북한 해커의 암호화폐 해킹 활동사(史): 기술 수단과 전략의 진화

The Historical Evolution of North Korean Cryptocurrency Hacking: Techniques and Strategic Shifts

초록

Since the late 2010s, state-sponsored North Korean hackers have increasingly threatened global cybersecurity by targeting the cryptocurrency sector. This study presents a historical and analytical overview of key incidents, including the Upbit, Binance, Ronin Bridge, Horizon Bridge and Atomic Wallet incidents. Using chronological and technical analysis, it explores how the Lazarus Group exploited vulnerabilities across blockchain systems, centralized exchanges, and wallets through spear phishing, malware, and supply chain attacks. It also examines laundering methods such as mixers and cross-chain swaps, assessing their implications for global anti-money laundering (AML) efforts. The findings reveal that repeated attacks have ironically accelerated crypto’s institutionalization, prompting stronger security and governance. The study identifies a dual structure: centralized exchanges move toward compliance, while DeFi protocols maintain regulatory avoidance through autonomous governance. By tracing the co-evolution of cyber threats and institutional responses, this paper contributes to the understanding of how external risks shape industry governance and regulatory development in emerging digital financial markets.

키워드

북한 해커암호화폐 해킹자금세탁방지(AML)공진화(Co-evolution)North Korea hackersCryptocurrency HackingAMLCo-evolution
제목
북한 해커의 암호화폐 해킹 활동사(史): 기술 수단과 전략의 진화
제목 (타언어)
The Historical Evolution of North Korean Cryptocurrency Hacking: Techniques and Strategic Shifts
저자
성상현강형구
DOI
10.22629/kabh.2025.40.4.002
발행일
2025-11
유형
Y
저널명
경영사연구
40
4
페이지
23 ~ 51