Skip to content

Lazarus Group Exploits WinRAR Vulnerability for Massive Cryptocurrency Theft

The Lazarus Group is exploiting a WinRAR vulnerability to steal cryptocurrencies worth 2.02 billion euros. Security researchers warn about the consequences.

There is a man trying to open bottle cap with opener behind him there is a big glass tray and there...
There is a man trying to open bottle cap with opener behind him there is a big glass tray and there is a shelf with some bottles in it at one corner of the room. Behind that there is a poster on wall.

Lazarus Group Exploits WinRAR Vulnerability for Massive Cryptocurrency Theft

Cybercriminals linked to North Korea stole cryptocurrency worth at least €2.02 billion in 2025. The Lazarus Group, a notorious hacking collective, exploited a flaw in WinRAR to carry out many of these attacks. Security firms now warn of rising threats as the group refines its tactics.

The Lazarus Group targeted high-value organisations throughout 2025. Centralised exchanges, venture capital firms, and Web3 platforms faced repeated attacks. Their methods combined social engineering, supply-chain breaches, and exploits in widely used software.

A critical vulnerability in WinRAR became a key tool for the group. Attackers distributed malicious RAR archives containing Blank Grabber malware. This software stole cryptocurrency wallet seeds, Discord tokens, and browser credentials.

Blockchain analysis by Chainalysis traced €2.02 billion in thefts to North Korea-linked hackers. The figure marks a 51% increase from the previous year. Security experts attribute the surge to the group’s growing adaptability and persistence.

Experts now recommend urgent protective measures. Updating WinRAR, deploying endpoint detection systems, and enforcing strict identity checks on social media could reduce risks. Financial and Web3 sectors remain prime targets for future attacks.

Read also:

Latest

This is a collage photo and here we can see buildings and we can see some text.

The GATE Summit Dubai 2026

The GATE Summit Dubai 2026 (3rd Edition) will take place on 12 February 2026 in Dubai, UAE, at a defining moment for the region's financial and regulatory transformation. Building on the success of previous editions in Dubai and Abu Dhabi, The GATE Summit has firmly established itself as a...