Cryptocurrency Industry's Espionage War Escalates: 40% of Job Applicants Allegedly North Korean Agents?
Original Title: North Korean crypto infiltration is much worse than everyone thinks, says SEAL member
Original Author: Pedro Solimano, DL News
Original Translation: Deep Tide TechFlow
North Korean operatives have already infiltrated 15%-20% of crypto companies.
According to a SEAL member, 30%-40% of job applications in the crypto industry may originate from North Korean operatives.
The crypto industry has been criticized for having "the worst operational security (opsec) in the entire computer industry," said Pablo Sabbatella.
The extent of North Korea's infiltration into the crypto industry is far beyond people's awareness.
Pablo Sabbatella, founder of the Web3 audit company Opsek and current Security Alliance member, dropped a bombshell at the Devconnect conference in Buenos Aires: North Korean operatives may have infiltrated up to 20% of crypto companies.
"The situation in North Korea is much worse than everyone imagines," Sabbatella told DL News in an interview. He even shockingly pointed out that 30%-40% of job applications in the crypto industry may come from North Korean operatives trying to infiltrate relevant organizations in this way.
If these estimates are true, their potential for disruption would be incredibly high.
More importantly, North Korea's infiltration is not just about stealing funds through hacking techniques, although they have already stolen billions through sophisticated malware and social engineering tactics. The bigger issue is that these operatives will be hired by legitimate companies, gain system permissions, and manipulate the infrastructure supporting major crypto companies.
According to a report from the U.S. Treasury Department in November of last year, North Korean hackers have stolen over $3 billion in cryptocurrency over the past three years. These funds were subsequently used to support Pyongyang's nuclear weapons program.
How Do North Korean Operatives Infiltrate the Crypto Industry?
North Korean workers typically do not directly apply for positions because international sanctions prevent them from participating in the recruitment process under their true identities.
On the contrary, they will seek uninformed global remote workers to act as "agents." Some of these agents have even transitioned into recruiters, helping North Korean operatives use stolen identities to hire more overseas collaborators.
According to a recent report by Security Alliance, these recruiters reach out to individuals worldwide through freelance platforms (such as Upwork and Freelancer), with a focus mainly on Ukraine, the Philippines, and other developing countries.
Their "transaction" is quite simple: they provide verified account credentials or allow North Korean operatives to remotely use your identity. In return, collaborators can receive 20% of the income, while the North Korean operatives retain 80%.
Sabbatella stated that many North Korean hackers target the United States.
"Their approach is to find Americans to be their 'front end,'" Sabbatella explained, "They will pretend to be from China, unable to speak English, needing someone to help with interviews."
They will then infect the "front end" individual's computer with malware to obtain a US IP address, allowing them to access more internet resources than when in North Korea.
Once hired, these hackers are usually not dismissed because their performance satisfies the company.
"They are highly efficient, work long hours, and never complain," Sabbatella said in an interview with DL News.
Sabbatella provided a simple test method: "Ask them if they think Kim Jong Un is weird or has any flaws." He said, "They are not allowed to say anything negative."
Operational Security Vulnerabilities
However, North Korea's success does not solely rely on sophisticated social engineering.
Cryptocurrency companies—and users—have made it all easier.
"The cryptocurrency industry may be the worst in operational security (opsec) in the entire computer industry," Sabbatella said. He criticized that the founders of cryptocurrency companies are "fully doxxed, perform poorly in protecting private keys, and are easily susceptible to social engineering."
Operational Security (OPSEC) is a systematic process used to identify and protect key information from adversary threats.
The lack of operational security can lead to a high-risk environment. "Almost everyone's computer will be infected with malware at least once in their lifetime," Sabbatella said.
Update Statement
Update: This article has been updated to reflect Sabbatella's clarification that North Korea does not control 30%-40% of crypto applications; this percentage actually refers to the proportion of North Korean operatives in crypto industry job applications.
You may also like

Crypto Christmas Heist: Over $6 Million Lost, Trust Wallet Chrome Extension Wallet Hacked Analysis

Trust Wallet Browser Extension Security Incident Leads to Losses
Key Takeaways Trust Wallet identified a significant security breach in its browser extension version 2.68. Approximately over $6…

Trust Wallet Hack Results in $3.5 Million Loss for Major Wallet Holder
Key Takeaways A significant Trust Wallet hack led to the theft of $3.5 million from an inactive wallet.…

