FTX hacker reportedly transfers a portion of stolen funds to OKX after using Bitcoin mixer

Published at: Nov. 29, 2022

Hackers who drained FTX and FTX USA of over $450 million worth of assets just moments after the doomed crypto exchange filed for bankruptcy on Nov. 11, continue to move assets around in an attempt to launder the money. 

A crypto analyst who goes by ZachXBT on Twitter alleged that the FTX hackers have transferred a portion of the stolen funds to the OKX exchange, after using the Bitcoin mixer ChipMixer. The analyst reported that at least 225 BTC — worth $4.1 million USD — has been sent to OKX so far. 

1/ Myself and @bax1337 spent this past weekend looking into the FTX attacker’s deposits to ChipMixer. It appears they’ve likely been transferring a portion of the stolen FTX funds to OKX after withdrawing from CMSo far we’ve accounted for at least $4.1m (255 BTC) sent to OKX pic.twitter.com/C46JZWtktn

— ZachXBT (@zachxbt) November 29, 2022

According to ZachXBT, the FTX hacker first began depositing BTC into ChipMixer on Nov. 20, after using Ren Bridge, a protocol that acts as a bridge for cryptocurrencies. In his analysis, ZachXBT shared that he had observed a pattern with addresses receiving funds from ChipMixer. According to him, each of the addresses follows a similar pattern; “withdrawal from CM”, “50% peels off” and then “50% deposited to OKX”.

Following the discovery of the deposits made to the OKX exchange, the Director of OKX shared on Twitter that; “OKX is aware of the situation, and the team is investigating the wallet flow.” 

#OKX is aware of the situation, and the team is investigating the wallet flow.

— lennixlai.eth (OKX) (@LennixOKX) November 29, 2022

Related: OKX releases proof-of-reserves page, along with instructions on how to self-audit its reserves

On Nov, 12, Cointelegraph reported that the hack was flagged right after FTX announced bankruptcy. At the time, out of the $663 million drained, around $477 million were suspected to be stolen, while the remainder is believed to be moved into secure storage by FTX themselves.

On Nov. 20, the hacker began transferring their Ether (ETH) holding to a new wallet address. The FTX wallet drainer was the 27th largest ETH holder after the hack, but dropped by 10 positions after dumping 50,000 ETH.

The fact that hackers managed to drain assets from FTX global and FTX.US at the same time, despite these two entities being completely independent, became a hot topic of discussion within the crypto community, and raised speculations about it possibly being an inside job

Tags
Related Posts
Better Business Bureau: Crypto Scams Are The Second Riskiest in North America
A report published by the Better Business Bureau (BBB) says that cryptocurrency-related scams are continually growing, becoming the second most risky of 2019 among North Americans. According to research from trust-gauging organization published on March 2nd, scams averaged about $3,000 in losses for businesses and charities within Canada and the United States. The usual tactic, the study claims, is that of false promises of a "significant" return on investment in cryptocurrencies. With such figures on the table, it represents a notable uptick since their 2018 report’s numbers, which put average losses at $900. Trading in crypto exchanges with security breaches …
Blockchain / March 10, 2020
Indian prime minister Modi's hacked Twitter account attempts BTC scam
The official Twitter account of Indian Prime Minister Narendra Modi got compromised earlier today, which was then used to share misleading information about the mainstream adoption of Bitcoin (BTC) and redistribution of 500 BTC among the Indian citizens. On Dec. 10, Modi said in a virtual event virtual summit hosted by US President Joe Biden that technologies such as cryptocurrencies should be used to empower democracy and not undermine it: “By working together, democracies can meet the aspirations of our citizens and celebrate the democratic spirit of humanity.” While the long-awaited Lok Sabha Winter Session, a parliamentary meetup intended to …
Adoption / Dec. 12, 2021
Pakistan to investigate Binance for multi-million dollar crypto scam
Pakistan's Federal Investigation Agency (FIA) reportedly issued a formal notice to crypto exchange Binance in an effort to identify links around a multi-million crypto scam in the region. The government of Pakistan started a criminal investigation after receiving numerous complaints against an ongoing scam that involved misleading investors into sending funds from Binance wallets to unknown 3rd-party wallets. According to local coverage, the FIA’s Cyber Crime Wing has issued an order of attendance to Binance Pakistan’s GM Hamza Khan to identify the exchange’s link to "fraudulent online investment mobile applications.” KARACHI: Federal Investigation Agency (FIA) has detected an online fraud …
Blockchain / Jan. 9, 2022
Crypto hacks are set to hit all-time highs in 2022, analyst explains
Reducing the amount of hacking by improving cybersecurity should be considered a top priority for the crypto industry, said Kim Grauer, director of research of blockchain intelligence firm Chainalysis. As pointed out by the firm, this year could outpace 2021 in terms of crypto stolen through hacks. The vast majority of these exploits have been targeting the field of decentralized finance. “This can't go on in the industry because people are going to lose faith in investing in DeFi platforms”, Grauer said in an interview with Cointelegraph. Unlike centralized exchanges, which have improved their resiliency to crypto hacks, decentralized protocols …
Blockchain / Oct. 19, 2022
Alleged CabbageTech Crypto Fraudster Indicted on Nine Counts
United States Attorney for the Eastern District of New York Richard P. Donoghue unsealed a nine-count indictment against Patrick McDonnell today, according to a press release from the Department of Justice (DoJ) on March 26. Following his arrest earlier today, McDonnell — the owner and operators of purported investment firm CabbageTech — was charged with nine counts of wire fraud in connection with an alleged plan to defraud cryptocurrency investors. Donoghue said in the press release: “As alleged, the defendant defrauded investors by making false promises and sending them fraudulent balance statements, hiding the fact that he was stealing their …
Blockchain / March 27, 2019