Skip to main content

North Korea pulled huge $600 million crypto heist, feds say

The U.S. Department of the Treasury managed to track down the culprit of the massive Axie Infinity cryptocurrency heist. It turns out that a North Korean hacker group called Lazarus stands behind the theft, which amounted to over $600 million worth of crypto being stolen.

In response to the theft, the group involved had been added to the U.S. international sanctions list.

Recommended Videos

THREAD: Updates to OFAC’s SDN designation for Lazarus Group confirm that the North Korean cybercriminal group was behind the March hack of Ronin Bridge, in which over $600 million worth of ETH and USDC was stolen.

— Chainalysis (@chainalysis) April 14, 2022

The attack took place in March of this year and it targeted Axie Infinity, a blockchain-based game that involves cryptocurrency transactions. Although the game is based on Ethereum, it utilizes a blockchain called Ronin. This allows the players to perform all the necessary transactions without paying the hefty fees of the standard Ethereum blockchain.

The two chains are connected by a digital bridge. It’s a helpful workaround for day-to-day users, but unfortunately, an exploit in the bridge between Ethereum and Ronin resulted in a massive theft. The hack conducted by the Lazarus Group resulted in 173,600 Ethereum and 25.5 million USDC being stolen. USDC is a so-called stable coin, which means it’s pegged to the U.S. dollar. At the time of the theft, the two currencies pooled together amounted to over $600 million.

Initially, it was unclear whether the Specially Designated Nationals List update referred to the Axie Infinity heist specifically. However, the Department of the Treasury confirmed to PC Gamer that the new entry refers to the hack conducted by Lazarus. The cryptocurrency wallet that collected the stolen funds was discovered by the FBI as part of an ongoing investigation of North Korea.

Lazarus is a state-sponsored group of hackers, and this isn’t the first time we’ve heard about their attacks. According to Chainalysis, the group stole at least $400 million worth of digital assets in 2021. However, this means that the 2022 Axie Infinity hack is a huge escalation, seeing as the group managed to steal over $600 million in one go.

Illustration of a woman putting a bitcoin into a piggy bank.
Taylor Frint/Digital Trends Graphic

The funds obtained through these crypto attacks are most likely used to fund North Korea’s weapon programs. Elliptic, a cryptosecurity firm, estimates that the country has already laundered 18% of the $600 million Lazarus managed to obtain.

An anonymous FBI representative said to PC Gamer: Through our investigation, we were able to confirm Lazarus Group and APT38, cyber actors associated with the Democratic People’s Republic of Korea (DPRK), are responsible for the theft of $620 million in Ethereum reported on March 29th. The FBI, in coordination with Treasury and other U.S. Government partners, will continue to expose and combat the DPRK’s use of illicit activities — including cybercrime and cryptocurrency theft — to generate revenue for the regime.”

This is a huge hit for Axie Infinity, a game that relies on helping users profit rather than just to have fun. Sky Mavis, the developers of Axie Infinity, said that additional security measures are being added to the Ronin Bridge. Hopefully, this time around, the bridge will be secure enough to not be breached.

Monica J. White
Monica is a computing writer at Digital Trends, focusing on PC hardware. Since joining the team in 2021, Monica has written…
We just got our first hint of the RTX 6090, but it’s not what you think
A hand grabbing MSI's RTX 4090 Suprim X.

As we're all counting down the days to a possible announcement of Nvidia's RTX 50-series, GPU brands are already looking ahead to what comes next. A new trademark filing with the Eurasian Economic Commission (EEC) reveals just how far ahead some manufacturers are thinking, because it mentions not just the Nvidia RTX 5090, but also an RTX 5090 Ti; there's even an RTX 6090 Ti. Still, it'll be a long while before we can count the RTX 60-series among the best graphics cards, so what is this all about?

The trademark registration filing, first spotted by harukaze5719 on X (formerly Twitter) and shared by VideoCardz, comes from a company called Sinotex International Industrial Ltd. This company is responsible for the GPU brand Ninja, which doesn't have much of a market presence in the U.S.

Read more
How the Blue Screen of Death became your PC’s grim reaper
The Blue Screen of Death seen on a laptop.

There's nothing more startling than your PC suddenly locking up and crashing to a Blue Screen of Death. Otherwise known as a Blue Screen, BSOD, or within the walls of Microsoft, a bug check screen, the Blue Screen of Death is as iconic as it is infamous. Blue Screen of Death is not a proper noun, but I'm going to treat it like one. It's what you were met with during crashes on Intel's 14th-gen CPUs, and it littered airport terminals during the recent CrowdStrike outage.

Everyone knows that a Blue Screen is bad news -- tack on "of Death" to that, and the point is only clearer. It's a sign that something catastrophic has happened, so much so that the operating system can't recover, and it needs to reboot your PC in order to save it. The Blue Screen of Death we know today, fit with its frowning emoticon, is a relatively new development in the history of Windows.

Read more
The performance downgrade made to the M4 Pro that no one is talking about
Someone using a MacBook Pro M4.

I've spent this whole week testing the new M4 chip, specifically the M4 Pro in both the Mac mini and 16-inch MacBook Pro. They are fantastic, impressive chips, but in my testing, I noticed something pretty surprising about the way they run that I haven't seen others talk much about. I'm talking about the pretty significant change Apple made in this generation to power modes.

First off, Apple has extended the different power modes to the "Pro" level chips for the first time, having kept it as an exclusive for Max in the past. The three power modes, found in System Settings, are the following: Low Power, Automatic, and High Power. The interesting thing, however, is that in my testing, the Low Power drops performance far more this time around.

Read more