Lazarus Under The Hood
First seen: 2017-04 •
Last seen: 2026-05
#Taylor • 2018-05
Taylor reported that attackers stole project funds after gaining access to a team device and taking control of a 1Password file, emphasizing that the incident was not a smart-contract exploit but an endpoint and credential-vault compromise. The theft included 2,578.98 ETH and TAY tokens from team and bounty pools, prompted attempts to delist or freeze attacker-controlled token movement on IDEX, and led Taylor to propose a token swap excluding identified attacker addresses while its team pursued forensics and security improvements.
4
Related Reports
1
Affected Countries
97
Months Since
Lazarus Under The Hood