Crypto Opinions & News Crypto exchanges freeze accounts tied to North Korea’s notorious Lazarus Group

Disclaimer: Any information contained on this forum is provided as general market commentary, and does not constitute investment, financial, trading or other sort of advice.

Stopspying

Level 19
Thread author
Verified
Top Poster
Well-known
Jan 21, 2018
814
"Two cryptocurrency exchanges have frozen accounts identified as having been used by North Korea’s notorious Lazarus Group.
This story starts with a crypto researcher who goes by “ZachXBT” and late last week spotted an entity called “Lazarus Group” moving 41,000 ETH “from the Harmony Bridge hack through Railgun on Jan 13-14 2023 before depositing funds on three exchanges.”
1/2 North Korea’s Lazarus Group had a very busy weekend moving $63.5m (~41000 ETH) from the Harmony bridge hack through Railgun before consolidating funds and depositing on three different exchanges. pic.twitter.com/huDumaJeSh
— ZachXBT (@zachxbt) January 15, 2023
The Harmony bridge was a crypto-transfer service that was attacked in June 2022, with around $100m of crypto lost as a result of the attack.
Analysts quickly identified Lazarus Group as the sort of entity that could be interested in attacking Harmony.
Lazarus Group is identified suspected of being a cybercrime crew run by the government of North Korea and is infamous for the WannaCry ransomware, attacking Sony Pictures and stealing secrets from energy companies.
It later moved on to crypto heists and has been fingered for the theft of $620 million of crypto from game developer Sky Mavis, publisher of a crypto-centric game named Axie Infinity.
North Korea steals crypto because sanctions make it hard for the rogue nation to access fiat currencies. The nation’s murderous regime conducts wholesale human rights abuses of its citizenry but needs funds to pursue the conventional missile and nuclear weapons programs that help to keep its rulers in power by making the cost of seeking regime change unacceptable to nations that oppose its violent autocracy..."


 

vtqhtr413

Level 26
Verified
Top Poster
Well-known
Aug 17, 2017
1,492
The Lazarus Group, as the threat actor is typically referred to, has laundered about $100 million in stolen Bitcoin since October 2022 through a single crypto-mixing service called Sinbad. Last year, the U.S. Treasury’s Office of Foreign Assets Control (OFAC) announced sanctions against the cryptocurrency mixing services Blender and Tornado Cash, which Lazarus had used to launder close to $500 million in illicitly obtained cryptocurrency. The measure was taken after more than $600 million in crypto assets were stolen from Axie Infinity’s cross-chain bridge in a hack later attributed to the North Korean Lazarus group. Hackers often use cryptocurrency mixers/tumblers because, for a fee, they allow hiding the origin and owners of the funds by blending the assets of a larger number of users.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top