Share this article

Hacker steals $282 million crypto from a victim in social-engineering attack

A sophisticated social-engineering attack led to the theft of more than $282 million in BTC and LTC, with the funds rapidly laundered through monero.

Updated Jan 16, 2026, 9:59 p.m. Published Jan 16, 2026, 6:56 p.m.
Hacker sitting in a room
Hacker sitting in a room (Clint Patterson/Unsplash)

What to know:

  • The attacker is said to have stolen 2.05 million litecoin and 1,459 bitcoin on Jan. 10, quickly swapping most of the funds for monero, contributing to a 70% surge in XMR’s price over four days.
  • Some of the bitcoin was bridged across multiple blockchains via Thorchain, but researcher ZachXBT said there are no indications the hack was linked to North Korean threat actors.
  • The incident underscores a growing 2025 trend of social engineering as the dominant hacking method, coming days after Ledger disclosed a data leak exposing users’ personal information.

A hacker stole $282 million worth of litecoin and bitcoin following a hardware wallet social-engineering attack, according to blockchain researcher ZachXBT.

The victim lost 2.05 million LTC and 1,459 BTC, with the loot swiftly being swapped for privacy coin monero through multiple instant exchanges.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

A portion of the bitcoin was also bridged to Ethereum, Ripple and Litecoin via Thorchain, ZachXBT added. He said North Korean hackers were not involved.

The hack occurred on Jan. 10 at 23:00 UTC, sparking a 70% rise in the price of XMR over the subsequent four days.

It remains unclear whether the victim was a sole crypto holder or a company, but it follows a 2025 trend that puts social engineering as the top attack vector for hackers. A social engineering attack typically involves posing as an employee of a company and securing the trust of a victim before persuading them to send sensitive information, such as a private key or login details.

On Jan. 5, hardware wallet provider Ledger suffered a data leak stemming from unauthorized access to Ledger users' personal details like names and contact information.

More For You

Pudgy Penguins: A New Blueprint for Tokenized Culture

Pudgy Title Image

Pudgy Penguins is building a multi-vertical consumer IP platform — combining phygital products, games, NFTs and PENGU to monetize culture at scale.

What to know:

Pudgy Penguins is emerging as one of the strongest NFT-native brands of this cycle, shifting from speculative “digital luxury goods” into a multi-vertical consumer IP platform. Its strategy is to acquire users through mainstream channels first; toys, retail partnerships and viral media, then onboard them into Web3 through games, NFTs and the PENGU token.

The ecosystem now spans phygital products (> $13M retail sales and >1M units sold), games and experiences (Pudgy Party surpassed 500k downloads in two weeks), and a widely distributed token (airdropped to 6M+ wallets). While the market is currently pricing Pudgy at a premium relative to traditional IP peers, sustained success depends on execution across retail expansion, gaming adoption and deeper token utility.

More For You

UAE's central bank has approved a USD-backed stablecoin

Dubai UAE (Pexels, Pixabay)

The USDU stablecoin is issued by Universal Digital, a crypto firm regulated by the Financial Services Regulatory Authority (FSRA) of Abu Dhabi Global Market (ADGM).

What to know:

  • Reserves backing USDU are held 1:1 in safeguarded onshore accounts at Universal’s banking partners: Emirates NBD and Mashreq, with Mbank.
  • Digital asset infrastructure firm Aquanow has been appointed as a global distribution partner, supporting institutional access to USDU outside the UAE.