SBI Crypto hack strips $21m as laundering trail points to DPRK actors
SBI Crypto is the latest major exchange in the crosshairs of a suspected state-sponsored attack, with sleuth ZachXBT, citing help from Cyvers, tracing a $21 million multi-coin theft to wallets linked to previous DPRK campaigns.
- SBI Crypto has reportedly lost $21 million in a multi-coin hack traced by ZachXBT and Cyvers.
- Investigators say laundering patterns resemble past DPRK-linked operations.
- The exchange has not publicly confirmed the breach.
On Oct. 1, online crypto sleuth ZachXBT revealed that one week prior, addresses associated with SBI VC Trade Co., Ltd., the entity behind SBI Crypto, were drained of approximately $21 million in digital assets.
The heist, executed on September 24, involved Bitcoin ( BTC ), Ethereum ( ETH ), Litecoin ( LTC ), Dogecoin ( DOGE ), and Bitcoin Cash ( BCH ). According ZachXBT’s investigation, which was conducted with blockchain security firm Cyvers, the stolen funds were quickly routed through five different instant exchanges before being deposited into the sanctioned crypto mixer Tornado Cash, a classic obfuscation technique.
SBI Crypto is silent, but a pattern of theft points to North Korea
The connection to North Korean operatives, while not yet confirmed by law enforcement, rests on distinct on-chain patterns recognized by investigators. ZachXBT’s report notes that the specific methods used to move the stolen funds, including the choice of instant exchanges and the swift funneling into Tornado Cash, share “several indicators” with the documented money-laundering workflows of the Lazarus Group and other DPRK-affiliated hacking units.
As of this writing, SBI Crypto has not issued a public statement confirming or denying the breach, leaving its clients and the market reliant on independent sleuths for critical information.
The target itself, SBI Crypto, is no minor platform. Operating formally as SBI VC Trade Co., Ltd., it is the crypto arm of the sprawling SBI Group, a publicly traded Japanese financial powerhouse. SBI Group is Japan’s largest comprehensive internet financial group, and the subsidiary offers a full suite of retail services, including spot and leveraged trading, a coin lending service, and automated accumulation plans.
SBI Crypto’s deep integration into the traditional financial landscape makes the breach particularly alarming, demonstrating that regulatory compliance and institutional backing are not impervious shields against determined state-level attackers.
The DPRK’s bloody trail
The SBI crypto hack is not an isolated event but part of a relentless, escalating campaign. According to a 2024 report from blockchain analytics firm Chainalysis, North Korean-affiliated hackers stole a record $1.34 billion across 47 incidents that year, accounting for 61% of all funds stolen from crypto platforms.
DPRK’s siege continued into 2025 with one of the largest single raids to date, where the Lazarus Group was credited with hacking the exchange Bybit for over $1.5 billion. In a telling footnote, intelligence platform Arkham cited ZachXBT for providing the critical information that led to that revelation, underscoring the sleuth’s pivotal role in mapping this digital battlefield.
The consequences of such thefts ripple beyond corporate losses. Western intelligence agencies have warned that stolen digital assets funnel directly into Pyongyang’s nuclear and missile programs, transforming crypto crime into a matter of international security.
For now, silence from the SBI Crypto team leaves more questions than answers. Whether the company confirms the breach or not, the evidence traced by investigators points to another coordinated strike in a global campaign that shows little sign of slowing.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Dogecoin News Today: Dogecoin ETF Breakthrough: Transitioning from Internet Meme to a Mainstream Investment Option
- Bitwise's DOGE ETF (BWOW) launches Nov 26, 2025, offering regulated DOGE exposure with 0.34% fee. - Dogecoin ranks 9th at $22B market cap, with $1B+ daily volume, driven by institutional adoption and SEC approval shifts. - ETF structure holds actual DOGE, aligning with Bitwise CEO's vision to democratize crypto access through transparency. - Grayscale's Zcash ETF filing and Mutuum Finance's $19M presale highlight growing altcoin institutional interest. - DOGE trades at $0.1503, consolidating in $0.13–$0.

Regulation and Innovation: SEC Examines Nasdaq’s Proposal for Tokenized Stocks
- Nasdaq seeks SEC approval for tokenized stock trading framework, aiming to modernize settlement while aligning with existing regulations. - The proposal shares CUSIPs and rights between tokenized/traditional shares but faces criticism over potential market fragmentation and investor protection risks. - SEC's cautious approach and December 4 panel will determine if tokenized equities gain regulatory traction or remain niche experiments. - Industry divides persist: Nasdaq prioritizes incremental adoption w

XRP News Today: Investors Divided: XRP's $5 Buzz Compared to Ozak AI's 7,000% Growth Promise
- XRP gains traction as analysts predict $5 price targets via ETF-driven inflows, citing historical Bitcoin multipliers. - Ozak AI emerges as AI-focused crypto alternative, raising $4.54M in presale with 7,000% return potential via decentralized AI infrastructure. - Market splits between XRP's institutional appeal and Ozak AI's utility-driven innovation, highlighting crypto's shifting risk-reward dynamics. - Analysts note XRP's capped growth vs. Ozak AI's 50X-100X potential, emphasizing real-world AI appli
Between Breakthroughs and Turmoil: The Struggle for Safety and Longevity in Cryptocurrency
- Crypto sector faces structural challenges balancing innovation with security and sustainability amid rising threats and regulatory uncertainty. - Mutuum Finance advances dual-lending architecture and mtToken mechanics under Halborn audit to build defensible DeFi models. - Upbit's $36M hack and Tether's Uruguay exit highlight systemic vulnerabilities from cyberattacks and energy cost volatility. - Industry shifts toward sustainable yield models with automated collateral rules and revenue redistribution to

