Bitrefill cyberattack linked to Lazarus Group exposed 18,500 records after employee laptop breach, while company restored services, improved security, and coveredBitrefill cyberattack linked to Lazarus Group exposed 18,500 records after employee laptop breach, while company restored services, improved security, and covered

Bitrefill Cyberattack: Lazarus Group Suspected After Hack Exposes 18,500 Records

2026/03/18 16:14
3 min di lettura
Per feedback o dubbi su questo contenuto, contattateci all'indirizzo crypto.news@mexc.com.

Bitrefill cyberattack linked to Lazarus Group exposed 18,500 records after employee laptop breach, while company restored services, improved security, and covered losses fully.

Crypto payments company Bitrefill reported a serious cyberattack on March 1, 2026. The company said the attack could be related to the Lazarus Group. Hackers gained access to systems, stole money, and accessed thousands of records of orders. However, Bitrefill said operations are now mostly restored, and losses will be covered.

Hack Began From Compromised Employee Laptop

Bitrefill said the attack began when hackers accessed an employee laptop. The attackers stole old login information on the device. Because of this reason, they got into internal systems and accessed secret data. Soon after, they gained access to parts of the company database as well as some crypto wallets.

Hackers reached a system snapshot that contained production secrets. After that, they increased their access to other services. This enabled them to move within the company network. As a result, they were able to see records and manage some payment systems.

Bitrefill became aware of the issue after strange buying activity popped up. Some suppliers experienced weird orders using gift cards. At the same time, the company had seen some hot wallets losing funds. Therefore, the team immediately checked the system and confirmed a breach.

Once the attack was confirmed, Bitrefill shut down all systems immediately. This step helped prevent additional damage from occurring. The company said it was not easy to turn off the services as it operates a global store. Bitrefill sells thousands of products in many countries with many ways of payment.

Security and law officers assisted in the investigation of the case. Bitrefill collaborated with Security Alliance and zeroShadow during the response. The team compared the attack with the previous hacks. They discovered that there were strong similarities to previous crypto hacks.

About 18,500 Records Accessed but Full Database Not Stolen

Bitrefill said about 18,500 purchase records were accessed during the attack. These records consisted of email addresses and crypto payment addresses. Some logs also contained IP address details. However, the company said the hacker or hackers did not copy the entire database.

Around 1,000 orders also had customer names on them. These names were stored in the encrypted form. Still, the company said hackers may have stolen the keys. Therefore, the users were notified by email as a safety step.

Bitrefill said it doesn’t store much personal data. The company does not require full identity check for most purchases. When verification is required, data remains with an outside provider. Because of this design, most personal data was not within Bitrefill’s systems.

The attack may be related to the Lazarus group, investigators believe. The tools, malware and network addresses were similar to those in the past. In addition, funds stolen were moved in a way seen before in North Korean attacks. These signs made experts think of the same group.

Bitrefill said that it has improved after the incident. The company included added stronger access rules and better monitoring tools. It also began new security tests with external experts. Officials said that the company will continue upgrades to keep users safe in the future.

The post Bitrefill Cyberattack: Lazarus Group Suspected After Hack Exposes 18,500 Records appeared first on Live Bitcoin News.

Disclaimer: gli articoli ripubblicati su questo sito provengono da piattaforme pubbliche e sono forniti esclusivamente a scopo informativo. Non riflettono necessariamente le opinioni di MEXC. Tutti i diritti rimangono agli autori originali. Se ritieni che un contenuto violi i diritti di terze parti, contatta crypto.news@mexc.com per la rimozione. MEXC non fornisce alcuna garanzia in merito all'accuratezza, completezza o tempestività del contenuto e non è responsabile per eventuali azioni intraprese sulla base delle informazioni fornite. Il contenuto non costituisce consulenza finanziaria, legale o professionale di altro tipo, né deve essere considerato una raccomandazione o un'approvazione da parte di MEXC.

Potrebbe anche piacerti

Bitcoin ETFs Surge with 20,685 BTC Inflows, Marking Strongest Week

Bitcoin ETFs Surge with 20,685 BTC Inflows, Marking Strongest Week

TLDR Bitcoin ETFs recorded their strongest weekly inflows since July, reaching 20,685 BTC. U.S. Bitcoin ETFs contributed nearly 97% of the total inflows last week. The surge in Bitcoin ETF inflows pushed holdings to a new high of 1.32 million BTC. Fidelity’s FBTC product accounted for 36% of the total inflows, marking an 18-month high. [...] The post Bitcoin ETFs Surge with 20,685 BTC Inflows, Marking Strongest Week appeared first on CoinCentral.
Condividi
Coincentral2025/09/18 02:30
ZEC Rally and G Coin — Two Altcoin Setups Worth Watching

ZEC Rally and G Coin — Two Altcoin Setups Worth Watching

The post ZEC Rally and G Coin — Two Altcoin Setups Worth Watching appeared on BitcoinEthereumNews.com. The crypto market has started the week on a bullish footing
Condividi
BitcoinEthereumNews2026/03/19 00:58
IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge!

The post IP Hits $11.75, HYPE Climbs to $55, BlockDAG Surpasses Both with $407M Presale Surge! appeared on BitcoinEthereumNews.com. Crypto News 17 September 2025 | 18:00 Discover why BlockDAG’s upcoming Awakening Testnet launch makes it the best crypto to buy today as Story (IP) price jumps to $11.75 and Hyperliquid hits new highs. Recent crypto market numbers show strength but also some limits. The Story (IP) price jump has been sharp, fueled by big buybacks and speculation, yet critics point out that revenue still lags far behind its valuation. The Hyperliquid (HYPE) price looks solid around the mid-$50s after a new all-time high, but questions remain about sustainability once the hype around USDH proposals cools down. So the obvious question is: why chase coins that are either stretched thin or at risk of retracing when you could back a network that’s already proving itself on the ground? That’s where BlockDAG comes in. While other chains are stuck dealing with validator congestion or outages, BlockDAG’s upcoming Awakening Testnet will be stress-testing its EVM-compatible smart chain with real miners before listing. For anyone looking for the best crypto coin to buy, the choice between waiting on fixes or joining live progress feels like an easy one. BlockDAG: Smart Chain Running Before Launch Ethereum continues to wrestle with gas congestion, and Solana is still known for network freezes, yet BlockDAG is already showing a different picture. Its upcoming Awakening Testnet, set to launch on September 25, isn’t just a demo; it’s a live rollout where the chain’s base protocols are being stress-tested with miners connected globally. EVM compatibility is active, account abstraction is built in, and tools like updated vesting contracts and Stratum integration are already functional. Instead of waiting for fixes like other networks, BlockDAG is proving its infrastructure in real time. What makes this even more important is that the technology is operational before the coin even hits exchanges. That…
Condividi
BitcoinEthereumNews2025/09/18 00:32