• bitcoinBitcoin (BTC) $ 96,178.00
  • ethereumEthereum (ETH) $ 3,217.84
  • tetherTether (USDT) $ 0.999455
  • xrpXRP (XRP) $ 2.26
  • bnbBNB (BNB) $ 940.59
  • usd-coinUSDC (USDC) $ 0.999725
  • tronTRON (TRX) $ 0.293656
  • staked-etherLido Staked Ether (STETH) $ 3,215.58
  • dogecoinDogecoin (DOGE) $ 0.164137
  • cardanoCardano (ADA) $ 0.509397
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.04
  • wrapped-stethWrapped stETH (WSTETH) $ 3,914.98
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 96,216.00
  • whitebitWhiteBIT Coin (WBT) $ 53.32
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,484.69
  • zcashZcash (ZEC) $ 652.84
  • hyperliquidHyperliquid (HYPE) $ 38.84
  • bitcoin-cashBitcoin Cash (BCH) $ 506.75
  • chainlinkChainlink (LINK) $ 14.28
  • usdsUSDS (USDS) $ 0.999966
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999457
  • stellarStellar (XLM) $ 0.261541
  • wrapped-eethWrapped eETH (WEETH) $ 3,477.31
  • leo-tokenLEO Token (LEO) $ 9.03
  • wethWETH (WETH) $ 3,216.68
  • ethena-usdeEthena USDe (USDE) $ 0.998844
  • moneroMonero (XMR) $ 428.60
  • litecoinLitecoin (LTC) $ 103.34
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 96,203.00
  • avalanche-2Avalanche (AVAX) $ 15.75
  • hedera-hashgraphHedera (HBAR) $ 0.156778
  • suiSui (SUI) $ 1.79
  • shiba-inuShiba Inu (SHIB) $ 0.000009
  • uniswapUniswap (UNI) $ 7.51
  • polkadotPolkadot (DOT) $ 2.88
  • the-open-networkToncoin (TON) $ 1.85
  • daiDai (DAI) $ 0.999823
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • crypto-com-chainCronos (CRO) $ 0.116129
  • usdt0USDT0 (USDT0) $ 0.999360
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.147635
  • canton-networkCanton (CC) $ 0.113484
  • mantleMantle (MNT) $ 1.21
  • memecoreMemeCore (M) $ 2.29
  • susdssUSDS (SUSDS) $ 1.08
  • paypal-usdPayPal USD (PYUSD) $ 0.999902
  • bittensorBittensor (TAO) $ 338.99
  • nearNEAR Protocol (NEAR) $ 2.47
  • internet-computerInternet Computer (ICP) $ 5.28
  • usd1-wlfiUSD1 (USD1) $ 0.999074
  • aaveAave (AAVE) $ 181.88
  • bitget-tokenBitget Token (BGB) $ 3.90
  • c1usdCurrency One USD (C1USD) $ 0.993179
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • okbOKB (OKB) $ 113.42
  • ethereum-classicEthereum Classic (ETC) $ 15.38
  • aster-2Aster (ASTER) $ 1.14
  • aptosAptos (APT) $ 2.96
  • pepePepe (PEPE) $ 0.000005
  • pump-funPump.fun (PUMP) $ 0.003612
  • tether-goldTether Gold (XAUT) $ 4,086.72
  • falcon-financeFalcon USD (USDF) $ 0.998942
  • ethenaEthena (ENA) $ 0.282958
  • jito-staked-solJito Staked SOL (JITOSOL) $ 177.70
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.79
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,217.71
  • solanaWrapped SOL (SOL) $ 143.16
  • ondo-financeOndo (ONDO) $ 0.588562
  • pi-networkPi Network (PI) $ 0.219264
  • htx-daoHTX DAO (HTX) $ 0.000002
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.157395
  • worldcoin-wldWorldcoin (WLD) $ 0.703226
  • kucoin-sharesKuCoin (KCS) $ 12.36
  • hash-2Provenance Blockchain (HASH) $ 0.030365
  • usdtbUSDtb (USDTB) $ 0.999335
  • filecoinFilecoin (FIL) $ 2.11
  • algorandAlgorand (ALGO) $ 0.165845
  • official-trumpOfficial Trump (TRUMP) $ 7.21
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,692.39
  • cosmosCosmos Hub (ATOM) $ 2.90
  • vechainVeChain (VET) $ 0.015928
  • pax-goldPAX Gold (PAXG) $ 4,095.85
  • arbitrumArbitrum (ARB) $ 0.245055
  • syrupusdtsyrupUSDT (SYRUPUSDT) $ 1.10
  • bfusdBFUSD (BFUSD) $ 0.999168
  • binance-staked-solBinance Staked SOL (BNSOL) $ 154.82
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 1.00
  • gatechain-tokenGate (GT) $ 10.97
  • kinetic-staked-hypeKinetiq Staked HYPE (KHYPE) $ 38.93
  • wbnbWrapped BNB (WBNB) $ 940.72
  • kaspaKaspa (KAS) $ 0.045595
  • quant-networkQuant (QNT) $ 83.40
  • syrupusdcsyrupUSDC (SYRUPUSDC) $ 1.14
  • skySky (SKY) $ 0.052206
  • ignition-fbtcFunction FBTC (FBTC) $ 96,617.00
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,400.48
  • render-tokenRender (RENDER) $ 2.18
  • global-dollarGlobal Dollar (USDG) $ 0.999771
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 96,360.00
  • flare-networksFlare (FLR) $ 0.014128
  • ripple-usdRipple USD (RLUSD) $ 0.999788
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,454.06
  • hashnote-usycCircle USYC (USYC) $ 1.11
  • story-2Story (IP) $ 3.22
  • morphoMorpho (MORPHO) $ 2.01
