{"id":155792,"date":"2025-05-31T17:34:13","date_gmt":"2025-05-31T17:34:13","guid":{"rendered":"https:\/\/cryptonews.com\/fr\/?p=155792"},"modified":"2025-05-31T17:34:13","modified_gmt":"2025-05-31T17:34:13","slug":"lazarus-echoue-piratage-bitmex","status":"publish","type":"post","link":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/","title":{"rendered":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX"},"content":{"rendered":"<p>Alors que les enl\u00e8vements cryptos submergent les m\u00e9dias fran\u00e7ais, les attaques <strong>cybercriminelles<\/strong> ne ralentissent pas pour autant. La plateforme BitMEX a en effet \u00e9t\u00e9 la cible d\u2019une attaque cybern\u00e9tique ce <strong>vendredi 30 mai<\/strong>. D\u00e9jou\u00e9e gr\u00e2ce \u00e0 la r\u00e9activit\u00e9 de l\u2019\u00e9quipe, cette tentative de hack a \u00e9t\u00e9 analys\u00e9e et a r\u00e9v\u00e9l\u00e9 que le groupe Lazarus \u00e9tait derri\u00e8re.<\/p><h2 class=\"wp-block-heading\">Une attaque d\u00e9jou\u00e9e de peu<\/h2><span class=\"replacer\"><\/span><p>Hier, la plateforme de trading <a href=\"https:\/\/cryptonews.com\/fr\/coins\/\">crypto<\/a> a failli \u00eatre victime d\u2019une attaque ing\u00e9nieuse. Un employ\u00e9 de la plateforme a re\u00e7u un message <strong>frauduleux<\/strong> sur LinkedIn qui aurait pu co\u00fbter cher \u00e0 l\u2019exchange. En effet, ce message proposait une opportunit\u00e9 de collaboration pour un projet <strong>NFT Web3<\/strong>. Une demande qui aurait pu s\u00e9duire, mais qui a directement attir\u00e9 la m\u00e9fiance de l\u2019employ\u00e9.<\/p><p>Il comprenait en fait un lien vers un r\u00e9pertoire GitHub priv\u00e9 avec un projet Next.js\/React. Le groupe de hackers comptait pousser l\u2019employ\u00e9 \u00e0 <strong>ex\u00e9cuter le code<\/strong>, mais \u00e0 la place, il a alert\u00e9 la s\u00e9curit\u00e9. Une d\u00e9cision judicieuse qui a permis \u00e0 l\u2019\u00e9quipe de <a href=\"https:\/\/www.bitmex.com\/\" target=\"_blank\" rel=\"noreferrer noopener\">BitMEX<\/a> d\u2019\u00e9viter l\u2019attaque.<\/p><h2 class=\"wp-block-heading\">L\u2019identification du groupe Lazarus<\/h2><span class=\"replacer\"><\/span><p>En effet, l\u2019analyse du code a r\u00e9v\u00e9l\u00e9 qu\u2019un malware \u00e9tait pr\u00e9sent dans le programme. Ce malware avait pour objectif de voler des <strong>m\u00e9tadonn\u00e9es (OS, IP, g\u00e9olocalisation)<\/strong> pour les envoyer vers une instance Supabase. De plus, certaines parties du code ressemblaient \u00e0 la campagne BeaverTail. Cela a alors permis de faire un lien avec les hackers nord-cor\u00e9ens qui ont d\u2019ailleurs laiss\u00e9 <strong>quelques traces<\/strong>.<\/p><p>En plus de ce bout de code r\u00e9utilis\u00e9, l\u2019analyse a r\u00e9v\u00e9l\u00e9 certaines adresses IP r\u00e9elles des attaquants. Un certain \u00ab Victor \u00bb est par exemple li\u00e9 \u00e0 l\u2019adresse IP <strong>223.104.144.97<\/strong>. Cette erreur de Lazarus risque fortement de faire avancer les experts en cybers\u00e9curit\u00e9 dans la traque de ce groupe.<\/p><p>Pour l\u2019analyse d\u00e9taill\u00e9e du code utilis\u00e9, des adresses IP identifi\u00e9es et du lien avec Lazarus, n\u2019h\u00e9sitez pas \u00e0 lire le <a href=\"https:\/\/blog.bitmex.com\/bitmex-busts-lazarus-group\/\" target=\"_blank\" rel=\"noreferrer noopener\">compte rendu<\/a> des <strong>experts en cybers\u00e9curit\u00e9<\/strong> de BitMEX.<\/p><h2 class=\"wp-block-heading\">R\u00e9ponse de BitMEX et cons\u00e9quences pour l\u2019\u00e9cosyst\u00e8me crypto <\/h2><span class=\"replacer\"><\/span><figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Think twice before clicking that &quot;Web3 collab&quot; link!<br><br>Our security team just thwarted a Lazarus Group phishing attempt, exposing their tactics AND a major OPSEC fail.<br><br>We&#39;re now on their tail, watching their screw-ups.<br><br>Stay safe, stay vigilant!<br><br>Read the full story:\u2026 <a href=\"https:\/\/t.co\/pgIBFh4ojb\">pic.twitter.com\/pgIBFh4ojb<\/a><\/p>&mdash; BitMEX (@BitMEX) <a href=\"https:\/\/twitter.com\/BitMEX\/status\/1928388838898221533?ref_src=twsrc%5Etfw\">May 30, 2025<\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script>\n<\/div><\/figure><p>Suite \u00e0 cette attaque finement d\u00e9jou\u00e9e, la plateforme s\u2019est empress\u00e9e de communiquer sur X son succ\u00e8s. Avec un ton moqueur, l\u2019\u00e9quipe n\u2019a pas h\u00e9sit\u00e9 \u00e0 mettre en garde sur les liens de collaboration Web3. Dans la suite du post, BitMEX n\u2019h\u00e9site \u00e9galement pas \u00e0 humilier le groupe <a href=\"https:\/\/intel.arkm.com\/explorer\/entity\/lazarus-group\" target=\"_blank\" rel=\"noreferrer noopener\">Lazarus<\/a> en disant qu\u2019ils ont expos\u00e9 leur tactique et commis une <strong>grave erreur de s\u00e9curit\u00e9<\/strong>.