2024 WazirX hack

Last updated
2024 WazirX hack
DateJuly 18, 2024
Type Cyberattack
Suspects Lazarus Group

India-based WazirX, a cryptocurrency exchange was hacked in early days of July 2024. The exchange ceased to operate on 18 July 2024. [1]

Hack

Reports say that $234.9 million worth of crypto assets have been taken out of the exchange and sent to a new address by North Korean hackers belonging to Lazarus Group. [2] [3] Before the attack, the crypto exchange stated it had about $500 million in digital assets. [4]

Related Research Articles

A cryptocurrency exchange, or a digital currency exchange (DCE), is a business that allows customers to trade cryptocurrencies or digital currencies for other assets, such as conventional fiat money or other digital currencies. Exchanges may accept credit card payments, wire transfers or other forms of payment in exchange for digital currencies or cryptocurrencies. A cryptocurrency exchange can be a market maker that typically takes the bid–ask spreads as a transaction commission for its service or, as a matching platform, simply charges fees.

<span class="mw-page-title-main">Cryptocurrency</span> Digital currency not reliant on a central authority

A cryptocurrency, crypto-currency, or crypto is a digital currency designed to work as a medium of exchange through a computer network that is not reliant on any central authority, such as a government or bank, to uphold or maintain it. It has, in a financial point of view, grown to be its own asset class. However, on the contrary to other asset classes like equities or commodities, sectors have not been officially defined as of yet though abstract version of them exist.

A cryptocurrency tumbler or cryptocurrency mixing service is a service that mixes potentially identifiable or "tainted" cryptocurrency funds with others, so as to obscure the trail back to the fund's original source. This is usually done by pooling together source funds from multiple inputs for a large and random period of time, and then spitting them back out to destination addresses. As all the funds are lumped together and then distributed at random times, it is very difficult to trace exact coins. Tumblers have arisen to improve the anonymity of cryptocurrencies, usually bitcoin, since the digital currencies provide a public ledger of all transactions. Due to its goal of anonymity, tumblers have been used to money launder cryptocurrency.

Kraken is a United States–based cryptocurrency exchange, founded in 2011. It was one of the first bitcoin exchanges to be listed on Bloomberg Terminal and was valued at US$3 billion in January 2024. The company has been the subject of several regulatory investigations since 2018, and has agreed to cumulative fines of over $30 million.

Lazarus Group is a hacker group made up of an unknown number of individuals, alleged to be run by the government of North Korea. While not much is known about the Lazarus Group, researchers have attributed many cyberattacks to them since 2010. Originally a criminal group, the group has now been designated as an advanced persistent threat due to intended nature, threat, and wide array of methods used when conducting an operation. Names given by cybersecurity organizations include Hidden Cobra and ZINC or Diamond Sleet. According to North Korean defector Kim Kuk-song, the unit is internally known in North Korea as 414 Liaison Office.

Bitfinex is a cryptocurrency exchange owned and operated by iFinex Inc, and is registered in the British Virgin Islands. Bitfinex was founded in 2012. It was originally a peer-to-peer Bitcoin exchange, and later added support for other cryptocurrencies.

Tether is a cryptocurrency stablecoin, launched by the company Tether Limited Inc. in 2014. Though it has never been audited to international accounting standards, as of May 1, 2024, Tether says it has excess reserves of $6.3 billion after reporting $4.52 billion of profit in the first quarter of 2024. The stablecoin operator also has net equity of $11.37bn and over $90bn in US Treasury holdings, and its overall market capitalization is over $110 billion.

A cryptocurrency bubble is a phenomenon where the market increasingly considers the going price of cryptocurrency assets to be inflated against their hypothetical value. The history of cryptocurrency has been marked by several speculative bubbles.

Binance Holdings Ltd., branded Binance, is a global company that operates the largest cryptocurrency exchange in terms of daily trading volume of cryptocurrencies. Binance was founded in 2017 by Changpeng Zhao, a developer who had previously created high-frequency trading software. Binance was initially based in China, then moved to Japan shortly before the Chinese government restricted cryptocurrency companies. Binance subsequently left Japan for Malta and currently has no official company headquarters.

