Bitrefill Hacked by North Korea's Lazarus Group


Crypto Gift Card Platform @bitrefill Confirmed A Cyberattack on March 1, 2026.
What Happened:
Hackers compromised an employee Laptop, stole old credentials and accessed internal systems, database and hot wallets
Funds were drained from hot wallets (amount undisclosed)
Gift card inventory and supplier lines were exploited
~18,500 purchase records exposed (emails, crypto addresses, IP data)
~1,000 encrypted customer names potentially compromised
Key facts:
→ Attack linked to Lazarus Group / Bluenoroff based on malware, on-chain tracing and reused IP addresses
→ No full KYC data was stored or breached
→ Bitrefill will cover all losses from operational capital
→ All services are now back to normal
Lazarus Group continues to be the biggest cybersecurity threat in crypto. Always use unique passwords, enable 2FA and stay alert for phishing attempts.
post-image
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin