Bitget App
Trade smarter
Open
HomepageSign up
Bitget>
News>
ZachXBT says Lazarus Group launders stolen crypto via illicit networks and small OTC markets

ZachXBT says Lazarus Group launders stolen crypto via illicit networks and small OTC markets

Cryptopolitan2025/06/18 10:01
By: By Collins J. Okoth
BTC-0.08%ETH-0.05%PI-1.25%
Share link:In this post: ZachXBT revealed that laundering groups and small OTC brokers have easily managed to launder stolen crypto funds from the Lazarus Group. He estimates that laundered funds on Tron are no less than $5-$10B. The DOJ seeks forfeiture of $7.7M in cryptocurrency tied to North Korean IT workers’ laundering network.

Crypto investigator ZachXBT noted that illicit laundering networks and small OTC brokers have successfully laundered funds stolen in several recent hacks linked to the Lazarus Group. He estimates the Black U market on Tron is no less than $5-$10B and largely unattributed.

The crypto trader also noted that many crypto exchanges sit and watch, collecting fees and doing nothing when more than 50% of the activity for their protocol comes from stolen funds. He believes that abuse in the crypto industry increased after politicians launched memecoins and numerous court cases were dropped, which further enabled the behavior.

Crypto sector sees surge in illicit laundering

ZachXBT believes there’s never been a worse time to do black hat (phishing, social engineering, robberies) versus gray hat hacks when the current environment is favorable. Hydra, the largest darknet marketplace in the world, previously facilitated over $5 billion in illegal transactions, primarily in BTC and Monero.

Criminals used to buy and sell illicit goods, then laundered proceeds through crypto exchanges in jurisdictions with weak AML laws, privacy wallets, and OTC (over-the-counter) brokers.

In 2016, hackers stole nearly 120K Bitcoin (worth $4.5 billion today) from the Bitfinex cryptocurrency exchange. The funds were moved across multiple wallets and laundered through various methods over several years, including chain hopping, crypto mixers, P2P platforms, and small VASPs.

In March 2020, the U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) sanctioned two Chinese nationals involved in laundering stolen crypto from a 2018 cyber attack against a cryptocurrency exchange. Tian Yinyin and Li Jiadong were sanctioned for laundering over $100 million in stolen funds linked to Lazarus Group.

“The North Korean regime has continued its widespread campaign of extensive cyber-attacks on financial institutions to steal funds. The United States will continue to protect the global financial system by holding accountable those who help North Korea engage in cyber-crime.”

Steven Mnuchin , Former U.S. Secretary of the Treasury

Tom Robinson, co-founder of crypto investigator Elliptic, argued that North Korea is the best at laundering digital assets out of all criminal actors involved in cryptocurrency. Dorit Dor from the cyber security company Check Point said North Korea managed to create a successful industry for hacking and laundering through its closed system and closed economy. He also believes that a big problem is that not all crypto companies are as willing to help as others.

See also Trump hints at using trade with US to get Israel and Iran to make peace

In February, the group hacked one of ByBit’s suppliers to secretly alter the digital wallet address for a transfer of 401,000 Ethereum. Crypto exchange eXch was accused by ByBit and others of not stopping criminals from cashing out more than $90 million through the platform.

Ari Redbord, global head of policy at TRM Labs, said that what sets the group’s ByBit hack apart is the pace of post-hack laundering. Redbord revealed that within two days of the attack, the group funneled $160 million through illicit channels. He also argued that the shift raised alarming questions about whether North Korea expanded its laundering capacity because criminal financial networks have never moved that quickly to process funds.

DOJ files civil forfeiture complaint against North Korean government

On June 5, the U.S. Department of Justice filed a civil forfeiture complaint in the U.S. District Court for the District of Columbia, targeting over $7.7M in digital assets, NFTs , and cryptocurrency linked to a global laundering scheme directed by North Korea. The complaint revealed that the assets represent the proceeds of wire fraud and money laundering offenses conducted by North Korean nationals acting under the direction of the Foreign Trade Bank and Ministry of Defense.

The department noted that the action focused on deploying North Korean IT workers abroad — primarily in China, Russia, and UAE — who used falsified identities to gain employment at U.S. and foreign tech firms. According to the civil complaint, payments made to the individuals, often in USDC and USDT, were allegedly routed through laundering networks and ultimately transferred to wallets controlled by sanctioned Democratic People’s Republic of Korea (DPRK) entities.

See also PI coin dips by 35% in minutes: What’s going on with the network?

Cryptopolitan Academy: Coming Soon - A New Way to Earn Passive Income with DeFi in 2025. Learn More

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — HOLO/USDT!
Bitget Announcement2025/09/12 07:46
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

- FUN plunged 32.34% in 24 hours to $0.008938, marking a 541.8% monthly loss amid prolonged bearish trends. - Technical breakdowns, elevated selling pressure, and forced liquidations highlight deteriorating market sentiment and risk-off behavior. - Analysts identify key support below $0.0080 as critical, with bearish momentum confirmed by RSI (<30) and MACD indicators. - A trend-following backtest strategy proposes short positions based on technical signals to capitalize on extended downward trajectories.

Bitget-RWA2025/09/12 06:14
OPEN has dropped by 189.51% within 24 hours during a significant market pullback

- OPEN's price plummeted 189.51% in 24 hours to $0.8907, marking its largest intraday decline in history. - The token fell 3793.63% over 7 days, matching identical monthly and yearly declines, signaling severe bearish momentum. - Technical analysts cite broken support levels and lack of bullish catalysts as key drivers of the sustained sell-off. - Absence of stabilizing volume or reversal patterns leaves the market vulnerable to further downward pressure.

Bitget-RWA2025/09/12 06:14
New spot margin trading pair — LINEA/USDT!
Bitget Announcement2025/09/11 10:04

Trending news

More
1
New spot margin trading pair — HOLO/USDT!
2
FUN drops by 32.34% within 24 hours as it faces a steep short-term downturn

Crypto prices

More
Bitcoin
Bitcoin
BTC
$115,798.05
-0.09%
Ethereum
Ethereum
ETH
$4,665.1
-1.21%
XRP
XRP
XRP
$3.09
-0.94%
Tether USDt
Tether USDt
USDT
$1
+0.02%
Solana
Solana
SOL
$247.01
+1.73%
BNB
BNB
BNB
$939.13
+1.50%
USDC
USDC
USDC
$0.9999
+0.02%
Dogecoin
Dogecoin
DOGE
$0.2903
+2.46%
TRON
TRON
TRX
$0.3506
-0.63%
Cardano
Cardano
ADA
$0.9170
-1.08%
How to sell PI
Bitget lists PI – Buy or sell PI quickly on Bitget!
Trade now
Become a trader now?A welcome pack worth 6200 USDT for new users!
Sign up now
Trade smarter