<\/p><p>Il est vrai que ce groupe de hackers nord-cor\u00e9ens fait trembler l\u2019\u00e9cosyst\u00e8me crypto ces derniers temps. Avec le hack r\u00e9cent de Bybit de plus d\u2019<strong>1,5 milliard de dollars<\/strong>, il ne faut pas oublier non plus qu\u2019ils sont \u00e0 l\u2019origine de divers hacks de plusieurs dizaines de millions de dollars depuis <strong>2014<\/strong>. Des chiffres qui font froid dans le dos quand on sait que la s\u00e9curit\u00e9 est de mise dans le domaine crypto.<\/p><p>Heureusement, les r\u00e9centes d\u00e9couvertes permises gr\u00e2ce \u00e0 l\u2019\u00e9quipe de s\u00e9curit\u00e9 de BitMEX pourraient faire avancer grandement les choses. C\u2019est maintenant au tour des experts comme <a href=\"https:\/\/x.com\/zachxbt\" target=\"_blank\" rel=\"noreferrer noopener\">ZachXBT<\/a> de faire parler leur exp\u00e9rience.<\/p><p>Cette petite victoire face au groupe Lazarus pourrait donc signer le d\u00e9but d\u2019une \u00e8re <strong>plus s\u00fbre<\/strong> pour l\u2019\u00e9cosyst\u00e8me crypto. Avec les enl\u00e8vements r\u00e9cents, la communaut\u00e9 semble plus que jamais soud\u00e9e pour lutter contre les malfaiteurs. Une bonne nouvelle dans un climat aussi tendu. <\/p><hr class=\"wp-block-separator has-alpha-channel-opacity\"><p>Sur le m\u00eame sujet : <\/p><ul class=\"wp-block-list\">\n<li><a href=\"https:\/\/cryptonews.com\/fr\/news\/pakistan-reserve-strategique-bitcoin\/\">Le Pakistan lance sa r\u00e9serve strat\u00e9gique bitcoin : l\u2019adoption crypto continue <\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/cryptonews.com\/fr\/news\/sec-abandone-poursuites-binance-cz-crypto-gensler\/\">La SEC abandonne les poursuites contre Binance et son fondateur CZ <\/a><\/li>\n\n\n\n<li><a href=\"https:\/\/cryptonews.com\/fr\/news\/elon-musk-depart-doge-tarifs-douaniers-donald-trump-fin\/\">Elon Musk quitte DOGE et annulation des tarifs douaniers de Trump : Cons\u00e9quences pour les march\u00e9s ?<\/a><\/li>\n<\/ul><p><\/p>","protected":false},"excerpt":{"rendered":"<p>Alors que les enl\u00e8vements cryptos submergent les m\u00e9dias fran\u00e7ais, les attaques cybercriminelles ne ralentissent pas pour autant. La plateforme BitMEX a en effet \u00e9t\u00e9 la cible d\u2019une attaque cybern\u00e9tique ce vendredi 30 mai. D\u00e9jou\u00e9e gr\u00e2ce \u00e0 la r\u00e9activit\u00e9 de l\u2019\u00e9quipe, cette tentative de hack a \u00e9t\u00e9 analys\u00e9e et a r\u00e9v\u00e9l\u00e9 que le groupe Lazarus \u00e9tait [&hellip;]<\/p>\n","protected":false},"author":605,"featured_media":155804,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1,2438],"tags":[],"editors":[2551],"sponsored_companies":[],"class_list":["post-155792","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","category-plateformes-dechanges","editors-julien-leroy"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.6 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX<\/title>\n<meta name=\"description\" content=\"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d&#039;\u00eatre la cible d\u2019une attaque.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX\" \/>\n<meta property=\"og:description\" content=\"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d&#039;\u00eatre la cible d\u2019une attaque.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/\" \/>\n<meta property=\"og:site_name\" content=\"Cryptonews France\" \/>\n<meta property=\"article:published_time\" content=\"2025-05-31T17:34:13+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"1200\" \/>\n\t<meta property=\"og:image:height\" content=\"800\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX\" \/>\n<meta name=\"twitter:description\" content=\"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d&#039;\u00eatre la cible d\u2019une attaque.\" \/>\n<meta name=\"twitter:image\" content=\"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg\" \/>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX","description":"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d'\u00eatre la cible d\u2019une attaque.