Japanese Crypto Firm SBI Loses $21 Million In Suspected North Korean Cyberattack

Source Bitcoinist

Reports have disclosed that Japanese firm SBI Crypto saw about $21 million siphoned from company-linked wallets on September 24, 2025.

Blockchain sleuths flagged the movement, and on-chain traces show funds leaving addresses that start with “0x40d7” and “bc1qx0a2k.”

The assets included Bitcoin, Ethereum, Litecoin, Dogecoin, and Bitcoin Cash. As of this report, the money has not been recovered.

Suspected Lazarus Group Connections

According to blockchain analysts, the transfers followed a clear path: the stolen coins moved through five instant exchanges before being sent into Tornado Cash, the crypto mixer that US authorities sanctioned in 2022.

Based on reports, the same set of tactics — wallet fingerprints, timing, and routing — match other intrusions linked to the Lazarus Group, the state-linked cyber unit from the DPRK.

A US court’s decision earlier this year to lift some restrictions around mixers has raised fresh concerns that these tools can be reused to hide large thefts.

Infiltration Schemes And Fake Profiles

Investigations have shown the threat is not only technical but social. Reports have disclosed that operatives created dozens of fake identities, bought Social Security numbers, and posed as blockchain developers on platforms such as Upwork and LinkedIn.

Evidence posted on August 13 linked one such fake-developer wallet to a $680,000 exploit of the project Favrr in June 2025. The methods range from phishing and fake job offers to bribery and contractor infiltration, giving attackers ways to penetrate projects from the inside.

A Growing Trail Of Stolen Crypto

Based on compiled forensics data, North Korean-linked groups stole more than $1.3 billion across 47 incidents in 2024. That figure jumped higher in 2025, with estimates putting thefts at about $2.2 billion in the first half of the year alone.

Malware campaigns have also been used. In June, Cisco Talos documented “PylangGhost,” a campaign that used bogus coding tests and interview sites to deliver malware.

That malware targeted over 80 browser extensions and popular wallets like MetaMask and Phantom.

Law enforcement has made some moves: US agents seized $7.7 million tied to covert networks, and the FBI dismantled front companies such as Blocknovas LLC and Softglide LLC.

The $21 million breach underscores how exposed even major firms remain to state-backed hacking campaigns. For now, the case stands as another warning: Japanese crypto firm SBI lost $21 million in suspected North Korean cyberattack.

Featured image from Gemini, chart from TradingView

Disclaimer: For information purposes only. Past performance is not indicative of future results.
placeholder
Bitcoin ETF Inflows For 2025 Now Outpace 2024, Data ShowsUS Bitcoin spot exchange-traded funds (ETFs) have seen more inflows this year so far compared to the same point in 2024, according to data.
Author  Bitcoinist
Jul 16, Wed
US Bitcoin spot exchange-traded funds (ETFs) have seen more inflows this year so far compared to the same point in 2024, according to data.
placeholder
Nonfarm Payrolls set to rise by 75K in August amid US labor market concernsThe United States (US) Bureau of Labor Statistics (BLS) will release the critical Nonfarm Payrolls (NFP) data for August on Friday at 12:30 GMT.
Author  FXStreet
Sep 05, Fri
The United States (US) Bureau of Labor Statistics (BLS) will release the critical Nonfarm Payrolls (NFP) data for August on Friday at 12:30 GMT.
placeholder
Gold Price Forecast: XAU/USD gains momentum to near $3,650, eyes on US CPI releaseThe Gold price (XAU/USD) gains momentum to near $3,645 during the early Asian session on Thursday.
Author  FXStreet
Sep 11, Thu
The Gold price (XAU/USD) gains momentum to near $3,645 during the early Asian session on Thursday.
placeholder
Gold extends rally amid geopolitical risks and Fed rate cut bets; fresh record high and countingGold (XAU/USD) continues scaling new record highs during the Asian session on Tuesday and climbs beyond the $3,250 level amid a supportive fundamental backdrop.
Author  FXStreet
Sep 30, Tue
Gold (XAU/USD) continues scaling new record highs during the Asian session on Tuesday and climbs beyond the $3,250 level amid a supportive fundamental backdrop.
placeholder
What to expect from Ethereum in October 2025With broader sentiment worsening, user demand falling across the Ethereum network, and institutional investors pulling back, the coin faces mounting headwinds in October.
Author  Beincrypto
Sep 30, Tue
With broader sentiment worsening, user demand falling across the Ethereum network, and institutional investors pulling back, the coin faces mounting headwinds in October.
goTop
quote