Hackers working for the North Korean authorities have stolen greater than $2 billion in crypto to date this yr, according to blockchain analysis firm Elliptic.
On Tuesday, Elliptic published a blog post with this new estimate, which the corporate says is the “largest annual complete on document, with three months nonetheless to go,” and relies on greater than 30 hacks this yr.
The earlier document was in 2022, when North Korea stole $1.35 billion. The regime’s complete quantity of stolen crypto since 2017 is a minimum of $6 billion, in accordance with Elliptic, which stated that determine should be an underestimate.
“The precise determine could also be even larger. Attributing cyber thefts to North Korea shouldn’t be a precise science,” reads the weblog submit.
“We’re conscious of many different thefts that share a few of the hallmarks of North Korea-linked exercise however lack ample proof to be definitively attributed. Different thefts are probably unreported and stay unknown,” stated Elliptic.

The corporate stated that North Korea’s essential targets are nonetheless crypto exchanges, however the regime’s hackers are additionally beginning to goal “high-net-worth people,” who personal giant quantities of crypto.
And that’s not the one latest change, the corporate stated.
“The vast majority of the hacks in 2025 have been perpetrated via social engineering assaults, the place hackers deceive or manipulate people in an effort to achieve entry to cryptocurrency,” learn the weblog submit. “This marks a shift from earlier assaults the place in lots of instances technical flaws in crypto infrastructure have been exploited to steal funds. This shift highlights that the weak level in cryptocurrency safety is more and more human, moderately than technical.”
Elliptic’s estimate appears to be in step with that of different organizations. Final yr, the United Nations Security Council estimated that between 2017 and 2023, North Korean hackers stole $3 billion in cryptocurrency. Including Elliptic’s estimates of this yr’s $2 billion, and final years’ $742.8 million, the overall will get near the $6 billion determine.
The governments of Japan, South Korea, and the USA accused North Korean hackers of stealing greater than $659 million in 2024, roughly the identical determine as Elliptic’s.
The United Nations believes the regime led by Kim Jong-Un makes use of the stolen crypto to fund its nuclear weapons program.
This yr’s document was fueled largely by the massive theft of more than $1.4 billion from crypto exchange Bybit, which the FBI and a number of other blockchain monitoring corporations and researchers attributed to North Korea.
Different victims of North Korea’s hackers within the crypto world through the years have been play-to-earn recreation Axie Infinity ($625 million in 2022), crypto startup Concord ($100 in 2022), and crypto change WazirX ($235 million in 2024), amongst many others.