loading

North Korean Hackers Impersonate Zoom to Breach Gambling Firm

  • Home
  • News
  • North Korean Hackers Impersonate Zoom to Breach Gambling Firm
North Korean Hackers Impersonate Zoom to Breach Gambling Firm

North Korean Hackers Impersonate Zoom to Breach Gambling Firm

A representative of a Canadian online gaming company thought they were having a standard Zoom call with a familiar contact but was instead conversing with North Korean hackers using a fraudulent version of the platform. 

According to Field Effect Analysis, BlueNoroff, a subgroup of the infamous North Korea-supported hacker group Lazarus Group, struck the unnamed company on May 28. 

BlueNoroff is a financially driven threat actor that usually focuses on banks and crypto exchanges, along with the gaming and entertainment sectors, and fintech firms, to generate funds for North Korea. 

The gang has taken over US$1.3 billion since 2017, primarily via SWIFT banking thefts and cryptocurrency heists. 

 

Deep Fake 

Field Effect reported that BlueNoroff set up a counterfeit website mimicking an official Zoom support page to target the gaming company. The assailants impersonated a legitimate business associate and arranged a Zoom meeting with the target utilizing deep-fake technology. 

Throughout the Zoom meeting, the hackers feigned “audio problems,” and the victim was instructed to execute a “Zoom audio repair script” to resolve the issue. However, the script contained malware. 

After execution, the script initiated a sequence of downloads and commands, requesting the user's system credentials and discreetly installing several malicious payloads. This enabled the hackers to obtain various sensitive personal and system information, specifically targeting cryptocurrency-related assets and messaging details. 

According to Field Effect, the assault seems to be part of a larger Zoom spoofing initiative initially identified in March 2025, primarily aimed at cryptocurrency companies. 

“It exemplifies an evolving pattern in which financially motivated threat actors continue refining their tradecraft, embedding malicious activity within legitimate business workflows and exploiting user trust as the primary attack surface,” the analysts wrote.

 

Bangladesh Bank Theft 

BlueNorroff achieved its most infamous milestone in February 2016, when the group managed to deploy malware into the Bangladesh Bank's servers. This enabled them to gain credentials to approve 35 transfer requests from the New York Fed to accounts in Sri Lanka and the Philippines, amounting to nearly $1 billion. 

Out of the 35 payments, five amounting to US$101 million were completed before an individual at the New York Fed detected an issue and halted additional transactions. 

Approximately $20 million reached Sri Lanka and was swiftly retrieved. The remaining funds were moved to four accounts at Philippine bank RCBC, opened that very day using fictitious identities. From that point, it entered the loosely monitored Philippine casino sector, where it was washed at high-stakes gaming tables, then vanished completely. 

Related articles

Delving deeper into the world of online casinos can enhance your understanding and enjoyment of the games. To help you navigate this dynamic industry, we've curated a selection of articles that cover essential topics, from choosing the best online casinos to mastering specific games. Whether you're a novice looking for beginner tips or an experienced player seeking advanced strategies, these articles provide valuable insights and practical advice to elevate your online gaming experience.

Try These Casinos

We've checked before you play

We conduct in-depth research and analysis of the world of online casinos in order to provide you with insightful advice. Our mission is to provide you with the knowledge and abilities necessary to engage in responsible online gaming.

Bally

4.4 / 5
  • Quick withdrawals
  • Live chat available around-the-clock
  • Excellent resources for responsible gaming
See Review
1
4.4
Bally

Welcome Bonus

Get 30 Free Spins With 0 Wagering

Claim Bally Bonus
  • Quick withdrawals
  • Live chat available around-the-clock
  • Excellent resources for responsible gaming

18+. New Players Only. Full Terms & Conditions apply. Please gamble responsibly.

Casino Purple

4.6 / 5
  • Cryptocurrency friendly
  • SSL protected
  • Numerous ways to pay
See Review
2
4.6
Casino Purple

First Deposit Bonus

200% up to £2500 using code: PURPLE200

Claim Casino Purple Bonus
  • Cryptocurrency friendly
  • SSL protected
  • Numerous ways to pay

18+. New Players Only. Full Terms & Conditions apply. Please gamble responsibly. A minimum deposit of £100 will be required in order to qualify for this offer. Wager requirement: 35x 

Star Wins

4.6 / 5
  • Home to top software companies
  • Design that is mobile-friendly
  • Welcoming lobby for users
See Review
3
4.6
Star Wins

WELCOME BONUS

WIN UP TO £6,000

Claim Star Wins Bonus
  • Home to top software companies
  • Design that is mobile-friendly
  • Welcoming lobby for users

New Players only. 1st, 2nd and 3rd ever deposit: spin multiplier wheel and win a Matchup Bonus up to 10X your deposit amount (£2,000 max bonus), £10 min fund for all 3 offers, 65x Bonus wagering requirements, max bonus conversion to real funds equal to lifetime deposits (up to £250) full T&Cs apply

MrMega

4.7 / 5
  • Instant play is available
  • Live casino
  • Real-time conversation
See Review
4
4.7
MrMega

Welcome Bonus

Get a 100% match up to £50

Claim MrMega Bonus
  • Instant play is available
  • Live casino
  • Real-time conversation

T&Cs apply New customers only. Min deposit £10 max bonus amount £50. Wagering bonus 35x. Neteller and Skrill deposits not eligible.

MrQ

4.6 / 5
  • An excellent selection of Thunderkick titles
  • Live chat is accessible
  • Secured with SSL
See Review
5
4.6
MrQ

Get 20 Free Spins on Big Bass Splash

Claim MrQ Bonus
  • An excellent selection of Thunderkick titles
  • Live chat is accessible
  • Secured with SSL

#AD. *20 Free Spins credited upon your first £10 deposit on Big Bass Splash slot only, valued at 10p per spin. Free Spins must be used within 48 hours of qualifying. All winnings are uncapped and credited to your real money balance. New players only. begambleaware.org. 18+ Full T&Cs apply.

FreshBet

4.8 / 5
  • Cryptocurrency-friendly
  • Sportsbook and casino games
  • 24/7 live chat
See Review
6
4.8
FreshBet

Welcome Bonus

100% up to 500£

Claim FreshBet Bonus
  • Cryptocurrency-friendly
  • Sportsbook and casino games
  • 24/7 live chat

18+. New Players Only. Full Terms & Conditions apply. Please gamble responsibly.