North Korean hackers bridge $3.2 million of stolen funds

來源 Cryptopolitan

Crypto investigators are raising alarms after $3.2 million was drained from multiple Solana wallets on May 16, 2025, which they say bears the hallmarks of the North Korea-linked Lazarus Group. The stolen assets were swiftly sold on-chain and bridged over to Ethereum before some of it was laundered through Tornado Cash.

On May 16, the victim’s Solana addresses were emptied of tokens, and the assets were then converted to Ethereum via a bridge before part of it was deposited to Tornado Cash.

Blockchain researcher ZachXBT publicly flagged the exploit, drawing parallels with earlier Lazarus activity.

Hackers bridged the stolen funds

Blockchain sleuths first raised the alarm after observing large transfers from address “C4WY…e525” on Solana.

These transactions, linked to the notorious Lazarus Group, involved moving the stolen tokens through a bridge and converting them into Ethereum. ZachXBT flagged the attack by monitoring the bridge’s activity and tracing funds that ultimately ended up in a network of wallets on Ethereum.

On June 25 and again on June 27, 400 ETH was sent to Tornado Cash in two separate deposits. Those 800 ETH transactions, totaling roughly $1.6 million, align with Lazarus Group’s well-documented laundering tactics.

Following high-profile hacks like Bybit, where $1.5 billion was stolen in February 2025, and $100 million from Harmony’s Horizon bridge in 2022, among other notable hacks, Lazarus has repeatedly used Tornado Cash, along with decentralized exchanges and cross-chain bridges, to launder funds by obfuscating transaction trails.

Approximately $1.25 million still resides in a wallet address identified as “0xa5…d528” on Ethereum, held in a combination of DAI and ETH. Analysts speculate that these funds may either be parked for future laundering or be held intentionally dormant to mitigate detection risk.

Lazarus Group has been active since 2017

Lazarus Group has earned a reputation as the most prolific state-linked cybercrime organization, with North Korea sanctions designating them as an Advanced Persistent Threat tied to Pyongyang’s elite military intelligence units. Over the years, they have stolen billions in crypto since 2017.

Their modus operandi often starts with phishing or malware-based infiltration of key personnel, exploiting smart contract flaws or wallet vulnerabilities. Once funds are obtained, they are rapidly converted into liquid assets, broken into multiple wallets, and laundered across chains using mixers like Tornado Cash and services providing instant swaps without Know Your Customer (KYC) requirements.

Tornado Cash remains central to Lazarus’s laundering strategy. Although U.S. sanctions were imposed in 2022, decentralized hosting and immutability have allowed the service to evade permanent shutdown. In January 2025, a U.S. appeals court reversed those sanctions, citing free speech considerations, despite mounting evidence linking Lazarus to continued mixer use.

Regulators and exchanges may now take steps to mark the flagged addresses as suspicious. However, with the speed and complexity of Lazarus’s laundering pipeline, mixing services continue to prove sufficient in concealing the movement of their stolen funds.

Your crypto news deserves attention - KEY Difference Wire puts you on 250+ top sites

免責聲明:僅供參考。 過去的表現並不預示未來的結果。
placeholder
歐元/美元續創近四年新高,兩大因素劍指1.2水準,短期迎來時間窗口!歐元/美元連續五日上漲,美國衰退風險「高燒不退」;貨幣政策差異推動歐元/美元走強,德美利差拐頭向下;歐元/美元:下行趨勢尚未扭轉,關注7月初時間節點
作者  Insights
6 月 26 日 週四
歐元/美元連續五日上漲,美國衰退風險「高燒不退」;貨幣政策差異推動歐元/美元走強,德美利差拐頭向下;歐元/美元:下行趨勢尚未扭轉,關注7月初時間節點
placeholder
澳元/日元價格預測:徘徊在94.50附近,初步支撐位於九日指數移動平均線澳元/日元在前一交易日上漲超過 0.50% 後小幅回落,週四亞洲時段交投於 94.50 附近
作者  FXStreet
6 月 26 日 週四
澳元/日元在前一交易日上漲超過 0.50% 後小幅回落,週四亞洲時段交投於 94.50 附近
placeholder
6月27日財經早餐:美關稅政策迎利好!美股全線上漲,美元連續六日下跌,黃金受阻3330投資者對聯准會重啟降息預期升溫繼續支撐市場風險情緒回升,更多證據顯示美國經濟衰退、美國貿易政策趨向緩和。週四(6月26日)美國一季度GDP環比年率終值意外下修至0.5%,不及預期下跌0.2%。與此同時,川普或將延長暫緩實施對等關稅最後限期(原定於7月9日)。另外,有消息顯示歐盟擬降美國關稅,此外,川普稱美中簽署一項貿易相關協議。
作者  Insights
6 月 27 日 週五
投資者對聯准會重啟降息預期升溫繼續支撐市場風險情緒回升,更多證據顯示美國經濟衰退、美國貿易政策趨向緩和。週四(6月26日)美國一季度GDP環比年率終值意外下修至0.5%,不及預期下跌0.2%。與此同時,川普或將延長暫緩實施對等關稅最後限期(原定於7月9日)。另外,有消息顯示歐盟擬降美國關稅,此外,川普稱美中簽署一項貿易相關協議。
placeholder
歐元/美元觸及1.1744,接近四年高點,因美聯儲降息押注增加,特朗普關注鮑威爾接任者歐元/美元週四飆升至近四年高點,連續五天延續反彈,首次突破1.1700大關,自2021年9月以來首次
作者  FXStreet
6 月 27 日 週五
歐元/美元週四飆升至近四年高點,連續五天延續反彈,首次突破1.1700大關,自2021年9月以來首次
placeholder
英鎊/日元在年內高點附近震盪,貝利指出通脹頑固,日本央行保持謹慎週四,英鎊(GBP)對日圓(JPY)小幅走強,英鎊/日圓交易接近年內高點。儘管漲幅有限,但該貨幣對仍受到整體看漲技術形態的支撐,保持上行趨勢不變
作者  FXStreet
6 月 27 日 週五
週四,英鎊(GBP)對日圓(JPY)小幅走強,英鎊/日圓交易接近年內高點。儘管漲幅有限,但該貨幣對仍受到整體看漲技術形態的支撐,保持上行趨勢不變
goTop
quote