Crypto Times Logo Black
Google News Follow Banner
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • DeFi News
    • Blockchain News
    • Industry
  • Exclusive
  • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Podcasts
  • More
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
The Crypto TimesThe Crypto Times
  • All News
  • Market
  • Bitcoin
  • Ethereum
  • Altcoins
  • Regulations & Policies
  • Blockchain
  • DeFi
  • Industry
  • Exclusive
  • Opinion
Search
  • News
    • Market
    • Bitcoin
    • Ethereum
    • Altcoins
    • Regulations & Policies
    • Blockchain
    • DeFi
    • Industry
    • Exclusive
    • Opinion
  • Learn
    • Explained
    • How To
    • Insights
  • Quick Links
    • About Us
    • Our Authors
    • Contact Us
    • Editorial Policy
    • AI Policy
    • Sponsored & Advertorial Policy
  • Podcasts
Follow US
© 2026 By Crypto Times. All Rights Reserved.
Market News

Hacker Group Konni Uses WinRAR Vulnerability To Steal Crypto

The Konni organization emerges as another threat from North Korea to the crypto industry.

Written By:
Gopal Solanky

Last updated: October 7, 2025 3:46 PM
Published September 15, 2023 11:55 AM
Share
Last updated: October 7, 2025 3:46 PM
Published September 15, 2023 11:55 AM
Hacker Group Konni Uses WinRAR Vulnerability To Steal Crypto

Konni, a hacker group from North Korea, has reportedly exploited the WinRAR vulnerability to target the crypto industry.

While this is the Konni organization’s first known major attack in crypto, it has now become another threat as a North Korean hacker entity after Lazarus Group.

In a statement on Seebug, the Chinese security firm Chuangyu 404 Lab reveals that another infamous APT organization from North Korea has used the WinRAR vulnerability to attack the crypto industry. 

The Chuangyu 404 team shares evidence and analysis of a potential attack using this vulnerability, which may cause severe destruction in the digital currency industry. 

According to the team, this new method of attack targets victims by getting them to open an image screenshot of a wallet. As the WinRAR process opens files, it first searches and executes the same name directories within the folder that contain malicious code.

WinRAR Vulnerability Disclosure by Qbao Network - Chuangyu 404 Team
WinRAR Vulnerability Disclosure by Qbao Network – Chuangyu 404 Team

“This is also the first time that an APT organization has used this vulnerability to attack,” the Chuangyu 404 team said. ATP attacks differ from usual exploits as it utilizes more sophisticated intrusion methods. 

The vulnerability dubbed CVE-2023-38831 was disclosed by Singapore-based cybersecurity firm Group-IB. WinRAR later released a patch to fix the issue but users still remained at risk for not updating their application version.

Also Read: Is Lazarus Group Also Involved In CoinEx’s $54 Million Hack?

Disclaimer: The information researched and reported by The Crypto Times is for informational purposes only and is not a substitute for professional financial advice. Investing in crypto assets involves significant risk due to market volatility. Always Do Your Own Research (DYOR) and consult with a qualified Financial Advisor before making any investment decisions.

Follow The Crypto Times on Google News to Stay Updated!      Google News
Google News Banner

TAGGED:CryptocurrencyNorth Korea
Share This Article
Whatsapp Whatsapp LinkedIn Telegram Copy Link
Gopal Solanky - Crypto Research Analyst at The Crypto Times
By Gopal Solanky Sr. Crypto Journalist
Follow:
Gopal Solanky is a Research Analyst and Reporter with over 5 years of experience in DeFi, blockchain, crypto, IT, and financial markets. With a Bachelor's in Computer Applications, he brings a strong technical foundation to his analysis and reporting. Gopal focuses on breaking down complex topics for both seasoned investors and curious readers. His work has been referenced by publications like Business Insider and Vulture.com, highlighting his contributions to industry stories around topics like Huwak Tuah Memecoin and the FTX collapse.

Join Our Newsletter

Subscribe to get latest crypto news!

    ​

    Built with Kit

    Latest News

    Lido Proposes 2,500 stETH to Help Aave After KelpDAO Exploit
    Lido Proposes 2,500 stETH to Help Aave After KelpDAO Exploit
    Tokenized RWAs Increase From $1B to $28B in 3 Years DeFiLlama
    Tokenized RWAs Increase From $1B to $28B in 3 Years: DeFiLlama
    Belarus Allows Crypto Banks to List Bitcoin, Ethereum, and Solana
    Belarus Allows Crypto Banks to List Bitcoin, Ethereum, and Solana
    Aave Pauses rsETH Reserves Across Ethereum Core, Arbitrum, Base, Mantle, and Linea
    Aave Pauses rsETH Reserves Across Ethereum Core, Arbitrum, Base, Mantle, and Linea
    US Sanctions Cambodian Senator Kok An Over Crypto Scam Network
    US Sanctions Cambodian Senator Kok An Over Crypto Scam Network

    Find Us on Socials

    Ad image

    You may also like

    Trezor Safe 7 Wins 2026 Red Dot Design Award for Best Hardware Wallet Design

    Trezor Safe 7 Wins 2026 Red Dot Design Award for Best Hardware Wallet Design

    Paris Weather Bet Manipulated on Polymarket for $34K Profit

    Paris Weather Bet Manipulated on Polymarket for $34K Profit

    Crypto Trenches vs Wall Street Degen Chaos or Institutional Inertia

    Crypto Trenches vs Wall Street: Degen Chaos or Institutional Inertia?

    Satsuma Led by Pantera Push for Full Bitcoin Sell-Off Amid 99% Stock Crash

    Satsuma Led by Pantera Push for Full Bitcoin Sell-Off Amid 99% Stock Crash

    The Crypto Times Logo PNG

    Providing real-time, accurate Crypto reporting. Your trusted source for Crypto News and Research.

    Stay Updated

    All News
    Exclusive
    Opinions
    Learn
    Podcasts

    Company

    About Us
    Our Authors
    Editorial Policy
    AI Policy
    Advertorial Policy

    Get In Touch

    Contact Us
    Career

    Find Us on Socials

    X-twitter Linkedin Telegram Youtube Instagram

    © 2026 The Crypto Times | A BITROCK TECHNOLOGIES L.L.C. Company.

    DMCA.com Protection Status
    • Terms and Conditions
    • Disclaimer
    • Privacy Policy
    • Cookie policy
    Do Not Sell or Share My Personal Information