Crypto News

North Korean Lazarus Group Linked To DMM Bitcoin Hack

The notorious North Korean Lazarus Group has been linked to the hacked Japanese exchange DMM Bitcoin hacked in June
Published by
North Korean Lazarus Group Linked To DMM Bitcoin Hack

Highlights

  • North Korean Lazarus Group might be behind DMM Bitcoin hack
  • ZachXBT revealed Tether just blocked $29.6 million linked to the hack
  • Crypto exploits keep proliferating on a daily basis

The North Korean Lazarus Group might have been the crime syndicate responsible for the DMM Bitcoin hack earlier this year. According to fresh insights from crypto on-chain Sleuth ZachXBT, a series of funds movement from wallets connected to Lazarus gave the hint. Besides this, ZachXBT pointed out the similarities in laundering activities and off-chain indicators.

Advertisement

The DMM Bitcoin Stolen Funds In Motion

To steal from an exchange or a crypto protocol is one thing, laundering the cash undetected remains a major hurdle. For example, the DMM Bitcoin hack saw as much as $305 million in losses according to ZachXBT.

According to the tracking of the stolen funds in and out of the platform, a total of $35 million has shifted to Huione Guarantee exchange thus month. The ZachXBT findings show that stablecoin issuer just blacklisted a wallet connected to the Lazarus Group. This wallet contains a total of $29.6 million and it is resident on the Tron blockchain.

This wallet tagged “TNVaK….s4Ug8” received approximately $14 million within 3 days of the DMM Bitcoin hack.  To help the crypto community understand the hack and accompanying flow, ZachXBT summarized the events.

First, he said the funds stolen on DMM Bitcoin were moved to a mixer. Thereafter, the funds were shifted to from the mixer and converted from Bitcoin to Ethereum or Avalanche via THORChain, Threshold, Avalanche bridge. After these the hackers converted the BTC to USDT on Tron via SWFT.

For this last stage, the assumption remains that the origin and destination of the stolen funds had been properly concealed.

Advertisement

A Different Hacking Trend

Hacks and cyber exploits are not uncommon in today’s Web3 world. Coingape reported the recent Squarespace breach, an IT service firm that powers Compound Finance and Celer Network. Both protocol suffered outages on their website following the exploit, however, with no funds lost.

Other exploits generally results in fund losses but some projects are often able to negotiate terms that leads to refund. However, in all exploits connected to the Lazarus Group, none of such refunds have been recorded. It remains to be seen if the revelation from ZachXBT will give some closure, the DMM Bitcoin hack still ranks as one of the gravest the industry has seen this year.

Read More: Elon Musk and Justin Sun Endorses Donald Trump Post-Attack

Advertisement
Share
Godfrey Benjamin

Benjamin Godfrey is a blockchain enthusiast and journalists who relish writing about the real life applications of blockchain technology and innovations to drive general acceptance and worldwide integration of the emerging technology. His desires to educate people about cryptocurrencies inspires his contributions to renowned blockchain based media and sites. Benjamin Godfrey is a lover of sports and agriculture. Follow him on X, Linkedin

Published by
Why trust CoinGape: CoinGape has covered the cryptocurrency industry since 2017, aiming to provide informative insights to our readers. Our journalists and analysts bring years of experience in market analysis and blockchain technology to ensure factual accuracy and balanced reporting. By following our Editorial Policy, our writers verify every source, fact-check each story, rely on reputable sources, and attribute quotes and media correctly. We also follow a rigorous Review Methodology when evaluating exchanges and tools. From emerging blockchain projects and coin launches to industry events and technical developments, we cover all facets of the digital asset space with unwavering commitment to timely, relevant information.
Investment disclaimer: The content reflects the author’s personal views and current market conditions. Please conduct your own research before investing in cryptocurrencies, as neither the author nor the publication is responsible for any financial losses.
Ad Disclosure: This site may feature sponsored content and affiliate links. All advertisements are clearly labeled, and ad partners have no influence over our editorial content.

Recent Posts

  • Crypto News

Spot XRP ETFs Nears $1B AUM Milestone as Streak of No Outflows Continues

The U.S. Spot XRP ETFs is now near the $1 billion mark of assets under…

December 5, 2025
  • Crypto News

Base–Solana Bridge Goes Live With Chainlink Integration, Boosting Cross-Chain Liquidity

Coinbase's Layer-2 network, Base, has launched its first official Solana bridge. This allows users to…

December 5, 2025
  • Crypto News

Bitwise CIO Calls Strategy Bitcoin-Sell Narrative “Flat Wrong” in New Client Memo Note

Bitwise Chief Investment Officer Matt Hougan is rejecting a growing claim that Strategy could be…

December 5, 2025
  • Crypto News

MetaMask Integrates Polymarket as Crypto Prediction Markets Gain Ground

The popularity of crypto prediction markets are on the rise after Polymarket became integrated into…

December 4, 2025
  • Crypto News

Breaking: CFTC Greenlights Spot Crypto Trading on Regulated U.S. Exchanges

The U.S. Commodity Futures Trading Commission (CFTC) has approved the first-ever listed spot crypto trading…

December 4, 2025
  • Crypto News

TradFi Attack On Crypto? Ken Griffin’s Citadel Asks SEC to Tighten Rules on DeFi Protocols

Citadel Securities founded by Ken Griffin has created a controversial event after its recent letter…

December 4, 2025