Cryptopolitan
2025-12-18 15:47:23

North Korean hackers steal over $2 billion in crypto this year, pushing total haul past $6 billion

North Korean hackers, the cyber attackers sponsored by the rogue regime, have swiped over $2.02 billion in crypto since January. This has pushed the Democratic People’s Republic of Korea’s (DPRK) all-time haul to over $6 billion. DPRK hack volumes from 2016-2025. Source: Chainanalysis According to the Chainalysis report, hackers stole $681 million more in 2024, representing a 51% year-over-year increase. This brought the total identified haul from crypto theft since 2016 to $6.75 billion. North Korea hackers shift their strategy to fewer but larger attacks The report revealed that the hackers have changed their strategy to fewer but dramatically larger attacks, underpinned by March’s $1.4 billion hack of Bybit. They have achieved these results by embedding IT workers inside crypto services to gain privileged access and enable high‑impact compromises. North Korean groups mainly target large, centralized crypto services, aiming for maximum impact rather than frequency. DPRK-linked actors were responsible for 76% of all service-level compromises in 2025, the most ever recorded. DPRK actors have demonstrated consistency in working with smaller tranches below $500,000, rather than distributing stolen funds in large on-chain transfers in the $1M to $10M+ range, unlike other hackers. This is a sign of increasingly sophisticated operational security. Analysis of post-hack activity reveals a consistent pattern in how these events are associated with the movement of stolen funds throughout the crypto ecosystem. Following major theft events between 2022 and 2025, stolen funds follow a structured, multi-wave laundering pathway that unfolds over approximately 45 days. This is a widow that the law enforcers can use to intercept. Additionally, DPRK-linked wallets rely heavily on Chinese-language guarantee services, brokers, and over-the-counter networks, and extensive use of bridges and mixing services. They largely avoid the DeFi lending protocols, decentralized exchanges, and peer-to-peer platforms favored by other criminals. This year, North Korea has used AI in its hacking efforts. They integrate large language models into nearly every stage of their attacks: reconnaissance, phishing, code analysis, and laundering the proceeds. Personal wallet comprises a decline of over 50% Overall, the cryptocurrency industry experienced over $3.4 billion in theft from January to early December 2025. Total theft incidents surged to 158,000 in 2025, nearly triple the 54,000 recorded in 2022. The number of new and unique victims increased from 40,000 in 2022 to at least 80,000 in 2025. This rise is likely due to greater crypto adoption. For instance, Solana, one of the blockchains with the greatest number of active personal wallets, was at the lead with 26,500 victims. When measuring crime rates per 100K wallets in 2025, Ethereum and Tron show the highest rates of theft. Ethereum’s large size is reflected in both high rates of theft and a high victim count. On the other hand, although it has a smaller active wallet base, Tron’s position shows an elevated rate of theft. Personal wallet theft volumes. Source: Chainalysis Personal wallet compromises surged from just 7.3% of total stolen value in 2022 to 44% in 2024. In 2025, they now account for 20% of all value stolen. The total amount stolen from individual victims declined from 2024’s peak of $1.5 billion to $713 million in 2025. However, the share would have been 37% if it weren’t for the outsized impact of the Bybit attack. Centralized services have experienced large losses due to private key compromises. These platforms remain vulnerable because of this security challenge. While such compromises are rare, their scale still drives a significant share of stolen volumes when they do occur. For instance, they accounted for 88% of losses in Q1 2025. For the first time, the ratio between the largest hack and the middle of all cases has exceeded 1,000 times. The amount of money stolen in the biggest attacks is now 1,000 times more than in the average case. It’s even more than the bull market peak in 2021. The top three hacks in 2025 account for 69% of all service losses. Sign up to Bybit and start trading with $30,050 in welcome gifts

获取加密通讯
阅读免责声明 : 此处提供的所有内容我们的网站,超链接网站,相关应用程序,论坛,博客,社交媒体帐户和其他平台(“网站”)仅供您提供一般信息,从第三方采购。 我们不对与我们的内容有任何形式的保证,包括但不限于准确性和更新性。 我们提供的内容中没有任何内容构成财务建议,法律建议或任何其他形式的建议,以满足您对任何目的的特定依赖。 任何使用或依赖我们的内容完全由您自行承担风险和自由裁量权。 在依赖它们之前,您应该进行自己的研究,审查,分析和验证我们的内容。 交易是一项高风险的活动,可能导致重大损失,因此请在做出任何决定之前咨询您的财务顾问。 我们网站上的任何内容均不构成招揽或要约