Twitter Hacker Is Mixing Bitcoin Loot Using a Wasabi Wallet, Elliptic Says

According to the crypto analytics firm, 2.89 bitcoin associated with Wednesday’s security breach was moved to a Wasabi wallet late last night.

AccessTimeIconJul 17, 2020 at 6:01 p.m. UTC
Updated Sep 14, 2021 at 9:32 a.m. UTC
10 Years of Decentralizing the Future
May 29-31, 2024 - Austin, TexasThe biggest and most established global hub for everything crypto, blockchain and Web3.Register Now

Funds collected by the scam that breached Twitter this week appear to be on the move, cryptocurrency tracing firm Elliptic said. 

According to transaction data associated with crypto wallets used in the security breach, a total of about $123,000 was collected by the attackers. Of that about 22%, 2.89 BTC, was transferred late last night to an address Elliptic said it “strongly believe[s]” is a Wasabi wallet.

  • Wasabi wallets allow users to circumvent the transparency guaranteed by bitcoin’s public blockchain by mixing up the transaction trail, thus making it harder for law enforcement to follow the money.
  • According to Elliptic, the firm is able to identify Wasabi wallets based on distinctive transaction patterns. While exchanges can usually identify their clients using KYC checks, which makes it possible to flag fraudsters for law enforcement, the use of a Wasabi wallet makes it harder to pin down where a client’s money came from. 
  • In a recent statement, Twitter said Wednesday’s security breach had targeted over 130 users, allowing attackers to gain control of user accounts and post identical messages demanding bitcoin. The firm also said it was investigating whether the attackers had accessed any non-public data on the platform. 
  • Responding to claims about the hacker’s use of a Wasabi wallet to mix the loot, zkSNACKs, the firm that makes the wallet said in an emailed statement, “Although it is sad that there are dishonest people using our product, the truth is that for every 1 person utilizing our CoinJoin service for malevolent purposes, there's another 100 people utilizing it for the right reasons.”

UPDATE (July 20, 17:24 UTC): This article has been updated to include comment from the developers of Wasabi wallet.

coindesk-twitter-hack-2560x854-03a

Disclosure

Please note that our privacy policy, terms of use, cookies, and do not sell my personal information has been updated.

CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. In November 2023, CoinDesk was acquired by the Bullish group, owner of Bullish, a regulated, digital assets exchange. The Bullish group is majority-owned by Block.one; both companies have interests in a variety of blockchain and digital asset businesses and significant holdings of digital assets, including bitcoin. CoinDesk operates as an independent subsidiary with an editorial committee to protect journalistic independence. CoinDesk employees, including journalists, may receive options in the Bullish group as part of their compensation.


Learn more about Consensus 2024, CoinDesk's longest-running and most influential event that brings together all sides of crypto, blockchain and Web3. Head to consensus.coindesk.com to register and buy your pass now.