  • sei-networkSei (SEI) $ 0.165932
  • dashDash (DASH) $ 81.47
  • nexoNEXO (NEXO) $ 1.02
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 96,056.00
  • xdce-crowd-saleXDC Network (XDC) $ 0.054734
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,420.26
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.996097
  • starknetStarknet (STRK) $ 0.207043
  • jupiter-exchange-solanaJupiter (JUP) $ 0.289787
  • bonkBonk (BONK) $ 0.000011
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.013313
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.89
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.42
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,469.11
  • rainRain (RAIN) $ 0.003359
  • aerodrome-financeAerodrome Finance (AERO) $ 0.871097
  • ousgOUSG (OUSG) $ 113.30
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 96,216.00
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.17
  • fasttokenFasttoken (FTN) $ 1.77
  • immutable-xImmutable (IMX) $ 0.388779
  • janus-henderson-anemoy-aaa-clo-fundJanus Henderson Anemoy AAA CLO Fund (JAAA) $ 1.01
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.291821
  • optimismOptimism (OP) $ 0.395917
  • clbtcclBTC (CLBTC) $ 96,612.00
  • celestiaCelestia (TIA) $ 0.876215
  • soon-2SOON (SOON) $ 2.56
  • injective-protocolInjective (INJ) $ 6.92
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,536.12
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.10
  • lido-daoLido DAO (LDO) $ 0.768426
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 164.50
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,284.93
  • blockstackStacks (STX) $ 0.361200
  • curve-dao-tokenCurve DAO (CRV) $ 0.441866
  • beldexBeldex (BDX) $ 0.082679
  • tezosTezos (XTZ) $ 0.579061
  • the-graphThe Graph (GRT) $ 0.057929
  • newton-projectAB (AB) $ 0.006920
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999804
  • msolMarinade Staked SOL (MSOL) $ 191.32
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,215.26
  • bridged-usdc-polygon-pos-bridgePolygon Bridged USDC (Polygon PoS) (USDC.E) $ 0.999725
  • usdaiUSDai (USDAI) $ 1.00
  • tbtctBTC (TBTC) $ 96,425.00
  • decredDecred (DCR) $ 33.40
  • telcoinTelcoin (TEL) $ 0.005935
  • iotaIOTA (IOTA) $ 0.135185
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,218.47
  • doublezeroDoubleZero (2Z) $ 0.158025
  • usual-usdUsual USD (USD0) $ 0.998197
  • flokiFLOKI (FLOKI) $ 0.000056
  • pyth-networkPyth Network (PYTH) $ 0.093137
  • ether-fiEther.fi (ETHFI) $ 0.941224
  • syrupMaple Finance (SYRUP) $ 0.458080
  • kaiaKaia (KAIA) $ 0.087869
  • sonic-3Sonic (S) $ 0.135490
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 1.00
  • spx6900SPX6900 (SPX) $ 0.541439
  • ether-fi-liquid-ethEther.Fi Liquid ETH (LIQUIDETH) $ 3,414.12
  • ethereum-name-serviceEthereum Name Service (ENS) $ 13.13
  • stader-ethxStader ETHx (ETHX) $ 3,453.67
  • gtethGTETH (GTETH) $ 3,210.48
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.18
  • true-usdTrueUSD (TUSD) $ 0.994941
  • the-sandboxThe Sandbox (SAND) $ 0.184983
  • myx-financeMYX Finance (MYX) $ 2.50
  • steakhouse-usdc-morpho-vaultSteakhouse USDC Morpho Vault (STEAKUSDC) $ 1.11
  • bitcoin-svBitcoin SV (BSV) $ 22.95
  • conflux-tokenConflux (CFX) $ 0.088378
  • plasmaPlasma (XPL) $ 0.237352
  • ghoGHO (GHO) $ 0.999319
  • usddUSDD (USDD) $ 0.999334
  • jasmycoinJasmyCoin (JASMY) $ 0.008894
  • bittorrentBitTorrent (BTT) $ 0.00000045
  • heliumHelium (HNT) $ 2.35
  • galaGALA (GALA) $ 0.009258
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,215.43
  • dogwifcoindogwifhat (WIF) $ 0.430389
  • flowFlow (FLOW) $ 0.264611
  • theta-tokenTheta Network (THETA) $ 0.425527
  • swethSwell Ethereum (SWETH) $ 3,507.54
  • ibc-bridged-usdcNoble USDC (USDC.N) $ 1.10
  • sbtc-2sBTC (SBTC) $ 96,418.00
  • eutblSpiko EU T-Bills Money Market Fund (EUTBL) $ 1.21
  • sun-tokenSun Token (SUN) $ 0.022011
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,545.64
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.164127
  • wrapped-hypeWrapped HYPE (WHYPE) $ 38.76
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 96,114.00
  • usdbUSDB (USDB) $ 0.998420
  • decentralandDecentraland (MANA) $ 0.208661
  • vaultaVaulta (A) $ 0.248853
  • benqi-liquid-staked-avaxBENQI Liquid Staked AVAX (SAVAX) $ 19.39
  • apenftAINFT (NFT) $ 0.00000039

