TLDR
- Google warned Binance founder CZ of a possible state-backed attack targeting his account.
- CZ speculated that North Korea’s Lazarus Group could be behind the cyberattack attempt.
- Lazarus Group has stolen billions from the crypto industry, including a record $1.5B in 2025.
- CZ encouraged the community to stay alert and secure their accounts from similar threats.
Binance founder Changpeng Zhao, known as CZ, recently shared an alarming security alert from Google, warning of a potential state-backed cyberattack targeting his account. The alert, which CZ shared via his official X account, highlights the growing cybersecurity risks faced by key figures in the cryptocurrency industry. Google’s regular warnings about government-sponsored attacks reveal the increasing sophistication of these threats, particularly aimed at crypto leaders like CZ.
Google Security Alert
Google sent a warning to Binance founder Changpeng Zhao, notifying him of a potential state-backed attack targeting his account. The notification warned of an attempt to steal his password, potentially linked to government-backed cybercriminals.
CZ took to X to share the news, noting that such alerts are common but still concerning. He also speculated that North Korea’s Lazarus Group might be behind this attempt, based on their history of targeting crypto industry figures.
Google’s security system actively monitors for signs of state-sponsored attacks and regularly alerts high-profile users in the cryptocurrency sector. The company has been alerting people in the crypto space about phishing risks and fake websites impersonating legitimate platforms. In this instance, Google specifically flagged an attempt to steal CZ’s password, further confirming the targeted nature of the attack.
Cybersecurity Threats in Crypto Industry
The cryptocurrency sector remains a prime target for cyberattacks, especially those backed by state-sponsored groups. Google’s alert to CZ is a reminder of the vulnerabilities that major crypto figures face. These attacks often come in the form of phishing attempts, where hackers pose as legitimate parties to gain access to sensitive information or accounts.
CZ’s post on X raised awareness about the ongoing threats in the crypto space. He urged the community to be vigilant, as state-backed groups, such as North Korea’s Lazarus Group, have a history of using sophisticated methods to breach accounts. This is not the first time CZ has shared insights into these threats, previously warning about hackers using fake job applications to infiltrate crypto companies.
Lazarus Group’s History of Attacks
The Lazarus Group, a state-sponsored hacker group associated with North Korea, has a long history of cyberattacks targeting the cryptocurrency industry. Since 2017, they have stolen billions of dollars, with recent reports indicating a rise in their activities in 2025.
The group’s most significant heist this year was the $1.5 billion stolen from Bybit in February, marking the largest cryptocurrency theft to date. Lazarus Group employs various strategies, including phishing, social engineering, and exploiting vulnerabilities in exchanges.
Their attacks are known for being well-coordinated and sophisticated, making them a significant threat to high-profile individuals in the crypto space. The group’s ability to evolve and adapt their tactics has made them a constant danger for those in the industry, and the recent alert sent to CZ further emphasizes the ongoing threat.
Community Reaction and Precautionary Measures
CZ’s followers on X shared their thoughts and offered advice on how to secure accounts in light of the growing threats. One user, Crypto Jargo, noted that these warnings are rare but not uncommon for individuals connected to sensitive matters.
He recommended that CZ take precautionary measures, such as changing passwords, enabling two-factor authentication (2FA), and reviewing any unusual devices logged into his account.
Despite the alert, CZ reassured his followers that his account did not contain anything of value. However, he encouraged everyone to stay vigilant, reinforcing the importance of securing online accounts against potential cyberattacks. This incident serves as a timely reminder for all cryptocurrency leaders to remain aware of the dangers posed by state-backed hackers and to take steps to protect their accounts.