Hackers steal over $1bn in one of the biggest crypto thefts ever

Ethereum
(Image credit: BTC Keychain (Flickr))

  • Bybit confirms suffering a large cyberattack
  • Hackers stole approximately $1.5bn worth of Ethereum
  • Their identities are not confirmed, but researchers speculate it was Lazarus

One of the biggest cryptocurrency exchanges in the world has suffered a devastating cyberattack in which it lost approximately $1.5 billion worth of Ethereum.

The attack against Bybit was confirmed by the company’s CEO, Ben Zhou, who said the threat actors siphoned the exchange’s reserves, and not customer funds.

Despite this being the biggest heist in crypto’s history, Zhou noted the company remains solvent and is under no existential threat, and commended the industry’s big players, which rallied behind the victims and offered help.

Lazarus

The attack itself was quite sophisticated. Bybit kept ETH in a multi-signature cold wallet, a method that’s considered the safest possible. It also means that to move any funds, multiple people would need to sign the transaction.

Apparently, the attackers somehow managed to compromise all of the employees involved in fund transfer, and when the company wanted to pull funds from cold storage into a “hot wallet” to support its everyday activities, the attackers were able to redirect the funds.

All of the involved people never knew what happened, because on their monitors, all of the information checked out.

The news sent shockwaves throughout the cryptosphere. Hundreds of thousands of people initiated withdrawals of their money from Bybit, in fears that the company would not be able to serve everyone (as was the case with Celsius back in 2021). Ethereum dropped roughly 4% on the news.

For the first time, in face of extremely bad news, the crypto industry showed incredible resilience. Usually, news such as this one would send not just Ethereum, but Bitcoin as well, and with them most other currencies tumbling, wiping out a significant portion of their value in a matter of hours. However, Ethereum lost “just” 4% (which is almost negligible in the crypto world) and rebounded relatively quickly. Bybit served all of its customers during the “bank run”, and continues operating normally.

The identity of the attackers is not yet confirmed, although some researchers believe this to be the work of Lazarus, an infamous North Korean state-sponsored threat actor. Indeed, Lazarus is known for targeting crypto businesses and, being on North Korea’s payroll, definitely has the means to pull off a heist such as this one.

Via The Guardian

You might also like

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

You must confirm your public display name before commenting

Please logout and then login again, you will then be prompted to enter your display name.

Read more
North Korean flag with a hooded hacker
FBI says North Korean Lazarus hackers were behind $1.5 billion Bybit crypto hack
Insecure network with several red platforms connected through glowing data lines and a black hat hacker symbol
Coinbase targeted after recent Github attacks
Cryptocurrencies
Around $40 billion worth of illicit crypto transactions took place in 2024
Close up of a person touching an email icon.
Top US mineral firm hit by cyberattack that saw thieves steal $500,000
Abstract image of cyber security in action.
MassJacker malware targets those looking for pirated software
Image depicting a hand on a scanner
New Lazarus Group campaign sees North Korean hackers spreading undetectable malware through GitHub and open source packages
Latest in Security
Isometric demonstrating multi-factor authentication using a mobile device.
NCSC gets influencers to sing the praises of 2FA
Sam Altman and OpenAI
OpenAI is upping its bug bounty rewards as security worries rise
A stylized depiction of a padlocked WiFi symbol sitting in the centre of an interlocking vault.
Dangerous new CoffeeLoader malware executes on your GPU to get past security tools
China
Notorious Chinese hackers FamousSparrow allegedly target US financial firms
A digital representation of a lock
NYU website defaced as hacker leaks info on a million students
NHS
NHS IT supplier hit with major fine following ransomware attack
Latest in News
Nintendo Switch 2 Joy-Con up-close from app store
Nintendo's new app gave us another look at the Switch 2, and there's something different with the Joy-Con
cheap Nintendo Switch game deals sales
Nintendo didn't anticipate that Mario Kart 8 Deluxe was 'going to be the juggernaut' for the Nintendo Switch when it was ported to the console, according to former employees
Three angles of the Apple MacBook Air 15-inch M4 laptop above a desk
Apple MacBook Air 15-inch (M4) review roundup – should you buy Apple's new lightweight laptop?
Witchbrook
Witchbrook, the life-sim I've been waiting years for, finally has a release window and it's sooner than you think
Amazon Echo Smart Speaker
Amazon is experimenting with renaming Echo speakers to Alexa speakers, and it's about time
Shigeru Miyamoto presents Nintendo Today app
Nintendo Today smartphone app is out now on iOS and Android devices – and here's what it does