Lazarus Group at it again – New victim suspected in $3.1M Tron hack

0 73

Lazarus Group at it again – New victim suspected in $3.1M Tron hack

ZachXBT, the popular crypto sleuth, reported that a victim was hacked on Tron, leading to a loss of about $3.19M in USDT. The stolen USDT was transferred to Ethereum before the ETH was split among 10 addresses and deposited into Tornado Cash. ZachXBT attributes this hack to the notorious North Korean Lazarus Group.

Onchain Lens disclosed that ZachXBT had uncovered another malicious attack by a hacker, leading to the unknown victim’s loss of about 3.19M USDT. According to TronScan, the USDT was transferred to the Ethereum blockchain, where it was swapped for ETH and then split among 10 addresses before being deposited into Tornado Cash (96 X 10 ETH, 4 X 100 ETH, 78 X 1 ETH, 5 X 0.1 ETH).

ZachXBT pointed out that the hacker reused a theft address from the Michael Kong (Fantom/Sonic CEO) hack in October 2023, which had been previously attributed to the Lazarus Group as part of a ‘spearphishing campaign’ in a March 2024 report published by the UN.

On February 22, ZachXBT also revealed that the Lazarus Group had connected the Bybit hack to the Phemex hack directly on-chain by ‘commingling’ funds from the initial theft address for both incidents.

Lazarus Group adds unknown victim to the long list of crypto theft

Zach (@zachxbt) reported that a user was scammed by the Lazarus Group on Tron for approximately $3.2M $USDT

The stolen funds were transferred from #Tron to #Ethereum. The $ETH was then split among 10 addresses and deposited into Tornado Cash as follows: 96 x 10 ETH, 4 x 100 ETH,… pic.twitter.com/JRQ03rtflA

— Onchain Lens (@OnchainLens) March 1, 2025

According to ZachXBT, the Lazarus Group is suspected to have struck once again, this time targeting an unknown victim on Tron and stealing over 3.19M USDT. The loot was then quickly transferred to the Ethereum chain, swapped for ETH, and split among ten addresses before being deposited into Tornado Cash. TronScan data showed that the hacker(s) used two addresses, TYQ3455gFNeqyw and 0xcced1276382f4d, to siphon 3,199,779 USDT from a victim with the address TDNaLds1A1g6vYRU.

The malicious attack attributed to the North Korean hacking group suspected state links comes after a recent heist where the group reportedly stole over $1 billion from the Bybit exchange. Bybit was the victim of a record-breaking ~$1.5 billion Ethereum hack. North Korea’s Lazarus Group was the prime suspect in a sophisticated attack where the hackers infiltrated Bybit’s cold wallet and stole over 400K ETH.

Elliptic’s research claims the Bybit heist is arguably the largest crypto theft in history. The Lazarus Group is suspected of stealing over $6 billion worth of crypto assets since 2017. The proceeds were reportedly spent on North Korea’s ballistic missile program.

Elliptic follows the Lazarus Group’s patterns

According to Elliptic’s research, the Lazarus Group followed a characteristic pattern to launder stolen crypto tokens. The first step was to exchange any stolen tokens for a “native” blockchain asset such as Ether. The group reportedly opted for this method because tokens have issuers who, in some cases, can ‘freeze’ wallets containing stolen assets, but no central party can freeze Ether or Bitcoin.

That was exactly what happened in the minutes following the Bybit theft and the latest Tron hack involving an unknown victim. Hundreds of millions of dollars in stolen tokens were exchanged for ETH. They used decentralized exchanges (DEXs) to avoid any asset freezes that may happen if they use centralized exchanges (CEXs) to launder stolen funds.

As per Elliptic’s report, the second step of the laundering process was to conceal the transaction trail by ‘layering’ the stolen funds. These layering tactics can complicate the tracing process, buying the launderers valuable time to cash out the assets. The layering process includes sending funds through large numbers of cryptocurrency wallets and moving funds to other blockchains using cross-chain bridges or exchanges. It also includes other tactics like switching between different crypto-assets using DEXs, coin swap services, or exchanges and using ‘mixers’ such as Tornado Cash or Cryptomixer. eXch has also emerged as a major and willing facilitator of this laundering.

Source

Leave A Reply

Your email address will not be published.