewsLayer.com
LatestDaily BriefMarkets
NewsLayer PulseLIVE₿BTC$81,284-0.44%ΞETH$2,629+0.11%◎SOL$110.67-2.59%✕XRP$1.4-0.26%ÐDOGE$0.0876-0.38%₳ADA$0.2288+0.71%Total Cap$2.91T+0.22%24H Vol$127.3BLayer Index59 Neutral
BreakingNorth Korea Hackers Drain 7,000 Crypto Walletshace 3 horas
Markets
HomeCryptoMarkets

Crypto|Markets

North Korea drives onchain malware surge, CoinEx shuts: Asia Express

The article reports that North Korea and Iran account for most onchain malware activity. It also notes that CoinEx has shut down and that Malaysia is among the most crypto-curious Islamic nations.

Cointelegraph by Andrew Fenton

Publisher Cointelegraph

Sep 17, 2026 at 11:49 PM UTC · 5 min de lectura

North Korea drives onchain malware surge, CoinEx shuts: Asia Express
Image via Cointelegraph
Traduciendo…

Puntos Clave

  • North Korea and Iran are identified as the main sources of onchain malware.
  • CoinEx has shut down, according to the article headline.
  • Malaysia is named among the most crypto-curious Islamic nations.

State hackers drive 420% surge in onchain malware, Chainalysis finds

North Korean and Iran linked hackers were responsible for the majority of the 420% increase this year in malware on public blockchains according to a Chainalysis report. 

State-linked hackers accounted for roughly two-thirds of new activity whereby attackers stored malware instructions or infrastructure information on public blockchains.

Chainalysis also identified UNC5342, a North Korea linked group, to previously unattributed activity spanning Tron, Aptos and BNB Smart Chain.

Chainalysis said using public blockchains increases the durability of malware campaigns because the stored information remains accessible after domains, servers or code repositories are taken down. In 2025, North Korean hackers used a similar technique called EtherHiding to place crypto-stealing code in smart contracts.

North Korea using foreign talent to help infiltrate US companies: Report

North Korea (DPRK) is now using remote workers from third countries, including Iran and Lebanon, to pass job interviews, after which the positions are taken over by North Korean operatives. The aim is infiltrate US companies and obtain money to fund its weapons programs, NBC reported.

Article Intelligence

Topics

cryptomarkets

Related Coverage

CryptoNorth Korea Hackers Drain 7,000 Crypto Walletshace 3 horas · 12 min read
View all related

Sponsored

Ad
House — Advertise on NewsLayer
NewsLayerLearn more

NewsLayer Premium

Unlock deeper intelligence.

Ad-free reading, exclusive research, and real-time onchain insights.

Go Premium
NewsLayer.com

The front page of the onchain economy. Crypto, Web3 and regulation intelligence — live prices, original research and policy tracking in one layer.

Follow on XTelegram

News

  • Latest News
  • The Daily Brief
  • Crypto
  • DeFi
  • Policy
  • Web3
  • Blockchain
  • Explainers

Markets

  • Market News
  • Layer Index
  • Live Charts
  • DeFi Protocols
  • Regulation Tracker
  • Regulation Radar

Company

  • About NewsLayer
  • Advertise
  • PR Publication
  • Become an Author
  • Our Authors
  • Create Account
  • Sign in

Resources

  • Research
  • NewsLayer Originals
  • My Feed
  • Search
  • AI Sector
  • Quantum Sector

NewsLayer Premium

Read the full layer.

Unlock premium intelligence, original research and an ad-free reading experience.

  • Premium Intelligence briefings
  • Ad-free reading experience
  • Members-only research & data
Go Premium

© 2026 NewsLayer.com — The front page of the onchain economy

Privacy Policy·Terms of Service
NewsLayer

Get the signal, not the noise.

Markets, regulation and onchain intelligence in a 5-minute morning read — plus breaking alerts and Layer Index flips as they happen.

The Daily Brief

Breaking alerts

Index flips

Free · No spam · Unsubscribe anytime