Close Menu
    Facebook X (Twitter) Instagram
    Monday, July 7
    X (Twitter) Instagram LinkedIn YouTube
    Chain Tech Daily
    Banner
    • Altcoins
    • Bitcoin
    • Crypto
    • Coinbase
    • Litecoin
    • Ethereum
    • Blockchain
    • Lithosphere News Releases
    Chain Tech Daily
    You are at:Home » Lazarus Group identified in $1.5b Bybit hack: Arkham
    Crypto

    Lazarus Group identified in $1.5b Bybit hack: Arkham

    James WilsonBy James WilsonFebruary 22, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    On-chain investigator ZachXBT has identified North Korea’s Lazarus Group as the team behind the billion-dollar Bybit hack, winning a 50k ARKM bounty for solving the case.

    The breakthrough came when ZachXBT submitted conclusive evidence linking the attack to the hacking group at 19:09 UTC.

    The investigation shared the hackers exploited Bybit’s Ethereum (ETH) multisig cold wallet during a routine transfer to the exchange’s warm wallet.

    The attackers manipulated the signing interface, making it display the correct wallet address while altering the underlying smart contract logic.

    Bybit CEO Ben Zhao confirmed the security breach resulted in losses exceeding $1.5 billion in cryptocurrency assets.

    Despite the magnitude of the theft, Zhao assured users that all client withdrawals would be processed, even those under review.

    ZachXBT reveals connections between Bybit and Phemex hack

    ZachXBT’s investigation revealed direct on-chain connections between the Bybit incident and the recent Phemex exchange hack. The attackers also commingled funds from both thefts through the same initial theft addresses. This pattern matches the Lazarus Group’s known tactics of linking multiple exchange compromises.

    Lazarus Group just connected the Bybit hack to the Phemex hack directly on-chain commingling funds from the intial theft address for both incidents.

    Overlap address:
    0x33d057af74779925c4b2e720a820387cb89f8f65

    Bybit hack txns on Feb 22, 2025:… pic.twitter.com/dh2oHUBCvW

    — ZachXBT (@zachxbt) February 22, 2025

    The bounty submission included detailed analyses of test transactions conducted before the main attack, connected wallet tracking, and timing analyses that pointed to the North Korean state-sponsored group. Arkham has shared this forensic evidence with Bybit’s team to support their ongoing investigation.

    The incident began when Bybit detected unauthorized transfers from one of their Ethereum (ETH) cold wallets. The exchange immediately launched an investigation, partnering with blockchain forensics experts to trace the stolen assets.

    The company issued an open call for assistance from teams with expertise in blockchain analytics and fund recovery.

    This hack represents one of the largest cryptocurrency exchange hacks in history.

    The Bybit team received aid from other exchanges to keep the withdrawals open for users.





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleCrypto Analyst Says Solana-Based Altcoin Approaching ‘Attractive Levels’ – But There’s a Catch
    Next Article Africa and Europe’s green opportunity
    James Wilson

    Related Posts

    Hodlnaut vs CakeDefi vs Celsius: Which Offers Best Interest Rates?

    July 7, 2025

    4 Best Music Production Software  2025

    July 7, 2025

    How to Safely Store Cryptocurrency – Safest Ways

    July 7, 2025
    Leave A Reply Cancel Reply

    Don't Miss

    Hodlnaut vs CakeDefi vs Celsius: Which Offers Best Interest Rates?

    4 Best Music Production Software  2025

    How to Safely Store Cryptocurrency – Safest Ways

    Polymarket under fire as whale votes distort Zelenskyy suit outcome: what’s going on?

    About
    About

    ChainTechDaily.com is your daily destination for the latest news and developments in the cryptocurrency space. Stay updated with expert insights and analysis tailored for crypto enthusiasts and investors alike.

    X (Twitter) Instagram YouTube LinkedIn
    Popular Posts

    Hodlnaut vs CakeDefi vs Celsius: Which Offers Best Interest Rates?

    July 7, 2025

    4 Best Music Production Software  2025

    July 7, 2025

    How to Safely Store Cryptocurrency – Safest Ways

    July 7, 2025
    Lithosphere News Releases

    AGII Introduces Modular Risk Assessment Engines for Smarter Chain Logic

    July 7, 2025

    Imagen Network (IMAGE) to Raise $420 Million for Growth Using Circle’s USDC and Ripple’s RLUSD Stablecoins

    July 7, 2025

    AGII Refines Sync Performance Across Chains to Boost Response Efficiency

    July 4, 2025
    Copyright © 2025

    Type above and press Enter to search. Press Esc to cancel.