Place your ads here email us at info@blockchain.news
NEW
DeFi Security Alert: North Korean Hackers Exploit Human Weakness as Polygon (MATIC) Revamps Strategy & Retires zkEVM | Flash News Detail | Blockchain.News
Latest Update
7/8/2025 5:15:00 PM

DeFi Security Alert: North Korean Hackers Exploit Human Weakness as Polygon (MATIC) Revamps Strategy & Retires zkEVM

DeFi Security Alert: North Korean Hackers Exploit Human Weakness as Polygon (MATIC) Revamps Strategy & Retires zkEVM

According to dydxfoundation, decentralized finance (DeFi) protocols are increasingly soft targets for North Korean hackers who exploit operational security (OPSEC) failures rather than complex smart contract vulnerabilities. The source, citing insights from over 600 audits by Oak Security, warns that many projects suffer from poor key management, unvetted contributors, and insecure governance processes conducted on platforms like Discord, creating systemic risks for traders and the potential for sudden, preventable losses. This operational negligence in teams managing hundreds of millions of dollars poses a significant threat to token stability and investor assets. In related market-moving news, Polygon (MATIC) is undergoing a major strategic overhaul as co-founder Sandeep Nailwal takes over as CEO of the Polygon Foundation. The organization will now focus on its AggLayer cross-chain liquidity protocol and is retiring its zkEVM network, a significant pivot for the project. Separately, the Ethereum Foundation has implemented a new treasury policy, capping annual operational expenses at 15% to ensure long-term sustainability for the Ethereum (ETH) ecosystem. These developments occur as market data shows ETH, trading around $2,611, is outperforming Bitcoin (BTC), indicating shifting dynamics for major cryptocurrencies.

Source

Analysis

The cryptocurrency landscape is confronting a stark reality: the most significant threats are no longer just sophisticated smart contract exploits but rather targeted attacks on human and operational vulnerabilities. According to analysis from security experts at dYdX Foundation and Oak Security, North Korean-affiliated hacking groups have evolved their tactics, moving away from complex code-breaking to exploiting the softer, human layer of Web3. These adversaries now focus on poor key management, non-existent onboarding processes for contributors, and governance decisions conducted through insecure channels like Discord polls. This strategic shift underscores a critical vulnerability across the decentralized finance (DeFi) ecosystem, where billions in assets are often secured by teams that prioritize code audits over fundamental operational security (OPSEC).



The Human Layer: DeFi's Soft Underbelly


The evidence of this evolving threat is mounting. In 2025 alone, campaigns linked to North Korean attackers have targeted an estimated $1.5 billion in assets at exchanges like Bybit through credential harvesting, with significant funds already laundered. These attacks are not isolated; they include malware targeting users of popular wallets like MetaMask and Trust Wallet and attempts to infiltrate development teams through fake job applicants. The core issue, as highlighted by over 600 audits conducted by Oak Security, is a pervasive "smart contract illusion." Teams invest heavily in securing their code while leaving the administrative and human elements dangerously exposed. This negligence is not limited to state-sponsored threats. A May 2025 incident at Coinbase, where a bribed support agent illegally accessed customer data, demonstrates that insider threats and human failures are systemic risks that can lead to hundreds of millions in potential losses.



Polygon's Strategic Overhaul Amidst Market-Wide Security Concerns


In this high-stakes environment, major protocols are making decisive moves to secure their future. Polygon Labs is undergoing a significant strategic revamp, with co-founder Sandeep Nailwal taking the helm as CEO of the Polygon Foundation. This move consolidates leadership and signals a clear new direction for the project. The most notable change is the retirement of the Polygon zkEVM in favor of focusing resources on AggLayer, a novel protocol designed to unify liquidity across different blockchain networks. This pivot aims to reclaim Polygon's position as a leader in Web3 interoperability. For traders, this represents both a long-term bullish narrative and short-term execution risk. The success of AggLayer could be a major catalyst for the POL token, but phasing out a major product like zkEVM introduces uncertainty that will be closely watched by the market.



Market and Technical Analysis for ETH, BTC, and SOL


Looking at current market data, Ethereum (ETH) is showing considerable strength. The ETH/USDT pair has climbed 2.54% to $2,611.92, while the ETH/USD pair is up 3.16% to $2,633.68. This momentum is further confirmed by the ETH/BTC ratio, which has gained 2.38% to 0.02414, indicating ETH is outperforming Bitcoin. A key driver could be the Ethereum Foundation's newly published treasury policy, which caps annual operational expenses and provides a clear roadmap for financial sustainability, boosting investor confidence. Immediate resistance for ETH sits near the 24-hour high of $2,645, with support established around the $2,547 low. In contrast, Bitcoin (BTC) has seen more modest gains, with the BTC/USDT pair up 0.36% to $108,694.20, trading within a tight range. A key technical development for Bitcoin is the upcoming Bitcoin Core version 30, which will increase the OP_RETURN data limit, a move that could enable new applications but has sparked debate about potential network bloat. Meanwhile, Solana (SOL) is also in the green, with SOL/USDT rising 1.5% to $152.37. Its performance against ETH shows a 2.6% gain, suggesting strong momentum in the altcoin market. The broader market sentiment appears cautiously optimistic, with Layer 1 protocols like Ethereum and Solana leading the charge as they continue to innovate on both the technical and operational fronts.



Ultimately, the path forward for the digital asset space requires a dual focus. While technical innovations like Polygon's AggLayer and Plume's RWA-focused mainnet are crucial for growth, they must be built upon a foundation of robust operational security. The industry must learn from the disciplined, multi-layered defense strategies of traditional finance, adapting them for decentralized environments. This includes structured onboarding, rigorous access controls, and comprehensive incident response plans. As attackers continue to target the human element, the protocols that invest in a culture of security—from the code right through to the contributors—will be the ones that endure and build lasting value in this evolving ecosystem.

dYdX Foundation

@dydxfoundation

Enabling community-led growth, development & self-sustainability of the @dYdX protocol.

Place your ads here email us at info@blockchain.news