Odaily Planet Daily News Recently, Slow Mist and its partners discovered a large-scale APT attack directed by the North Korean Lazarus group against the cryptocurrency industry. The attack method is as follows: first, disguise the identity, deceive the auditor through real-person authentication and become a real customer, and then make a real deposit. Under the cover of this customer identity, at multiple communication time points between official personnel and customers (attackers), Mac or Windows customized Trojans are accurately targeted at official personnel. After obtaining permission, they move laterally within the intranet and lurk for a long time to achieve the goal. Purpose of stealing funds. At present, we have hunted the domain names and Trojan samples used by the attackers with our partners. If necessary, please contact SlowMist officials.