CertiK Warns of Lazarus Group's Enhanced Threat with Mach-O Man Attack

Security experts at CertiK have alerted the crypto industry to a new campaign by Lazarus Group, known as 'Mach-O Man', which transforms ordinary business communications into a direct route for credential theft and data loss. This campaign targets high-value executives and firms in the fintech and cryptocurrency sectors, with estimated cumulative losses of $6.7 billion since 2017. In recent weeks, the group has stolen over $500 million from exploits such as Drift and KelpDAO, showcasing their sustained and well-funded threat. The Mach-O Man malware kit, developed by Lazarus' Chollima division, utilizes native Mach-O binaries tailored for Apple environments and employs a social engineering technique called ClickFix to trick victims into providing access to corporate systems. Experts warn that the crypto industry must recognize Lazarus as a constant and well-funded threat, rather than just a news headline, and take immediate action to protect themselves from this evolving menace.