en
Back to the list

North Korea's Lazarus Group Behind Bybit's $1.4 Billion Ethereum Hack: Arkham

source-logo  decrypt.co 21 February 2025 18:26, UTC
image

Decrypt’s Art, Fashion, and Entertainment Hub.


Discover SCENE

Blockchain data platform Arkham Intelligence says that the North Korean state-sponsored Lazarus hacking group is responsible for swiping over $1.4 billion worth of Ethereum (ETH) and related tokens from crypto exchange Bybit on Friday.

The connection to Lazarus was made via on-chain data that linked activity to previous attacks tied to Lazarus, a group that has been tied to numerous other industry hacks and exploits. The connection was made by pseudonymous on-chain sleuth ZachXBT, who has helped solve many other crypto hacks in recent years.

"His submission included a detailed analysis of test transactions and connected wallets used ahead of the exploit, as well as multiple forensics graphs and timing analyses," Arkham posted on X.

BREAKING: BYBIT $1 BILLION HACK BOUNTY SOLVED BY ZACHXBT

At 19:09 UTC today, @zachxbt submitted definitive proof that this attack on Bybit was performed by the LAZARUS GROUP.

His submission included a detailed analysis of test transactions and connected wallets used ahead of… https://t.co/O43qD2CM2U pic.twitter.com/jtQPtXl0C5

— Arkham (@arkham) February 21, 2025

Arkham had posted a bounty, offering nearly $30,000 worth of ARKM tokens in exchange for figuring out who was behind the $1.4 billion hack that rocked Bybit early Friday—and proceeded to shake crypto markets thereafter.

Editor's note: This story is developing and will be updated with additional details.

decrypt.co