- Crypto Club 23
- Posts
- Bybit Exchange Suffers $1.5 Billion Hack: Lazarus Group Identified as Culprit
Bybit Exchange Suffers $1.5 Billion Hack: Lazarus Group Identified as Culprit
Invest Smarter with Digital ETPs
DeFi Technologies (US: DEFTF & CAD: DEFI.NE) is transforming traditional finance by offering regulated access to over 60 digital asset exchange-traded-protocols (ETPs). Empower your portfolio with secure solutions for Bitcoin, Ethereum, Solana, Ripple and beyond.

Overview of the Bybit Hack
On February 21, 2025, Bybit, a prominent cryptocurrency exchange, experienced a massive security breach, resulting in the theft of approximately $1.5 billion in crypto assets. The stolen funds included 401,347 Ether (ETH) and various staked Ether tokens. The attackers successfully accessed Bybit's Ethereum cold wallet and transferred the funds to multiple unidentified addresses.
Bybit's Response and Assurance to Users
Despite the scale of the theft, Bybit's CEO, Ben Zhou, reassured customers that the exchange remains solvent. He confirmed that all client assets are fully backed, and unaffected wallets and withdrawals continue to function normally. To maintain transparency and trust, Bybit promptly processed over 350,000 withdrawal requests following the incident. (Source: Business Insider)
Bounty and Investigation: ZachXBT Identifies Lazarus Group
In response to the hack, Arkham Intelligence announced a bounty of 50,000 ARKM tokens, valued at approximately $31,500, for credible information leading to the identification of the perpetrators. On-chain security analyst ZachXBT successfully traced the attack to the Lazarus Group, a notorious North Korean state-sponsored hacking organization. His investigation leveraged an analysis of test transactions and connected wallets to pinpoint the group’s involvement. (Source: Cointelegraph)


Impact on the Crypto Ecosystem
The stolen funds have elevated the Bybit hacker to one of the largest Ether holders globally. The hacker’s wallet now contains approximately 0.42% of the total Ethereum supply, surpassing the holdings of major entities such as Fidelity and Ethereum co-founder Vitalik Buterin. (Source: PanewsLab)
Industry Expert Insights
Conor Grogan, Director of Product Strategy and Business Operations at Coinbase, weighed in on the incident. He noted that Bybit is processing withdrawals without disruptions and still holds over $20 billion in assets on its platform. Additionally, he pointed out that the exchange's cold wallets remain untouched. Grogan emphasized that due to the isolated nature of the signing hack and Bybit’s strong capitalization, widespread contagion in the industry is unlikely. (Source: Twitter)
Lessons and Security Implications
The Bybit hack highlights the ongoing security challenges facing the cryptocurrency industry. In 2024 alone, over $2.2 billion was stolen from crypto platforms, reinforcing the need for enhanced security measures. This breach, now considered one of the largest in crypto history, serves as a stark reminder of the importance of rigorous cybersecurity protocols and continuous monitoring to counter sophisticated cyber threats. (Source: MarketWatch)
Conclusion
The Bybit hack is a wake-up call for the entire cryptocurrency community, emphasizing the necessity of robust security frameworks. As investigations continue, industry stakeholders must collaborate to implement stronger protective measures to safeguard users and assets against future attacks.