Venus $13 Million Phishing Attack Victim Retrospective: Attack by Lazarus Hacker Group, Originating from a Spoofed Zoom Meeting Invitation
BlockBeats News, September 4th, EurekaTrading founder Kuan Sun tweeted a recap of his near $13 million loss due to a phishing attack:
On September 2, 2025, around $13 million in assets in his wallet were nearly stolen by the Lazarus hacking group. The security team took emergency action and ultimately recovered the funds.
The incident was initiated by what seemed like a normal Zoom meeting invitation, which was actually a carefully orchestrated phishing trap. The hacker used a "familiar stranger" relationship, deepfake video, and a forged Rabby plugin to tailor an attack to the victim Venus's position. By mistakenly trusting the fake plugin, a withdrawal was executed, exposing the assets to the risk of being transferred along with debt.
PeckShield, SlowMist, Venus, and multiple security teams swiftly responded, paused the protocol to investigate the risk, and ultimately prevented the fund theft. Hardware wallets are not foolproof; plugins and frontends are still vulnerable to hijacking. Zoom links, upgrade pop-ups, and "familiar stranger" relationships could all serve as attack vectors.
You may also like
Gainers
Latest Crypto News
The probability of a 25 basis point interest rate cut by the Federal Reserve in December has risen to 82.9%.
BlackRock received 953 BTC and 15,722 ETH from Coinbase Prime
S&P Global: Lowers USDT's Dollar Pegging Capability to Lowest Level
Crypto Market Maker Portofino Technologies Hit by Wave of Employee Departures
Avail is launching the Nexus Mainnet, aiming to achieve cross-chain composability.
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:[email protected]
VIP Services:[email protected]