Crypto investigators revealed a theft of $3.2 million from multiple wallets on the Solana platform, linked to the North Korean hacker group Lazarus.
Mechanism of the Attack on Solana
On May 16, the victims' tokens from Solana wallets were stolen and quickly converted into Ethereum via a bridge. Part of the stolen assets was transferred to Tornado Cash.
Methods of Money Laundering
Transaction analysis revealed that 400 ETH was sent to Tornado Cash in two separate deposits on June 25 and 27, aligning with known laundering tactics by the Lazarus group. Approximately $1.25 million remains in one of the wallets on Ethereum.
Lazarus Group's Activity
The Lazarus Group, active since 2017, is known for its cybercriminal activities linked to North Korean military. Their operating style includes phishing, fraud, and exploiting smart contract vulnerabilities.
The incident highlights the need for security in the crypto industry and the necessity for stricter controls on suspicious addresses.