Top

Atomic Wallet Hacker Uses Lazarus Crypto Mixer

Web3 & Enterprise·June 07, 2023, 12:27 AM

The stolen cryptocurrency from the recent $35 million hack of Atomic Wallet is already being moved to a crypto mixer favored by North Korea’s notorious cyber-hacking group.

Photo by Micha Brändli on Unsplash

 

Sinbad.io

According to UK-based crypto compliance analysis firm Elliptic, the funds have made their way to a crypto mixer used by Lazarus Group, a notorious hacker group that focuses on crypto heists which is believed to have direct ties with the North Korean government.

On June 5, Elliptic’s Investigations Team revealed that it had traced the funds from the Atomic Wallet hack to the crypto mixer Sinbad.io. Lazarus had previously used the mixer to launder over $100 million in stolen crypto assets.

While the exact amount sent to the mixer was not specified, Elliptic noted that the stolen funds were being exchanged for Bitcoin before undergoing obfuscation through the mixer. Additionally, Elliptic reported that Sinbad.io is likely a rebranded version of Blender.io, another mixer extensively used to launder funds by the Lazarus Group. Blender.io has been sanctioned by the US Treasury.

 

Atomic Wallet hack

The hack of several user accounts on Atomic Wallet occurred on June 3, resulting in losses of up to $35 million. News of the issue broke with the following tweet from the project team (which has subsequently been deleted): “We have received reports of wallets being compromised. We are doing all we can to investigate and analyze the situation. As we have more information, we will share it accordingly.”

In a follow-up tweet the next day, the team confirmed that it was investigating the matter with the assistance of a number of “leading security companies.”

However, Atomic Wallet later downplayed the incident, stating that less than 1% of its monthly active users were affected. The project team was castigated by users for trying to present the hack as a minor incident. One user took to Twitter to call out the Atomic Wallet team for “having the nerve to come to the networks and say that only 1% of wallets were affected.”

The Atomic Wallet project is based out of Tallinn, Estonia, having been founded in 2017. It claims to provide a non-custodial decentralized multi-currency crypto wallet. The product supports over fifty coins and two hundred tokens. It also offers atomic swaps between digital assets, while also supporting integrations with instant exchanges such as Changelly, ShapeShift, and others.

Roland Säde, the Chief Marketing Officer of Atomic Wallet, assured users that the team is working tirelessly to recover the stolen funds. He emphasized the need to complete the investigation to develop a concrete plan.

Despite the ongoing efforts, Säde urged victims to track the illicit transfers and report them to popular crypto exchanges. By doing so, it was thought that may hinder the scammers from exchanging the funds.

 

Crypto hacking menace

Lazarus Group hackers have been the bane of the crypto space in recent years. Elliptic released a report last month that identified Japan as having been the country most adversely affected by the North Korean hackers. It’s understood that the estimated $721 million in stolen crypto from Japan-based entities amounts to nearly nine times the value of North Korea’s exports based on 2021 data.

While Atomic Wallet is directly reporting the incidents, Säde believes that having more individuals monitoring the hackers’ activities will make it more challenging for them to move the funds undetected. Unfortunately, Elliptic’s recent findings suggest that for many victims, it may already be too late to prevent further misuse of their stolen cryptocurrency.

More to Read
View All
Policy & Regulation·

Oct 10, 2023

UK Watchdog Adds Crypto Exchanges to Warning List

UK Watchdog Adds Crypto Exchanges to Warning ListThe UK’s Financial Conduct Authority (FCA) has expanded its warning list to include nearly 150 digital asset companies, including crypto exchanges HTX and KuCoin.Photo by Maxim Hopman on UnsplashPromotion without approvalThese firms have been added to the list due to their promotion of services in the UK without obtaining the necessary regulatory approvals. The move comes as the FCA strengthens its oversight of the cryptocurrency sector.The FCA recently broadened its rules on financial promotions, effective from October 8, to encompass crypto-asset service providers, regardless of their geographical location. This means that all crypto platforms are now obligated to display clear risk warnings to UK-based consumers and adhere to more rigorous technical standards. Additionally, they must implement a mandatory 24-hour cooling-off period for new customers.Exchanges respondIn response to the inclusion of their platforms on the FCA’s warning list, both HTX and KuCoin issued statements. A spokesperson for HTX, known until recently as Huobi, clarified that the firm does not operate or market its services in the UK. KuCoin, on the other hand, acknowledged that it doesn’t operate in the UK but expressed its commitment to adapt its products and services to ensure compliance with the relevant laws and regulations in each country.Another exchange, OKX, alongside global exchange Binance, have both indicated that they are working towards complying with the FCA’s regulatory requirements in respect of marketing.The FCA issued a generic warning message for both HTX and KuCoin, stating:“This firm may be promoting financial services or products without our permission. You should avoid dealing with this firm.”Non-compliance with the FCA’s regulations can result in severe penalties, including takedown requests for websites and apps, substantial fines, and potential legal action, which could lead to imprisonment.It’s worth noting that HTX Advisor, Justin Sun, has encountered regulatory challenges in the past. In March, the US Securities and Exchange Commission (SEC) accused Sun of fraud and market manipulation related to TRX, the native cryptocurrency of his Tron blockchain. Despite holding licenses to operate in various jurisdictions, HTX’s website does not specifically mention the UK as a prohibited venue.KuCoin has its platform restricted in several countries, including the US, Singapore, Hong Kong, mainland China, Thailand, Malaysia, and Canada’s Ontario province. Notably, the UK is not listed among these restricted locations.The FCA’s decision to rapidly identify and publicize crypto firms violating the expanded rules underscores increasingly stringent regulatory requirements. The regulator is continuously updating its list of violators as new infractions are uncovered. In August, the UK regulator published data that demonstrated that only 13% of crypto businesses who have applied to trade in the UK have been offered permits to do so.Lucy Castledine, the FCA’s Director of Consumer Investments, emphasized the dynamic nature of the list, which is constantly evolving to keep pace with emerging issues within the crypto sector.As the FCA takes a more proactive stance in overseeing crypto businesses, the warning list serves as a tool for consumer protection, signaling the importance of adherence to regulatory standards in the cryptocurrency ecosystem.