BDXN Wallets Deposit $400,000 in Tokens to Multiple Exchanges
Key Takeaways BDXN project wallets have transferred approximately $400,000 worth of tokens to various exchanges. The transfers involve…

Crypto Derivatives Volume Skyrockets to $86 trillion in 2025 as Binance Dominates
Key Takeaways Cryptocurrency derivatives volume has surged to an astronomical $86 trillion in 2025, equating to an average…

Social Engineering in the Crypto Universe: Safeguarding Your Assets in 2025
Key Takeaways Social engineering, a psychological manipulation tactic, has been the leading cause of crypto asset theft in…

Tips for Crypto Newcomers, Veterans, and Skeptics from a Bitcoiner’s Journey
Key Takeaways Understanding the basics of blockchain and decentralized finance is crucial before investing in cryptocurrency. Newcomers should…

Trust Wallet to Reimburse $7 Million Lost in Christmas Hack: An Inside Job?
Key Takeaways Trust Wallet’s browser extension was compromised, leading to a $7 million loss on Christmas Day. The…

Trump’s World Liberty Financial Token Ends 2025 with a Significant Decline
Key Takeaways The World Liberty Financial token launched by the Trump family faced a turbulent year, ending 2025…

Crypto Biz: Exchanges Bet Big on Prediction Markets
Prediction markets are gaining traction in the crypto sector, with exchanges like Crypto.com and Coinbase making bold moves.…

Canton Token Surges Amid DTCC’s Tokenized Treasury Plans
Key Takeaways Canton Coin has surged by approximately 27% due to growing institutional interest and DTCC’s announcement to…

Samourai Wallet Co-Founder Begins Prison Term Amidst Crypto Privacy Debate
Key Takeaways Keonne Rodriguez, the co-founder of Samourai Wallet, shares the emotional experience of his first day in…

Trust Wallet to Compensate $7M Loss from Christmas Day Hack
Key Takeaways Trust Wallet users suffered a loss of $7 million on Christmas Day due to a planned…

Crypto Biz: Exchanges Place Their Bets on Prediction Markets
Key Takeaways Centralized exchanges are intensely exploring prediction markets, with fairness and market structure being key areas of…

Trump’s World Liberty Financial Token Ends 2025 Over 40% Down
Key Takeaways: World Liberty Financial, a crypto venture by the Trump family, ends 2025 with significant losses, with…

Merry Christmas, Caroline Ellison: An Unexpected Early Release from Custody
Key Takeaways Caroline Ellison, former CEO of Alameda Research, will be released from federal custody earlier than expected…

Tips for Crypto Newbies, Veterans, and Skeptics from a Bitcoiner Who Buried $700M
Key Takeaways Understanding the basics of cryptocurrency and blockchain technology is crucial for newcomers before investing. Veterans should…

Samourai Wallet Co-Founder Reflects on First Day of Incarceration and the Quest for Executive Clemency
Key Takeaways Keonne Rodriguez, the co-founder of Samourai Wallet, is serving a five-year sentence, shedding light on the…
Crypto Christmas Heist: Over $6 Million Lost, Trust Wallet Chrome Extension Wallet Hacked Analysis
Trust Wallet Browser Extension Security Incident Leads to Losses
Key Takeaways Trust Wallet identified a significant security breach in its browser extension version 2.68. Approximately over $6…
Trust Wallet Hack Results in $3.5 Million Loss for Major Wallet Holder
Key Takeaways A significant Trust Wallet hack led to the theft of $3.5 million from an inactive wallet.…
BDXN Wallets Deposit $400,000 in Tokens to Multiple Exchanges
Key Takeaways BDXN project wallets have transferred approximately $400,000 worth of tokens to various exchanges. The transfers involve…
Crypto Derivatives Volume Skyrockets to $86 trillion in 2025 as Binance Dominates
Key Takeaways Cryptocurrency derivatives volume has surged to an astronomical $86 trillion in 2025, equating to an average…
Social Engineering in the Crypto Universe: Safeguarding Your Assets in 2025
Key Takeaways Social engineering, a psychological manipulation tactic, has been the leading cause of crypto asset theft in…
Popular coins
Latest Crypto News
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:[email protected]
VIP Services:[email protected]