The notorious hacking group known for its crypto thefts has lost access to nearly $5 million in stablecoins, following actions taken by stablecoin issuers to freeze the funds.
This decision came after an investigation led by blockchain investigator ZachXBT, who, with help from Metamask, Binance, TRM Labs, and Five I’s LLC, traced the stolen assets.
ZachXBT’s probe revealed that the Lazarus Group, a North Korean state-sponsored entity, had laundered over $200 million in cryptocurrency into fiat across a span of three years. The stolen funds were acquired through 25 different exploits on various blockchains and were subsequently cashed out through peer-to-peer marketplaces.
The stablecoin issuers of USDT (Tether), USDC (Circle), TUSD (Techteryx), and BUSD (Paxos) responded by freezing nearly $5 million in stablecoins linked to two specific wallets. These wallets also hold approximately $720,000 in the DAI stablecoin and about $313,000 in Ethereum, which have not yet been frozen.
ZachXBT reported on X that all four stablecoin issuers – Paxos, Tether, Techteryx, and Circle – have now blacklisted the two addresses associated with the Lazarus Group, totaling $4.96 million. Additionally, $1.65 million remains frozen at various exchanges, bringing the total frozen amount to $6.98 million.
ZachXBT criticized Circle, the issuer of USDC, for its delayed response compared to other issuers. He noted that it took Circle 4.5 months longer to freeze the tokens and highlighted the lack of a dedicated incident response team to address such hacks.
The U.S. Department of Justice has sentenced Dwayne Golden, 57, of Pennsylvania to 97 months in prison for orchestrating a fraudulent crypto investment scheme that stole over $40 million from investors.
The first half of 2025 has become the most damaging six-month period in crypto history, with over $2.1 billion stolen across 75+ separate incidents, according to new data.
A new breed of cyber-attack is sweeping through crypto media, exploiting site pop-ups and wallet-connect prompts instead of smart-contract bugs.
CoinMarketCap, one of the most widely used crypto data tracking platforms, is reportedly facing a front-end security breach, with multiple users encountering a suspicious prompt to verify their wallets.