We're sunsetting PodQuest on 2025-07-28. Thank you for your support!
Export Podcast Subscriptions
cover of episode The Lazarus Group, The Bybit Hack and Sanctions: The New Battleground with Andrew Fierman

The Lazarus Group, The Bybit Hack and Sanctions: The New Battleground with Andrew Fierman

2025/3/30
logo of podcast Analyse Asia with Bernard Leong

Analyse Asia with Bernard Leong

AI Deep Dive AI Chapters Transcript
People
A
Andrew Fierman
Topics
我从事金融犯罪合规工作十年,后加入Chainalysis从事区块链分析。我发现,追踪资金的许多概念在传统金融和区块链领域是相通的,只是术语和具体技术有所不同。 朝鲜Lazarus集团的Bybit黑客事件利用了第三方供应商的漏洞,这是一种独特但并非完全新颖的手法。他们长期以来一直使用各种社会工程学手段获取访问权限,并不断改进技术。 此次黑客事件中,尽管被盗资金规模巨大(15亿美元),但大部分资金仍然留在区块链上,这表明追踪和冻结这些资金是可能的。朝鲜的洗钱过程非常复杂,涉及数万甚至数十万个钱包,以及DeFi协议和混币器等工具。然而,执法部门、区块链分析公司以及加密社区的共同努力,正在不断提高拦截和阻止洗钱的效率。 受制裁国家越来越多地使用稳定币和DeFi平台来规避制裁,但稳定币发行商有能力冻结资金,这为执法提供了新的机会。次级制裁也对与受制裁实体进行交易的机构构成威慑。 加密货币交易所应加强区块链分析的使用,改进KYC流程,并积极配合执法部门。去中心化金融平台的监管框架仍在制定中,但需要找到在促进创新和打击犯罪之间的平衡点。 新兴技术,如AI换脸和数字身份伪造,降低了实施复杂攻击的门槛,这给行业带来了新的挑战。未来,行业需要不断提升安全措施,加强合规,并积极应对这些新兴威胁。

Deep Dive

Shownotes Transcript

"The thing that's most fascinating, we talk a lot about how complex North Korea is here but when you compare it to some of the other illicit groups, particularly those that are sanctioned, say your terrorist organization that's soliciting donations on Telegram or some other social media outlet understanding what that difference in the level of complexity is, I think is really fascinating to actually know about. When we're talking about DPRK, we're talking about laundering of funds through tens of thousands. By the time we're done, it'll be hundreds of thousands of wallets. And then on the other end of it, We have a terrorist organization that was, sanctioned mid last year for facilitating on behalf of Hamas. After they got sanctioned and their addresses that they were using, got seized and disrupted. They got annoyed and they tried to bridge funds with their new Ethereum wallet after they received a few donations and they didn't even have the gas fees to facilitate it. And the transaction,  when we're talking about the difference in the level of complexity here, it is really fascinating to know the nuance and it's not to say that, other nation states, like Russia or Iran don't have any level of complexity. They certainly do." - Andrew Fierman, Head of National Security Intelligence at Chainalysis Inc Fresh out of the studio, Andrew Fierman, Head of National Security Intelligence at Chainalysis, provides an in-depth analysis of the recent $1.5 billion Bybit hack orchestrated by North Korea's Lazarus Group. Starting from his career journey from traditional banking to blockchain analytics, Andrew shares his expertise on how sanctioned entities operate in the cryptocurrency space and the sophisticated techniques employed by state-sponsored hackers. He explains how blockchain's transparency enables tracking of stolen funds. Andrew details how sanctioned states are increasingly turning to stablecoins and decentralized finance to evade traditional banking controls, while emphasizing the importance of KYC procedures and blockchain analytics in disrupting illicit activities. Last but not least, Andrew shares his perspectives on emerging threats in cryptocurrency security, including how AI-powered deepfakes and digital identity forgery are lowering barriers to sophisticated attacks.

Audio Episode Highlights: [00:46] Quote of the Day by Andrew Fierman #QOTD [02:38] Introduction of Andrew Fierman, Head of National Security Intelligence at Chainalysis [05:54] Differences between traditional financial monitoring and blockchain transparency [08:22] Explanation of the Bybit hack and how the hack occurred through a third-party vendor [12:06] Lazarus Group's operational methods and their technical advancement [15:10] Evolving tactics in the laundering process [16:18] The importance of patience in tracking and disrupting funds [19:39] Role of blockchain analytics in identifying and mitigating risks [19:47] Challenges in tracing through bridges and DeFi protocols [22:17] Comparison of North Korea's sophistication versus other sanctioned groups [24:51] How exchanges can bolster their defenses against attacks [27:52] Discussion of the Chainalysis 2025 Crypto Crime Report [31:24] Secondary sanctions and their impact on international crypto payments [35:28] Regulatory challenges around decentralized finance platforms [37:42] Dusting attacks and their implications for everyday users [40:43] Emerging threats in the crypto space [41:38] Lowering barriers to sophisticated attacks through AI and deepfakes [44:11] What success means for the crypto industry in fending off sanctioned groups [46:35] Closing

Profile: Andrew Fierman, Head of National Security Intelligence at Chainalysis Inc https://www.chainalysis.com/

LinkedIn: https://www.linkedin.com/in/andrew-fierman-87511611/

Chainalysis Crypto Crime Report: https://go.chainalysis.com/2025-Crypto-Crime-Report.html

Podcast Information: Bernard Leong hosts and produces the show. The proper credits for the intro and end music are "Energetic Sports Drive." G. Thomas Craig mixed and edited the episode in both video and audio format. Here are the links to watch or listen to our podcast.

Analyse Asia Main Site: https://analyse.asia

Analyse Asia Spotify: https://open.spotify.com/show/1kkRwzRZa4JCICr2vm0vGl

Analyse Asia Apple Podcasts: https://podcasts.apple.com/us/podcast/analyse-asia-with-bernard-leong/id914868245

Analyse Asia YouTube: https://www.youtube.com/@AnalyseAsia

Analyse Asia LinkedIn: https://www.linkedin.com/company/analyse-asia/

Analyse Asia X (formerly known as Twitter): https://twitter.com/analyseasia

Analyse Asia Threads: https://www.threads.net/@analyseasia

Sign Up for Our This Week in Asia Newsletter: https://www.analyse.asia/#/portal/signup

Subscribe Newsletter on LinkedIn https://www.linkedin.com/build-relation/newsletter-follow?entityUrn=7149559878934540288