A representative from a Canadian online gambling firm thought they were having a standard Zoom call with a familiar contact but was, in fact, conversing with North Korean hackers on a fake version of the platform. 

Field Effect Analysis reported that on May 28, the unnamed company was targeted by BlueNoroff, a subgroup of the infamous Lazarus Group, which is supported by North Korea. 

BlueNoroff is a financially driven threat actor that usually focuses on banks and cryptocurrency exchanges, along with gaming and entertainment sectors, and financial technology firms, to generate income for North Korea. 

The gang has taken over US$1.3 billion since 2017, primarily via SWIFT banking thefts and cryptocurrency heists. 

 

Deepfake 

Field Effect reported that BlueNoroff set up a fraudulent website mimicking an authentic Zoom support page to attack the gaming firm. The assailants impersonated an actual business associate and arranged a Zoom meeting with the target utilizing deepfake technology. 

In the Zoom meeting, the hackers pretended to have "audio issues," and the victim was instructed to execute a "Zoom audio repair script" to resolve the situation. However, the script was malicious software. 

Upon execution, the script initiated a series of downloads and commands, asking the user for system credentials and quietly installing several malicious payloads. This enabled the attackers to obtain various sensitive personal and system information, particularly targeting cryptocurrency-related assets and messaging data. 

According to Field Effect, the assault seems to be a component of a wider Zoom impersonation effort initially detected in March 2025 that has primarily focused on cryptocurrency firms. 

“It exemplifies an evolving pattern in which financially motivated threat actors continue refining their tradecraft, embedding malicious activity within legitimate business workflows and exploiting user trust as the primary attack surface,” the analysts wrote.

 

Bangladesh Bank Robbery 

BlueNorroff achieved its most infamous milestone in February 2016, when the group effectively implanted malware into the servers of Bangladesh Bank. This enabled them to secure credentials allowing 35 transfer requests from the New York Fed to accounts in the Philippines and Sri Lanka, amounting to nearly $1 billion. 

Out of the 35 payments, five, amounting to US$101 million, were executed before an employee at the New York Fed noticed something suspicious and halted additional transactions. 

Approximately $20 million flowed into Sri Lanka and was swiftly reclaimed. The remainder was moved to four accounts at the Philippine bank RCBC, which had been opened that same day using fake identities. From that point, it found its way into the loosely regulated Philippine casino sector, where it was washed at VIP gaming tables, before vanishing without a sign. 

image
Check Out Other Casino Offers
Lucky VIP
Lucky VIP

Deposit £20

Play With £40

  • Unlimited withdrawals
  • Wide selection of games
  • Excellent range of player bonuses
18+. T&C’s Apply

New Customers Only. Min dep £20 (Paypal & Paysafe exc). Max Bonus £20, Wager Requirement 10x & Max win £1,000. On selected games. T&C's apply

The Grand Ivy
The Grand Ivy

Match Bonus

100% up to £100 with 10x wagering + 100 free spins on Big Bass Bonanza.

  • Wide selection of quality games
  • Close to 400 quality slots
  • No-download casino with over 500 games
18+. T&C’s Apply

 

18+. New players only. One offer per player. Min deposit £20. Max bonus bet £5. Offer: 100% match bonus on 1st deposit up to £100 + 100 free spins. Free spins expire in 72h, winnings capped at £100, credited as cash and are immediately withdrawable. Bonus funds expire in 30 days and are subject to 10x wagering of the bonus funds. Only bonus funds count towards wagering contribution. Affordability checks and Terms apply. Please Gamble Responsibly. BeGambleAware.org.

Crystal Slots
Crystal Slots

Bonus

up to 500 Free Spins

  • Over 600 slots
  • Fun loyalty trophy scheme
  • Fantastic selection of games
18+. T&C’s Apply

New players only, £10+ fund, 10x bonus wagering requirements, max bonus conversion to real funds equal to lifetime deposits (up to £250), 18+ GambleAware.org. Full T&Cs apply