Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesEarnWeb3SquareMore
Trade
Spot
Buy and sell crypto with ease
Margin
Amplify your capital and maximize fund efficiency
Onchain
Going Onchain, without going Onchain!
Convert
Zero fees, no slippage
Explore
Launchhub
Gain the edge early and start winning
Copy
Copy elite trader with one click
Bots
Simple, fast, and reliable AI trading bot
Trade
USDT-M Futures
Futures settled in USDT
USDC-M Futures
Futures settled in USDC
Coin-M Futures
Futures settled in cryptocurrencies
Explore
Futures guide
A beginner-to-advanced journey in futures trading
Futures promotions
Generous rewards await
Overview
A variety of products to grow your assets
Simple Earn
Deposit and withdraw anytime to earn flexible returns with zero risk
On-chain Earn
Earn profits daily without risking principal
Structured Earn
Robust financial innovation to navigate market swings
VIP and Wealth Management
Premium services for smart wealth management
Loans
Flexible borrowing with high fund security
North Korea-Linked Lazarus Group Possibly Involved in $3.2 Million Solana Theft and Crypto Laundering

North Korea-Linked Lazarus Group Possibly Involved in $3.2 Million Solana Theft and Crypto Laundering

CoinotagCoinotag2025/06/30 06:08
By:Marisol Navaro
  • North Korea’s Lazarus Group has been identified in a recent $3.2 million Solana theft, showcasing their sophisticated cyberattack capabilities in the crypto space.

  • The attackers employed advanced laundering techniques, including the use of Tornado Cash, to obscure the trail of stolen funds.

  • According to on-chain analyst ZachXBT, these activities contribute to North Korea’s estimated $1.6 billion in crypto thefts this year, highlighting a growing threat to the sector.

North Korea-linked Lazarus Group escalates crypto thefts, using privacy tools like Tornado Cash to launder $3.2M in Solana, part of $1.6B stolen this year.

Lazarus Group’s $3.2 Million Solana Heist Marks Escalation in North Korea’s Crypto Attacks

On June 29, on-chain analyst ZachXBT disclosed that the Lazarus Group successfully executed a $3.2 million theft involving Solana assets on May 16. The stolen funds were rapidly converted to Ethereum, demonstrating the group’s agility in exploiting cross-chain vulnerabilities. Subsequently, 800 ETH was funneled through Tornado Cash, a privacy-focused protocol designed to anonymize transactions, complicating efforts to trace the illicit proceeds.

North Korea-Linked Lazarus Group Possibly Involved in $3.2 Million Solana Theft and Crypto Laundering image 0

At the time of reporting, approximately $1.25 million remains in an Ethereum wallet containing both DAI and ETH, indicating ongoing laundering activities. This incident is part of a broader pattern of increasingly sophisticated attacks by the Lazarus Group, targeting high-value digital assets across multiple blockchain platforms.

Complex Laundering and NFT Exploits Reveal Evolving Tactics

Further investigations by ZachXBT uncovered a linked exploit on June 27 involving multiple NFT projects, including those associated with Matt Furie, the creator of Pepe, as well as ChainSaw and Favrr. The attackers exploited vulnerabilities to mint and dump NFTs illicitly, resulting in an estimated $1 million loss. The stolen assets were moved through a series of wallets before partial conversion into stablecoins and deposits to MEXC, a centralized exchange known for its liquidity.

Analysis of the attackers’ digital footprint revealed connections to GitHub accounts configured with Korean language settings and time zones consistent with North Korean operations. This unusual combination of factors, such as VPN usage and suspicious resume details, suggests deliberate obfuscation efforts by DPRK IT operatives posing as legitimate developers.

Implications for Crypto Security and Regulatory Oversight

The persistent targeting of crypto assets by North Korean hackers underscores the urgent need for enhanced security protocols and regulatory frameworks within the cryptocurrency ecosystem. Blockchain analytics firms like TRM Labs estimate that North Korea has stolen approximately $1.6 billion in crypto assets this year alone, representing nearly 70% of all crypto thefts globally. These figures highlight the scale and sophistication of state-sponsored cybercrime in the digital asset space.

