Top

Atomic Wallet Hacker Uses Lazarus Crypto Mixer

Web3 & Enterprise·June 07, 2023, 12:27 AM

The stolen cryptocurrency from the recent $35 million hack of Atomic Wallet is already being moved to a crypto mixer favored by North Korea’s notorious cyber-hacking group.

Photo by Micha Brändli on Unsplash

 

Sinbad.io

According to UK-based crypto compliance analysis firm Elliptic, the funds have made their way to a crypto mixer used by Lazarus Group, a notorious hacker group that focuses on crypto heists which is believed to have direct ties with the North Korean government.

On June 5, Elliptic’s Investigations Team revealed that it had traced the funds from the Atomic Wallet hack to the crypto mixer Sinbad.io. Lazarus had previously used the mixer to launder over $100 million in stolen crypto assets.

While the exact amount sent to the mixer was not specified, Elliptic noted that the stolen funds were being exchanged for Bitcoin before undergoing obfuscation through the mixer. Additionally, Elliptic reported that Sinbad.io is likely a rebranded version of Blender.io, another mixer extensively used to launder funds by the Lazarus Group. Blender.io has been sanctioned by the US Treasury.

 

Atomic Wallet hack

The hack of several user accounts on Atomic Wallet occurred on June 3, resulting in losses of up to $35 million. News of the issue broke with the following tweet from the project team (which has subsequently been deleted): “We have received reports of wallets being compromised. We are doing all we can to investigate and analyze the situation. As we have more information, we will share it accordingly.”

In a follow-up tweet the next day, the team confirmed that it was investigating the matter with the assistance of a number of “leading security companies.”

However, Atomic Wallet later downplayed the incident, stating that less than 1% of its monthly active users were affected. The project team was castigated by users for trying to present the hack as a minor incident. One user took to Twitter to call out the Atomic Wallet team for “having the nerve to come to the networks and say that only 1% of wallets were affected.”

The Atomic Wallet project is based out of Tallinn, Estonia, having been founded in 2017. It claims to provide a non-custodial decentralized multi-currency crypto wallet. The product supports over fifty coins and two hundred tokens. It also offers atomic swaps between digital assets, while also supporting integrations with instant exchanges such as Changelly, ShapeShift, and others.

Roland Säde, the Chief Marketing Officer of Atomic Wallet, assured users that the team is working tirelessly to recover the stolen funds. He emphasized the need to complete the investigation to develop a concrete plan.

Despite the ongoing efforts, Säde urged victims to track the illicit transfers and report them to popular crypto exchanges. By doing so, it was thought that may hinder the scammers from exchanging the funds.

 

Crypto hacking menace

Lazarus Group hackers have been the bane of the crypto space in recent years. Elliptic released a report last month that identified Japan as having been the country most adversely affected by the North Korean hackers. It’s understood that the estimated $721 million in stolen crypto from Japan-based entities amounts to nearly nine times the value of North Korea’s exports based on 2021 data.

While Atomic Wallet is directly reporting the incidents, Säde believes that having more individuals monitoring the hackers’ activities will make it more challenging for them to move the funds undetected. Unfortunately, Elliptic’s recent findings suggest that for many victims, it may already be too late to prevent further misuse of their stolen cryptocurrency.

More to Read
View All
Policy & Regulation·

Dec 14, 2023

KuCoin resolves lawsuit through settlement and New York market exit

KuCoin resolves lawsuit through settlement and New York market exitKuCoin, one of the largest global cryptocurrency exchanges, has arrived at a comprehensive settlement with the authorities in the state of New York in the United States, agreeing to pay $22 million.Photo by Michael Discenza on UnsplashSubstantial fine and refundsThe settlement not only involves a substantial fine but also includes refunds to New York investors and the cessation of trading activities in the state. This resolution comes amidst an assertive effort by New York authorities to shape and regulate the crypto landscape within the state.According to a statement released by New York Attorney General Letitia James on Tuesday, KuCoin will refund a total of $16.7 million to 177,800 New York investors. In addition to the refunds, KuCoin will pay a $5.3 million fine to the state.The settlement addresses allegations that KuCoin failed to register as a securities and commodities broker-dealer while falsely presenting itself as a cryptocurrency exchange.Taking to social media platform X, James wrote:”My office is making crypto platform @kucoincom pay over $22 million for illegally operating in New York. KuCoin is also banned from doing business in our state. Shady cryptocurrency platforms must play by the same set of rules as everyone else or face the consequences.”At the time of taking action against KuCoin in March, James described the lawsuit as “our eighth action to rein in shadowy cryptocurrency platforms that disregard our laws and put New Yorkers at risk.”Lack of registrationKuCoin, based in the Seychelles, allows investors to trade digital assets through its website and app. However, the state of New York argued that KuCoin could not legitimately claim to be an exchange due to its lack of registration with the U.S. Securities and Exchange Commission (SEC) and the proper designation by the Commodity Futures Trading Commission (CFTC), as mandated by state law.Ranked as the fourth-largest exchange by spot and derivatives trading volume, KuCoin’s KCS token, a profit-sharing token on the platform, has experienced a 39% increase since the start of the week. At the time of writing, it has a unit price of $13.80. This surge is a consequence of the clarity and finality brought about by the settlement, alongside rising expectations for a U.S. exchange-traded fund (ETF) directly investing in Bitcoin, sparking a broader rally in lesser-known cryptocurrencies over the past month.Potential rumorsKuCoin CEO Johnny Lyu took to the X platform on Tuesday to outline details of the settlement. Interestingly, Lyu included this notification:”I also want to give you a heads-up about potential rumors surfacing in the next few weeks. Please stick to the official website of KuCoin for accurate information.”While the settlement may have brought a certain degree of clarity to the KuCoin platform, Lyu’s comment suggests that there may be other issues about to emerge in the short term.The lawsuit against KuCoin is part of a broader regulatory trend in New York, with Attorney General James having previously filed a similar complaint against CoinEx. Additionally, a settlement in January involving crypto companies Nexo Inc. and Nexo Capital Inc. resulted in a financial resolution of up to $24 million for New York and nine other states.

