Security firm SlowMist says North Korean hackers are laundering funds stolen from Bitget by pairing CoW Protocol orders with Chainflip deposit addresses and converting the proceeds to Bitcoin, then obscuring the movements with CoinJoin. The attack began on September 25, starting with 93 TRX stolen followed 11 seconds later by 0.84 ETH, then multi-chain transfers lasting about 2 hours and 52 minutes. Chainflip attempted to block the suspected activity but some transfers went through nonetheless. Bitget attributed the incident to a third-party backend system and said it would compensate affected users via its User Protection Fund.
Source: Read the original article

