Atomic Wallet Hacker Uses Lazarus Crypto Mixer
The stolen cryptocurrency from the recent $35 million hack of Atomic Wallet is already being moved to a crypto mixer favored by North Korea’s notorious cyber-hacking group.

Sinbad.io
According to UK-based crypto compliance analysis firm Elliptic, the funds have made their way to a crypto mixer used by Lazarus Group, a notorious hacker group that focuses on crypto heists which is believed to have direct ties with the North Korean government.
On June 5, Elliptic’s Investigations Team revealed that it had traced the funds from the Atomic Wallet hack to the crypto mixer Sinbad.io. Lazarus had previously used the mixer to launder over $100 million in stolen crypto assets.
While the exact amount sent to the mixer was not specified, Elliptic noted that the stolen funds were being exchanged for Bitcoin before undergoing obfuscation through the mixer. Additionally, Elliptic reported that Sinbad.io is likely a rebranded version of Blender.io, another mixer extensively used to launder funds by the Lazarus Group. Blender.io has been sanctioned by the US Treasury.
Atomic Wallet hack
The hack of several user accounts on Atomic Wallet occurred on June 3, resulting in losses of up to $35 million. News of the issue broke with the following tweet from the project team (which has subsequently been deleted): “We have received reports of wallets being compromised. We are doing all we can to investigate and analyze the situation. As we have more information, we will share it accordingly.”
In a follow-up tweet the next day, the team confirmed that it was investigating the matter with the assistance of a number of “leading security companies.”
However, Atomic Wallet later downplayed the incident, stating that less than 1% of its monthly active users were affected. The project team was castigated by users for trying to present the hack as a minor incident. One user took to Twitter to call out the Atomic Wallet team for “having the nerve to come to the networks and say that only 1% of wallets were affected.”
The Atomic Wallet project is based out of Tallinn, Estonia, having been founded in 2017. It claims to provide a non-custodial decentralized multi-currency crypto wallet. The product supports over fifty coins and two hundred tokens. It also offers atomic swaps between digital assets, while also supporting integrations with instant exchanges such as Changelly, ShapeShift, and others.
Roland Säde, the Chief Marketing Officer of Atomic Wallet, assured users that the team is working tirelessly to recover the stolen funds. He emphasized the need to complete the investigation to develop a concrete plan.
Despite the ongoing efforts, Säde urged victims to track the illicit transfers and report them to popular crypto exchanges. By doing so, it was thought that may hinder the scammers from exchanging the funds.
Crypto hacking menace
Lazarus Group hackers have been the bane of the crypto space in recent years. Elliptic released a report last month that identified Japan as having been the country most adversely affected by the North Korean hackers. It’s understood that the estimated $721 million in stolen crypto from Japan-based entities amounts to nearly nine times the value of North Korea’s exports based on 2021 data.
While Atomic Wallet is directly reporting the incidents, Säde believes that having more individuals monitoring the hackers’ activities will make it more challenging for them to move the funds undetected. Unfortunately, Elliptic’s recent findings suggest that for many victims, it may already be too late to prevent further misuse of their stolen cryptocurrency.