news
Policy & Regulation·

Sep 20, 2023

CoinEx Reveals Insights Into Recent Platform Hack

CoinEx Reveals Insights Into Recent Platform HackHong Kong crypto exchange CoinEx has issued a further update relative to the security breach that occurred on the platform last week resulting in one of the exchange’s hot wallets being compromised.Photo by FLY:D on UnsplashImmediate responseIn the immediate aftermath of the $70 million hack, CoinEx took action to safeguard user assets and initiate an investigation into the incident. It suspended all deposit and withdrawal services and executed an emergency shutdown of the hot wallet server. Following this, the company securely moved the remaining assets to cold storage, commencing the process of reconstructing and deploying a new wallet architecture.The firm also engaged in an investigation, spearheaded by its wallet and security teams, to ascertain the extent of the breach. Moreover, CoinEx claims to have proactively reached out to fellow exchanges to freeze any assets related to the attack.Haipo Yang, the Founder and CEO of CoinEx, conveyed his apologies to affected users through his personal X (formerly Twitter) account. He emphasized the team’s commitment to restoring services promptly and reassured users that their funds will remain secure.Following up on that commitment, CoinEx published an update on the hot wallet hack on September 15 to address these concerns individually.New wallet deploymentThe exchange expects to finalize wallet upgrades within the upcoming week, after which withdrawals will gradually be phased in, subject to security evaluations. The CoinEx team is currently working on developing and deploying an entirely new and robust wallet system capable of managing activities across 211 chains and 737 assets.The firm has outlined that each of its product lines operates independently, featuring its own risk control system. Consequently, the security incident that occurred on CoinEx will not affect the integrity of its other product lines.In its most recent update on Tuesday, the Hong Kong crypto exchange confirmed that 80% of its wallet system has now been reconstructed. It added that it has initiated preparations to enable the withdrawal system on the platform. It stated:”Details about the resumption of withdrawals, including specific dates, times, and arrangements, will be announced on the CoinEx website. Please stay updated on our announcements for the latest information.”Ongoing investigationRegarding the identity of the attacker, CoinEx has confirmed that the matter is currently under investigation. While some security firms have made attribution claims, the company is focusing primarily on deploying the new wallet architecture, restoring affected users and functionalities, and enhancing overall security.At the same time, the company has initiated communications with the hackers in a bid to proactively seek a mutually agreeable resolution. While the incident implicates the loss of a substantial amount of funds, the firm maintains that in the context of the overall business, the sum represents only a small percentage of total assets under its management.Exchange security remains a major challenge in the crypto sector, with hacks happening on an ongoing basis. Last week, Seychelles-headquartered peer-to-peer crypto platform Remitano acknowledged a $2.7 million hack. At the beginning of September, crypto gambling platform Stake was reported to have suffered a $41 million hack.

news
Policy & Regulation·

Jun 08, 2023

South Korea, Chainalysis Collaborate to Thwart North Korea’s Crypto Crimes

South Korea, Chainalysis Collaborate to Thwart North Korea’s Crypto CrimesSpecial Representative for Korean Peninsula Peace and Security Affairs Kim Gunn from the Ministry of Foreign Affairs held a meeting with Investigations VP Erin Plante and Korea Country Manager Paek Yong-khi of Chainalysis, a New York-based blockchain analysis company, according to the Ministry’s press release.Photo by Pixabay on PexelsGrowing North Korean crypto theftsSpecial Representative Kim and the Chainalysis representatives discussed response measures against North Korea’s increasing virtual asset theft and money laundering activities. Both sides recognized the severity of North Korea’s illegal cyber activities, which not only jeopardize national security by funding nuclear and missile development, but also threaten the establishment of a healthy cryptocurrency ecosystem.Chainalysis has been tracking North Korea’s illicit virtual asset operations and providing analytical information to a range of organizations, including law enforcement agencies and financial authorities.Special Representative Kim expressed gratitude for the private sector’s role in analyzing and monitoring North Korea’s crypto theft and money laundering activities. Both parties concurred on the importance of public-private cooperation to strengthen countermeasures against illegal cryptocurrency activities as North Korea’s techniques have become increasingly sophisticated.Plante also appreciated the South Korean government’s initiative in thwarting North Korea’s illicit cyber activities. These measures include imposing independent sanctions on North Korean hacker organizations and tech personnel and establishing a working group with the United States to counter North Korean cyber threats.Korean police and ChainalysisIn addition to its collaboration with the Ministry of Foreign Affairs, Chainalysis has been working with another Korean government agency. It was recently reported that the Korea National Police Agency (KNPA) is intensifying its efforts to enhance its expertise in investigating digital asset-related crimes. To achieve this goal, the KNPA is encouraging its officers to obtain certifications provided by Chainalysis.

news
Loading