• The Lazarus hack group used Tornado Cash to launder $1.95M in Ethereum after a major Solana theft.
  • Blockchain analyst ZachXBT traced the Lazarus hack group’s Ethereum transactions to the mixer Tornado Cash.
  • The Lazarus hack group continues to evade global scrutiny by exploiting privacy tools like Tornado Cash for laundering stolen crypto.

North Korea’s Lazarus Group. Which has once again found itself in the spotlight after it laundered $1.95 million. Which is the worth of illegally acquired Ethereum through privacy-friendly mixer Tornado Cash. This was uncovered by blockchain analyst ZachXBT, who noted that the group continues to utilize mixing services to conceal its activities.

North Korean Hackers Strike Again

The money was obtained after a May 16, 2025, cyberheist in which hackers stole approximately $3.2 million worth of assets from several Solana addresses.

The gang later laundered the stolen money and transferred the funds over to the Ethereum blockchain. They went on to send 800 ETH to Tornado Cash in two batches, 400 ETH on June 25 and 400 ETH on June 27. The transactions make tracing the source of funds for investigators difficult due to the mixing capabilities of Tornado Cash.

Tornado Cash is an anonymizer that is decentralized and used to make the flow of cryptocurrencies untraceable by blending them with others in a very big pool.

While it has been used for anonymity by some, the product has widely been used by criminals to launder stolen funds. One of the best-known examples is the Lazarus Group. Which has been linked to billions of dollars in stolen digital currencies since 2018.

More Funds Still Unmoved

ZachXBT further said that around $1.25 million in DAI and ETH. Is still untouched in a wallet belonging to the first Solana heist. The balance is likely under close watch by blockchain experts and governments.

Lazarus Group specializes in conducting cyberattacks in aid of North Korea’s military program. Their operations have involved exchange hacks, phishing and ransomware activities. With the inclusion of Tornado Cash, it is challenging for investigators to trace. Since money gets hard to track once laundered and re-launched.

Highlighted Crypto News Today

Virtuals Protocol (VIRTUAL) Rallies 10% as Bulls Eye Technical Breakout