Cryptocurrency

"FBI accuses North Korean government hackers of stealing $100M in Harmony bridge theft"

2023-01-24 [vendor] FBI pins the Harmony Bridge [chain] bsc, ethereum
Primary Source ↗
Blockchain(s) Bsc, Ethereum

Incident Details

A June 2022 hack saw cryptocurrency notionally worth $100 million stolen from Harmony’s Horizon Bridge. At the time, blockchain research firm Ellipsis concluded that there were “strong indications” that the hack had been perpetrated by the North Korea state-sponsored Lazarus hacking group. Lazarus has been responsible for several major crypto hacks before this one, including the massive Axie Infinity hack in March 2022.Now, the FBI has accused two groups of North Korean hackers — Lazarus and APT38 — of perpetrating the Harmony hack. The groups then used Tornado Cash and RAILGUN to launder the funds.

Technical Details

Initial Attack Vector
Nation-state attack (Lazarus/DPRK) — private key or social engineering compromise
Vendor / Product
FBI pins the Harmony Bridge

Timeline

  1. 2023-01-24 Breach occurred
  2. 2023-01-24 Publicly disclosed