Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
M Cryptocurrency Theft Linked to LastPass Password Manager DataBreach

$35M Cryptocurrency Theft Linked to LastPass Password Manager DataBreach

Posted on January 6, 2026January 6, 2026 By CWS

Blockchain intelligence agency TRM Labs has traced over $35 million in stolen cryptocurrency to the 2022 LastPass breach, revealing a classy Russian cybercriminal laundering operation that continues to be lively into 2025.

In 2022, hackers breached LastPass and stole encrypted password vaults containing the credentials of roughly 30 million customers worldwide.

Though the vaults had been encrypted, attackers downloaded them in bulk and started cracking weak grasp passwords offline.

This allowed cybercriminals to entry non-public keys and seed phrases saved inside, resulting in steady pockets drains all through 2024 and 2025, greater than three years after the preliminary breach.

TRM Labs estimates that over $28 million was stolen, transformed to Bitcoin, and laundered via Wasabi Pockets, a privacy-focused mixing service.

The latest LastPass-linked transactions occurred as late as October 2025, with an extra $7 million traced in September.

Demixing Exposes Russian Infrastructure

Utilizing superior demixing methods, TRM analysts defeated the privateness protections of CoinJoin mixers like Wasabi Pockets by figuring out behavioral patterns and transaction fingerprints.

The evaluation revealed that stolen funds constantly flowed to the Russian exchanges Cryptex and Audi6, each of that are related to cybercriminal cash laundering.

Intelligence linked to wallets each earlier than and after mixing pointed to Russia-based operational management, indicating continuity throughout a number of laundering phases somewhat than remoted exercise.

Cryptex was sanctioned by OFAC in 2024 for facilitating ransomware funds. This case demonstrates that cryptocurrency mixers don’t eradicate attribution danger when risk actors depend on constant infrastructure.

TRM’s demixing methodology revealed clustered withdrawal patterns and peeling chains that funneled blended Bitcoin to recognized Russian exchanges, exhibiting the operational structure of the laundering pipeline.

For the 25 million affected LastPass customers who did not rotate passwords or safe their vaults, the risk stays lively, a stark reminder that credential breaches can create multi-year home windows of exploitation.

Comply with us on Google Information, LinkedIn, and X for day by day cybersecurity updates. Contact us to function your tales.

Cyber Security News Tags:35M, Cryptocurrency, DataBreach, LastPass, Linked, Manager, Password, Theft

Post navigation

Previous Post: New n8n Vulnerability (9.9 CVSS) Lets Authenticated Users Execute System Commands
Next Post: Threat Actors Hacked Global Companies via Leaked Cloud Credentials from Infostealer Infections

Related Posts

FBI Alerts on New Phishing Platform Targeting Microsoft 365 FBI Alerts on New Phishing Platform Targeting Microsoft 365 Cyber Security News
node-ipc npm Package Attack: Key Details and Response node-ipc npm Package Attack: Key Details and Response Cyber Security News
DNN Vulnerability Let Attackers Steal NTLM Credentials via Unicode Normalization Bypass DNN Vulnerability Let Attackers Steal NTLM Credentials via Unicode Normalization Bypass Cyber Security News
OpenSSH 10.3 Addresses Key Security Vulnerabilities OpenSSH 10.3 Addresses Key Security Vulnerabilities Cyber Security News
Dutch Police Break Up €100 Million Fraud Network Dutch Police Break Up €100 Million Fraud Network Cyber Security News
Malicious AI Extension Hijacks Search Data Malicious AI Extension Hijacks Search Data Cyber Security News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Local AI Model Evades EDR Detection with Modified Credential Dumper
  • Enhancing AI Agent Security with Zero Trust Principles
  • Critical Vulnerability in Oracle PeopleSoft Exploited Globally
  • Kiteworks Recommends Nine-Hour System Shutdown Amid Cyber Threat
  • New Botnet x47.c Leverages AI for Advanced Cyber Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark