CryptoHow '123456' Exposed a $1M/Month North Korean Crypto Ring
A sprawling covert operation generating millions was brought to light not by sophisticated spy craft, but by stunning carelessness. A counterhacker recently exposed a North Korean unit infiltrating Western IT sectors, raking in over $1 million monthly by masquerading as remote freelancers. The scheme seemed impenetrable until investigators stumbled upon a laughably basic security blunder.
Instead of using complex encryption, these state-sponsored actors coordinated their massive crypto flows through a single server secured only by the password '123456.' This digital skeleton key allowed outsiders to pierce the veil, revealing exactly how Pyongyang fuels its regime by exploiting the global gig economy. It serves as a stark reminder that even the most elaborate criminal networks can be undone by human error.