العقود الآجلة
وصول إلى مئات العقود الدائمة
TradFi
الذهب
منصّة واحدة للأصول التقليدية العالمية
الخیارات المتاحة
Hot
تداول خيارات الفانيلا على الطريقة الأوروبية
الحساب الموحد
زيادة كفاءة رأس المال إلى أقصى حد
التداول التجريبي
مقدمة حول تداول العقود الآجلة
استعد لتداول العقود الآجلة
أحداث مستقبلية
"انضم إلى الفعاليات لكسب المكافآت "
التداول التجريبي
استخدم الأموال الافتراضية لتجربة التداول بدون مخاطر
إطلاق
CandyDrop
اجمع الحلوى لتحصل على توزيعات مجانية.
منصة الإطلاق
-التخزين السريع، واربح رموزًا مميزة جديدة محتملة!
HODLer Airdrop
احتفظ بـ GT واحصل على توزيعات مجانية ضخمة مجانًا
Pre-IPOs
افتح الوصول الكامل إلى الاكتتابات العامة للأسهم العالمية
نقاط Alpha
تداول الأصول على السلسلة واكسب التوزيعات المجانية
نقاط العقود الآجلة
اكسب نقاط العقود الآجلة وطالب بمكافآت التوزيع المجاني
Zerion Says User Funds Are Safe After Employee Loses $100K in Social Engineering Attack - Crypto Economy
TL;DR:
A Zerion employee fell victim to an AI-powered social engineering attack linked to a North Korean (DPRK) threat actor, as confirmed by the company itself in a statement published on X. The incident resulted in the theft of approximately $100,000 from internal hot wallets used for testing and internal operations No user-related funds were compromised.
The attacker managed to access active sessions, credentials, and private keys from the team’s internal wallets. Zerion clarified that its wallet is fully self-custodial and that no team member has access to users’ private keys or seed phrases. The company’s mobile apps, browser extension, backend infrastructure, and social media accounts also remained intact.

Zerion Responds Quickly and Seeks to Reassure its Community
The post-mortem of the incident notes that the attack was sophisticated and planned, not driven by mere opportunity. Upon detecting the breach, the Zerion team took immediate action: it locked the deployment infrastructure to prevent the attacker from publishing malicious versions on the company’s domains, placed the web application in maintenance mode, and rotated all exposed credentials and private keys. Multisig accounts were also reconfigured. In addition, each team member ran an analysis script on their devices to detect malware similar to that used in the attack.
The company worked with the teams at Blockaid, ZeroShadow, and ChainPatrol to identify and request the removal of the attacker’s wallets and accounts. The stolen funds were traced to specific addresses, which were reported to the relevant authorities.
The Security Alliance (SEAL) has been investigating similar attacks from February 6 through April 7, 2026, and has already identified 164 malicious websites linked to UNC1069, a group backed by North Korea that targets crypto and Web3 companies. SEAL warned that the group uses fake Zoom and Microsoft Teams calls, as well as software attacks to steal funds and sensitive data.

North Korea: The Biggest Enemy of Crypto Security
This incident is part of an already established trend in the industry. According to the most recent report from the FBI’s Internet Crime Complaint Center, cybercrime losses exceeded $20.8 billion in 2025. That same year, more than 22,000 complaints involving artificial intelligence components were recorded, underscoring the growing scale and sophistication of attack vectors targeting the crypto ecosystem.