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/","og_locale":"fr_FR","og_type":"article","og_title":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX","og_description":"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d'\u00eatre la cible d\u2019une attaque.","og_url":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/","og_site_name":"Cryptonews France","article_published_time":"2025-05-31T17:34:13+00:00","og_image":[{"width":1200,"height":800,"url":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","type":"image\/jpeg"}],"twitter_card":"summary_large_image","twitter_title":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX","twitter_description":"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d'\u00eatre la cible d\u2019une attaque.","twitter_image":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"NewsArticle","@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#article","isPartOf":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/"},"author":{"name":"Julien Leroy","@id":"https:\/\/cryptonews.com\/fr\/#\/schema\/person\/f59ffc7902f955612739e25fdd52da26"},"headline":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX","datePublished":"2025-05-31T17:34:13+00:00","mainEntityOfPage":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/"},"wordCount":669,"publisher":{"@id":"https:\/\/cryptonews.com\/fr\/#organization"},"image":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#primaryimage"},"thumbnailUrl":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","articleSection":["News","Plateformes d'\u00e9changes"],"inLanguage":"fr-FR","copyrightYear":"2025","copyrightHolder":{"@id":"https:\/\/cryptonews.com\/#organization"}},{"@type":"WebPage","@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/","url":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/","name":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX","isPartOf":{"@id":"https:\/\/cryptonews.com\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#primaryimage"},"image":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#primaryimage"},"thumbnailUrl":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","datePublished":"2025-05-31T17:34:13+00:00","description":"Apr\u00e8s les enl\u00e8vements, les attaques cybercriminelles ne ralentissent pas en crypto. La plateforme BitMEX vient d'\u00eatre la cible d\u2019une attaque.","breadcrumb":{"@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/"]}],"author":[]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#primaryimage","url":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","contentUrl":"https:\/\/cimg.co\/wp-content\/uploads\/sites\/3\/2025\/05\/31163714\/1748709433-design-sans-titre-3.jpg","width":1200,"height":800},{"@type":"BreadcrumbList","@id":"https:\/\/cryptonews.com\/fr\/news\/lazarus-echoue-piratage-bitmex\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cryptonews.com\/fr\/"},{"@type":"ListItem","position":2,"name":"Le groupe Lazarus \u00e9choue dans sa tentative de piratage de BitMEX"}]},{"@type":"WebSite","@id":"https:\/\/cryptonews.com\/fr\/#website","url":"https:\/\/cryptonews.com\/fr\/","name":"Cryptonews","description":"","publisher":{"@id":"https:\/\/cryptonews.com\/fr\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cryptonews.com\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Organization","@id":"https:\/\/cryptonews.com\/fr\/#organization","name":"Cryptonews France","url":"https:\/\/cryptonews.com\/fr\/","logo":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/cryptonews.com\/fr\/#\/schema\/logo\/image\/","url":"https:\/\/cryptonews.com\/wp-content\/uploads\/sites\/3\/2023\/09\/4.jpg","contentUrl":"https:\/\/cryptonews.com\/wp-content\/uploads\/sites\/3\/2023\/09\/4.jpg","width":1669,"height":874,"caption":"Cryptonews France"},"image":{"@id":"https:\/\/cryptonews.com\/fr\/#\/schema\/logo\/image\/"}}]}},"_links":{"self":[{"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/posts\/155792","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/users\/605"}],"replies":[{"embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/comments?post=155792"}],"version-history":[{"count":10,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/posts\/155792\/revisions"}],"predecessor-version":[{"id":155808,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/posts\/155792\/revisions\/155808"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/media\/155804"}],"wp:attachment":[{"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/media?parent=155792"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/categories?post=155792"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/tags?post=155792"},{"taxonomy":"editors","embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/editors?post=155792"},{"taxonomy":"sponsored_companies","embeddable":true,"href":"https:\/\/cryptonews.com\/fr\/wp-json\/wp\/v2\/sponsored_companies?post=155792"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}