Cryptocurrency and crime describe notable examples of cybercrime related to theft of cryptocurrencies and some methods or security vulnerabilities commonly exploited. Cryptojacking is a form of cybercrime specific to cryptocurrencies that have been used on websites to hijack a victim's resources and use them for hashing and mining cryptocurrency.

Bithumb is a South Korean cryptocurrency exchange. Founded in 2014, Bithumb Korea has 8 million registered users, 1 million mobile app users, and a current cumulative transaction volume has exceeded USD $1 trillion.

Upbit is a South Korean cryptocurrency exchange founded in 2017. It is operated by Dunamu, which is one of the highest-valued startups in South Korea.

Decentralized finance offers financial instruments without relying on intermediaries such as brokerages, exchanges, or banks by using smart contracts on a blockchain, mainly Ethereum. DeFi platforms allow people to lend or borrow funds from others, speculate on price movements on assets using derivatives, trade cryptocurrencies, insure against risks, and earn interest in savings-like accounts. DeFi uses a layered architecture and highly composable building blocks. Some applications promote high-interest rates but are subject to high risk. Coding errors and hacks have been common in DeFi.

Crypto.com is a cryptocurrency exchange company based in Singapore that offers various financial services, including an app, exchange, and noncustodial DeFi wallet, NFT marketplace, and direct payment service in cryptocurrency. As of June 2023, the company reportedly had 80 million customers and 4,000 employees. The exchange issues its own exchange token named Cronos (CRO).

<span class="mw-page-title-main">Celsius Network</span> American cryptocurrency company

Celsius Network LLC was a cryptocurrency company. Headquartered in Hoboken, New Jersey, Celsius maintained offices in four countries and operated globally. Users could deposit a range of cryptocurrency digital assets, including Bitcoin and Ethereum, into a Celsius wallet to earn a percentage yield, and could take out loans by pledging their cryptocurrencies as security. As of May 2022, the company had lent out $8 billion to clients and had almost $12 billion in assets under management.

The Bitfinex cryptocurrency exchange was hacked in August 2016. 119,756 bitcoin, worth about US$72 million at the time, was stolen.

Chainalysis is an American blockchain analysis firm headquartered in New York City. The company was co-founded by Michael Gronager, Jan Møller and Jonathan Levin in 2014, and is the first start-up company dedicated to the business of Bitcoin tracing. It offers compliance and investigation software to analyze the blockchain public ledger, which is primarily used to track virtual currencies. Along with banks and brokers its customers have included the United States Federal Bureau of Investigation, Drug Enforcement Administration, and the Internal Revenue Service Criminal Investigation, as well as the United Kingdom's National Crime Agency.

Blender.io is a cryptocurrency mixer that was established in 2017. In 2022, it was sanctioned by the Office of Foreign Assets Control of the U.S. Department of the Treasury for allegedly aiding the Lazarus Group, a hacking group associated with the government of North Korea. The Treasury Department stated that this was the first sanction that they had imposed on a cryptocurrency mixer.

Kucoin is a cryptocurrency exchange currently registered in the Seychelles.

References

  1. "WazirX cryptocurrency exchange halts withdrawals after security breach". The Indian Express. 2024-07-18. Retrieved 2024-07-31.
  2. Shukla, Siddharth (2024-07-18). "WazirX Pauses Crypto, Rupee Withdrawals After Wallet Breach". Bloomberg.com. Retrieved 2024-07-31.
  3. Anand, Vijay (2024-07-29). "North Korean Lazarus Group linked to $235 million WazirX crypto breach - CNBC TV18". CNBCTV18. Retrieved 2024-07-31.
  4. Bureau, The Hindu (2024-07-29). "WazirX crypto exchange hack: how much of the assets was lost, CEO Nischal Shetty's announcement, and what happens next". The Hindu. ISSN   0971-751X . Retrieved 2024-07-31.