Vote for Cryptopolitan on Binance Square Creator Awards 2024. Click here to support our content!

North Korean hackers loot over $200 million in crypto in 2023, totaling $2 billion in five years: Report

U.S. Treasury sanctions Sinbad, a crypto mixer tied to North Korean hacksU.S. Treasury sanctions Sinbad, a crypto mixer tied to North Korean hacks
354577

In this post:

  • North Korean hackers stole over $200 million in crypto in 2023, part of $2 billion looted in five years, mainly targeting DeFi protocols.
  • Hackers have evolved laundering techniques, using complex methods like chain-hopping to evade sanctions.

Hackers linked to North Korea have stolen over $200 million in cryptocurrency so far in 2023, accounting for 20% of all stolen crypto this year, according to a report by blockchain intelligence firm TRM Labs.

Screenshot 2023 08 20 at 4.48.14 PM
Source: TRM Labs

The theft is part of over $2 billion looted by cybercriminals in the last five years, with 30 different crypto-project attacks. Also, the majority of these exploits have focused on decentralized finance (DeFi), particularly targeting cross-chain bridges.

Last year was the most successful year for hackers, with over $800 million in cryptocurrency stolen. Three major attacks targeted DeFi protocols, including a $625 million theft from the Ronin Bridge in March. North Korean hackers have been using various techniques to launder stolen funds, such as chain hopping and mixers, and quickly cashing out through exchanges with lower KYC/AML controls.

In June this year, hackers focused on Atomic Wallet users and stole around $100 million worth of various cryptocurrencies, including Bitcoin, Ethereum, Tron, XRP, Stellar, Dogecoin, and Litecoin. According to TRM Labs, the criminals transferred the stolen Ethereum to different addresses they controlled using wrapped Ether (WETH) that they had stolen. They then exchanged the WETH for wrapped Bitcoin (WBTC) and later converted it to Bitcoin, which they sent to mixing services to hide the source of the coins.

Read Also  Biden orders probe into IT firms ransomware attack

Hackers techniques and the importance of robust cybersecurity

North Korean hackers have improved their on-chain laundering methodologies over time, shifting from direct use of cryptocurrency exchanges to highly complex, multi-stage money laundering processes. This evolution is in response to more aggressive OFAC sanctions, law enforcement focus, and improved tracing capabilities. Chain-hopping, a form of money laundering where one type of crypto asset is converted to another and moved across multiple chains, has been a prominent technique hackers use to cover their tracks, according to the report by TRM Labs.

TRM Labs emphasizes the importance of robust cybersecurity measures, such as hardware security modules for cryptographic key management, whitelisting addresses to limit funds transfer to trusted recipients, and secure offline storage for keys and passphrases. The firm also highlights the individual responsibility of safeguarding assets in the DeFi community.

The report’s findings underscore the growing threat of cybercrime within the cryptocurrency space, particularly in the DeFi sector. The significant amounts stolen and the techniques used by hackers illustrate the urgent need for enhanced security measures and regulatory oversight.

The focus on DeFi protocols and the evolution of laundering techniques reflect the adaptability of cybercriminals in response to regulatory measures and technological advancements.

Land a High-Paying Web3 Job in 90 Days: The Ultimate Roadmap

Share link:

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

Editor's choice

Loading Editor's Choice articles...

Stay on top of crypto news, get daily updates in your inbox

Most read

Loading Most Read articles...
Subscribe to CryptoPolitan