2022 Mid-Year Blockchain Security and AML Analysis Report
2022-08-16 • Slowmist •
https://www.slowmist.com/report/first-half-of-the-2022-report(EN).pdf
Attachments
SlowMist's 2022 mid-year blockchain security and AML report identifies Lazarus Group as a major cryptocurrency money laundering threat and notes U.S. sanctions against addresses tied to the Ronin Network hack and the Blender mixer. The report says Lazarus activity in early 2022 included Crypto.com unauthorized withdrawals, the IRA Financial Gemini account theft, and the Ronin bridge incident. It describes laundering patterns in which stolen ETH moved through Tornado Cash or exchanges, converted to renBTC, shifted onto Bitcoin, and pooled through mixers such as CoinJoin.
Indicators of Compromise
| Type | Value | First Seen | Last Seen |
|---|---|---|---|
| DOMAIN | slowmist.medium.com | 2022-08-16 | 2025-09-01 |
| URL | https://slowmist.medium.com | 2022-08-16 | 2025-07-01 |
| IPv4 | 2.1.1.2 | 2022-08-16 | 2022-08-16 |
| IPv4 | 2.1.1.3 | 2022-08-16 | 2022-08-16 |
| IPv4 | 2.1.1.1 | 2022-08-16 | 2022-08-16 |