FBI says North Korean Lazarus group was behind huge crypto theft


The notorious Lazarus group, a known North Korean state-sponsored threat actor, seems to have been behind the recent major Ronin network breach, the FBI has said.
Ronin network, a cryptocurrency bridge developed by the same company behind the hugely popular blockchain-based game, Axie Infinity, was attacked in late March 2022, with the attackers getting away with $625 million in various cryptocurrencies.
Now, according to Vice, the FBI and the US Treasury Department (USDT) have pinned this attack it on Lazarus, having updated its file on the attack with a wallet that had received the stolen funds, which it says belong to the group.
Fixing the bridge
The makers of the Ronin network, on the other hand, said it would take a little more time before they’d be able to bring the product back online.
“We are still in the process of adding additional security measures before redeploying the Ronin Bridge to mitigate future risk,” the company wrote in a blog post. “We expect to deliver a full post mortem that will detail security measures put in place and next steps by the end of the month.”
The bridge is expected to resume operations “by the end of the month”.
The wallet flagged by USDT currently holds 148,000 ETH, which is more than $447 million at press time. The wallet’s owners sent 3,302.6 ETH, or approximately $10 million, to another address, earlier this week. The wallet’s details can also be found on the blockchain explorer Etherscan, where it’s been labeled as “involved in a hack targeting the Ronin bridge”.
The hack saw 173,600 ether (the native currency of the Ethereum blockchain) and 25.5 million USD Coin stolen, totalling $625 million in value. Some commentators have suggested this may be the largest single heist in crypto history.
Given the blockchain’s transparent nature, the Ronin Network was able to quickly establish that the funds were taken from its endpoints on March 23. However, only after a user reported being unable to withdraw 5,000 ether did the team notice the breach.
An investigation revealed the attacker had used hacked private keys to forge fake withdrawals, the organization explained. It would seem that no viruses were used in the attack.
Via: Vice
Audio player loading… The notorious Lazarus group, a known North Korean state-sponsored threat actor, seems to have been behind the recent major Ronin network breach, the FBI has said. Ronin network, a cryptocurrency bridge developed by the same company behind the hugely popular blockchain-based game, Axie Infinity, was attacked in…
Recent Posts
- Grok blocked results saying Musk and Trump “spread misinformation”
- A GPU or a CPU with 4TB HBM-class memory? Nope, you’re not dreaming, Sandisk is working on such a monstrous product
- The Space Force shares a photo of Earth taken by the X-37B space plane
- Elon Musk claims federal employees have 48 hours to explain recent work or resign
- xAI could sign a $5 billion deal with Dell for thousands of servers with Nvidia’s GB200 Blackwell AI GPU accelerators
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010