Menu

  • Alerts
  • Incidents
  • News
  • APTs
  • Cyber Decoded
  • Cyber Hygiene
  • Cyber Review
  • Cyber Tips
  • Definitions
  • Malware
  • Threat Actors
  • Tutorials

Useful Tools

  • Password generator
  • Report an incident
  • Report to authorities
No Result
View All Result
CTF Hack Havoc
CyberMaterial
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
Hall of Hacks
  • Education
    • Cyber Decoded
    • Definitions
  • Information
    • Alerts
    • Incidents
    • News
  • Insights
    • Cyber Hygiene
    • Cyber Review
    • Tips
    • Tutorials
  • Support
    • Contact Us
    • Report an incident
  • About
    • About Us
    • Advertise with us
Get Help
No Result
View All Result
Hall of Hacks
CyberMaterial
No Result
View All Result
Home Incidents

Arkham Reports LuBian Bitcoin Theft

August 6, 2025
Reading Time: 3 mins read
in Incidents
Georgia SNAP Call Center Cyberattack

A recent investigation by blockchain analytics firm Arkham Intelligence has brought to light what it calls the largest cryptocurrency theft in history, an incident that occurred in late 2020 but was never publicly reported. According to Arkham, a little-known Chinese mining pool called LuBian was the victim of a sophisticated hack that resulted in the loss of 127,426 BTC, worth an estimated $3.5 billion at the time. Despite the massive scale of the theft, both the LuBian team and the alleged hacker have remained silent on the matter for five years. This unprecedented breach, if confirmed, would surpass the value of other infamous crypto heists like those from Mt. Gox and Bitfinex.

Arkham’s analysis provides a detailed timeline of the events.

The firm’s on-chain data shows that on December 28, 2020, over 90% of LuBian’s Bitcoin holdings were drained from their wallets. This initial theft was followed two days later by a smaller but separate incident, involving approximately $6 million in BTC and USDT. In the immediate aftermath, LuBian appears to have recognized the compromise, as it quickly moved its remaining 11,886 BTC into recovery wallets by the end of December 2020. This swift action to secure their remaining assets suggests the company was aware of the ongoing security vulnerability.

A unique and compelling piece of evidence supporting Arkham’s findings is the presence of special messages embedded in the Bitcoin blockchain. The analysis shows that LuBian spent 1.4 BTC across more than 1,500 transactions to send OP_RETURN messages to the hacker’s wallet. These on-chain pleas were a clear attempt to contact the thief and persuade them to return the stolen funds. According to Arkham, this highly unusual and persistent effort indicates the messages were genuine and originated from the rightful owner of the wallet, adding weight to the claim that the funds were indeed stolen.

Arkham’s investigation also offers a potential explanation for the security breach.

The firm theorizes that the vulnerability stemmed from LuBian’s use of a flawed private key generation algorithm, which could have made it susceptible to a brute-force attack. Such a flaw would have exposed critical security weaknesses in early cryptocurrency mining infrastructure. The stolen Bitcoin has remained largely untouched since the incident, with the last significant movement being a wallet consolidation in July 2024. The current value of the assets has skyrocketed since the theft, now estimated at a staggering $14.5 billion due to Bitcoin’s price appreciation.

This massive sum places the hacker’s wallet as the 13th largest BTC holder tracked by Arkham, surpassing the holdings linked to the infamous Mt. Gox breach. As of today, Arkham believes both the hacker and LuBian still control their respective Bitcoin balances, and the firm has published wallet trackers for both parties. While the identities of those involved remain undisclosed, the discovery by Arkham Intelligence sheds light on a major historical event in the crypto world and highlights the significant and long-lasting consequences of security vulnerabilities in early cryptocurrency infrastructure.

Reference:

  • Arkham Says 35B LuBian Bitcoin Theft Went Unnoticed for Almost Five Years
Tags: August 2025cyber incidentsCyber Incidents 2025Cyber threats
ADVERTISEMENT

Related Posts

Russian Hackers Hit Polish Hospitals

Russian Hackers Hit Polish Hospitals

September 19, 2025
Russian Hackers Hit Polish Hospitals

New York Blood Center Data Breach

September 19, 2025
Russian Hackers Hit Polish Hospitals

Tiffany Data Breach Hits Thousands

September 19, 2025
AI Forged Military IDs Used In Phishing

AI Forged Military IDs Used In Phishing

September 18, 2025
AI Forged Military IDs Used In Phishing

ShinyHunters Claims Salesforce Data Theft

September 18, 2025
AI Forged Military IDs Used In Phishing

Insight Partners Warns After Data Breach

September 18, 2025

Latest Alerts

Steganography Cloud C2 In Modular Chain

Fake Empire Targets Crypto With AMOS

SEO Poisoning Hits Chinese Users

FileFix Uses Steganography To Drop StealC

Apple Backports Fix For Exploited Bug

Google Removes 224 Android Malware Apps

Subscribe to our newsletter

    Latest Incidents

    Russian Hackers Hit Polish Hospitals

    New York Blood Center Data Breach

    Tiffany Data Breach Hits Thousands

    AI Forged Military IDs Used In Phishing

    Insight Partners Warns After Data Breach

    ShinyHunters Claims Salesforce Data Theft

    CyberMaterial Logo
    • About Us
    • Contact Us
    • Jobs
    • Legal and Privacy Policy
    • Site Map

    © 2025 | CyberMaterial | All rights reserved

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In

    Add New Playlist

    No Result
    View All Result
    • Alerts
    • Incidents
    • News
    • Cyber Decoded
    • Cyber Hygiene
    • Cyber Review
    • Definitions
    • Malware
    • Cyber Tips
    • Tutorials
    • Advanced Persistent Threats
    • Threat Actors
    • Report an incident
    • Password Generator
    • About Us
    • Contact Us
    • Advertise with us

    Copyright © 2025 CyberMaterial