North Korea's Lazarus Group has transferred 244.148 $BTC, worth roughly $19.42 million, in a transaction that security researchers believe is part of an ongoing effort to consolidate and obsc
A
AnonymousCryptoCompass newsroom
August 28, 2026
2 min read
NEWS
CryptoCompass editorial visual for policy coverage.
North Korea's Lazarus Group has transferred 244.148 $BTC, worth roughly $19.42 million, in a transaction that security researchers believe is part of an ongoing effort to consolidate and obscure funds stolen through previous exploits.
A Pattern of Consolidation and Cover
The scale of the transfer is consistent with behaviour analysts have come to expect from the group. Moving funds in a single batch to a newly created address is a common technique the group uses to obscure the trail of stolen assets.While there is no immediate confirmation that the Bitcoin has been moved to exchanges or mixing services, investigators are expected to track the funds for signs of laundering or cash-out attempts.
Lazarus typically relies on a layered laundering operation that includes THORChain, Russian crypto exchanges, and Chinese OTC desks. That infrastructure has proven difficult for authorities to dismantle, and North Korea's state-sponsored cryptocurrency theft program has become one of the most operationally significant financial crime threats facing the industry, described by compliance experts not as a periodic problem but as a sustained campaign that has made cryptocurrency theft a structural component of the regime's revenue model.
A Year of Record Theft
The latest movement comes against a backdrop of unprecedented crypto losses. The Lazarus Group accounted for nearly 55% of total crypto theft losses in 2026, stealing approximately $609 million.In April alone, cryptocurrency protocols suffered losses totalling $635 million, primarily due to large-scale attacks by the group, which carried out 12 separate attacks on crypto protocols during that month.
The group began focusing on cryptocurrency hacks around 2017, and since then has successfully stolen over $6 billion in cryptocurrency assets. Its most audacious strike came in February 2025, when the group pulled off its first billion-dollar hack by compromising a Bybit multisig tool.The group's main objectives revolve around funding North Korean nuclear weapons research and evading international sanctions.
Cybersecurity reports found that compromised private keys caused 74% of all stolen crypto funds in 2026, underlining that wallet security remains the single biggest vulnerability across the industry.
The CFTC updated its FAQs on crypto assets and blockchain technology to address two areas: tokenized customer fund investments and blockchain-based recordkeeping Commodities firms can now inv
If a balance is still sitting at CoinEx that is not held in USDT, there are around 46 hours left for it. On September 29, 2026 at 02:00 UTC the exchange ends spot trading, and from that momen
The recent recovery staged by Ripple’s cross-border token has brought several long-term technical setups back into focus, but one of the more unusual comparisons does not involve BTC, another