Industry stakeholders are urged to adopt comprehensive monitoring tools and collaborate with law enforcement to mitigate these threats. The use of privacy-enhancing technologies by malicious actors complicates attribution and recovery efforts, necessitating innovative solutions and international cooperation.

Conclusion

The recent $3.2 million Solana theft by the Lazarus Group exemplifies the evolving tactics employed by North Korean hackers in the cryptocurrency sector. Their use of advanced laundering methods and exploitation of NFT vulnerabilities signals a growing challenge for asset security. As these threats escalate, it is imperative for exchanges, developers, and regulators to strengthen defenses and foster transparency to protect the integrity of the crypto ecosystem.

In Case You Missed It: Trump Suggests Bitcoin Could Play a Strategic Role Amid Ongoing Dollar Challenges
1

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

The AI Chatbot Arms Race: Evaluating the Investment Potential of Google Gemini and xAI Grok as ChatGPT Rivals

- Google Gemini and xAI Grok-4 compete with ChatGPT using divergent strategies: ecosystem integration vs. premium performance. - Gemini leverages Google's product ecosystem and tiered pricing to dominate enterprise and Android markets, while Grok-4 targets high-value users with real-time data and advanced reasoning capabilities. - Financially, Google benefits from Alphabet's $85B infrastructure investments, while xAI faces $1B/month burn rates despite $80B valuation driven by Musk's brand and X platform ac

ainvest2025/08/28 11:39
The AI Chatbot Arms Race: Evaluating the Investment Potential of Google Gemini and xAI Grok as ChatGPT Rivals

Aave's Horizon: Unlocking Trillions in Onchain Liquidity Through Institutional DeFi Integration

- Aave Horizon unlocks institutional liquidity by tokenizing real-world assets (RWAs) like U.S. Treasuries and real estate, enabling stablecoin borrowing and yield generation via DeFi. - The RWA market surged to $26.71B by August 2025 (260% YTD growth), with Ethereum hosting 51.93% of value and BlackRock’s tokenized fund expanding from $649M to $2.9B. - Partnerships with JPMorgan, Franklin Templeton, and the U.S. Senate’s GENIUS Act validate Aave Horizon’s hybrid model, blending TradFi compliance with DeFi

ainvest2025/08/28 11:39
Aave's Horizon: Unlocking Trillions in Onchain Liquidity Through Institutional DeFi Integration

Ethereum ETFs Outperforming Bitcoin: A Strategic Shift in Institutional Capital Allocation

- Q2 2025 saw institutional capital shift to Ethereum ETFs, capturing $13.3B inflows vs. Bitcoin's $88M. - Ethereum's 4-6% staking yields, regulatory clarity, and DeFi infrastructure drove its institutional adoption. - SEC's utility token reclassification and in-kind mechanisms boosted Ethereum ETF confidence. - Institutional portfolios now favor 60/30/10 allocations (Ethereum/Bitcoin/altcoins) for yield and stability. - Ethereum's 90% lower L2 fees post-Dencun upgrade solidified its infrastructure dominan

ainvest2025/08/28 11:39
Ethereum ETFs Outperforming Bitcoin: A Strategic Shift in Institutional Capital Allocation

Decentralized Governance and the Rise of Bitcoin Treasuries: A New Paradigm for Institutional Investors

- Institutional investors increasingly adopt Bitcoin as strategic asset via decentralized governance models, mirroring industrial firms' operational agility. - Decentralized BTC-TCs empower mid-level managers for real-time decisions, using metrics like mNAV and leverage ratios to align with long-term goals. - Regulatory clarity (CLARITY Act, spot ETFs) and innovation (stablecoins, lending) normalize Bitcoin as diversification tool alongside traditional assets. - Investors prioritize transparent governance

ainvest2025/08/28 11:30
Decentralized Governance and the Rise of Bitcoin Treasuries: A New Paradigm for Institutional Investors