news
Web3 & Enterprise·

Dec 04, 2023

Gumi joins XPLA mainnet as newest validator

Gumi joins XPLA mainnet as newest validatorJapanese gaming company Gumi has joined South Korean gaming corporation Com2uS Group’s layer 1 blockchain mainnet XPLA as a new node validator, according to an official announcement on XPLA’s Medium page on Monday (local time).Photo by Shubham’s Web3 on UnsplashEmpowering the XPLA ecosystemThrough this partnership, Gumi is expected to play a crucial role in enhancing transparency, stability and scalability as a validator in the XPLA ecosystem. The collaboration aims to explore new possibilities in blockchain technology and integrate them into the gaming industry, thereby maximizing the benefits for all participants in the ecosystem and connecting game developers with players.Over a decade of global impactSince its establishment in 2007, Gumi has been active in the Japanese and global markets, engaging in various mobile gaming and blockchain projects. Recently, the company has not only been involved in the production of and investment in Web3 games but also operates as a key node operator in multiple blockchain projects. By working with Gumi, XPLA anticipates solidifying its position as a global Web3 gaming industry leader and expanding its influence in the Japanese Web3 market.“Through this partnership, we will gain insights into the Japanese market and strive to create a more reliable ecosystem,” said Paul Kim, leader of the XPLA team.Fortifying trust and redefining the Web3 landscapeXPLA’s validators are responsible for verifying the integrity of the blockchain, analyzing on-chain data to improve operations and ensuring the security of the XPLA ecosystem. By passing a proposal to increase the number of validators from 50 to 80 this year, XPLA aims to create an environment that accommodates more validators, thus building a more robust and trustworthy ecosystem.XPLA is an L1 mainnet that hosts numerous Web3 companies like Oasys, Animoca Brands, YGG, Blockdaemon, Cosmos Station and LayerZero as participants. It has onboarded multiple IP-based hit games like Summoners War: Chronicles, Minigame Party, Ace Fishing: Crew, Idle Ninja Online and The Walking Dead: All-Stars, effectively becoming a global Web3 content and gaming hub.

news
Policy & Regulation·

Sep 05, 2023

Chinese Central Bank Official Emphasizes Need for Digital Yuan Retail Payments

Chinese Central Bank Official Emphasizes Need for Digital Yuan Retail PaymentsA senior official from the People’s Bank of China (PBOC) has underscored the importance of making China’s digital yuan, commonly referred to as the e-CNY, accessible in all retail payment scenarios within China.Photo by Eric Prouzet on UnsplashStreamlining retail e-CNY paymentsThe remarks were delivered by Changchun Mu, Head of the Digital Currency Research Institute, during a trade forum in Beijing. Mu emphasized the need for standardizing QR codes in payment systems, particularly those dominated by giants like WeChat Pay and Alipay.Local media reported on Sunday that the central bank official highlighted that various wallet providers, including WeChat, Alipay, commercial banks with mobile banking apps, and other payment apps associated with e-CNY operations, must remain vigilant about complying with relevant financial regulations and obtaining the necessary licenses. He stressed that the initial step in this process should involve the adoption of the digital yuan as the preferred payment method for all retail transactions.Standardizing QR code paymentsMu explained that in the short term, authorities can start by unifying QR code standards on a technical level to achieve barcode interoperability. In the long run, he suggested that they will steadily implement the upgrade of payment tools.The move towards standardizing QR code payments aligns with the central bank’s commitment from the previous year to promote universal QR payment codes. This initiative aims to allow consumers to make payments by scanning a unified barcode. Currently, QR code payment systems are widely prevalent in China, with WeChat Pay and Alipay being dominant players.The PBOC has been actively testing the e-CNY, having introduced a pilot app in January 2022. The digital yuan pilot programs, initiated in late 2019, have expanded to encompass at least 26 locations across 17 provincial-level cities and regions, including major cities like Beijing, Shanghai, Shenzhen, and Suzhou, according to state media Xinhua.The extent of China’s promotion of its digital yuan has been unmatched despite the fact that most central banks globally have had ongoing central bank digital currency-related (CBDC) projects open for a number of years already.Recent months have seen the launch of a whole host of initiatives to further the use of the CBDC. These initiatives have included integration of the currency into the education system in Jiangsu province, the installation of digital yuan ATMs in Hainan, among many other such projects, and paying state employees with the currency in Changshu. That said, despite these efforts, widespread adoption of the e-CNY remains a work in progress.Bringing about e-CNY integrationMu also emphasized that the existing interbank payment and settlement systems function effectively, indicating that there is no immediate need to replace them with the CBDC system. Instead, he suggested that seamless integration could be achieved by ensuring comprehensive interoperability between the e-CNY and existing electronic payment tools and commercial bank deposit systems.Moreover, at a wholesale level, Mu proposed the use of the digital yuan for settlement within the financial market infrastructure. Smart contracts could also be leveraged for such activities, thereby enhancing efficiency in wholesale payments.Mu’s remarks underscore the Chinese central bank’s determination in advancing the development and adoption of the digital yuan while ensuring it remains integrated into the existing financial ecosystem.

news
Loading