Crypto users lost $1.8 billion in 2023 hacks and scams, Immunefi says

Quick Take

  • Crypto users lost $1.8 billion in various hacks and scams in 2023, with Lazarus Group remaining the most prolific attacker.

Over the course of 2023, crypto users lost $1.8 billion in various hacks, exploits, scams and rug pulls, bug bounty platform Immunefi said in a report published on Thursday. While that's a 54% decrease from the $3.9 billion the industry lost in 2022, the number of single incidents increased 90% from 168 in 2022 to 319 in 2023.

The third quarter of the year proved to be the most disastrous, accounting for a third of all losses registered during the year. In terms of monthly numbers, the highest losses were seen in November ($343 million), September ($340 million) and July ($320 million). 

A total of ​​$1.6 billion was lost as a result of hacks in 247 incidents mostly connected to decentralized finance platforms, while fraud accounted for $103 million lost in 110 incidents, according to the report. 

Immunefi said that 13.5% of the stolen funds, or around $231.7 million, had been recovered in 19 cases.

Most attacked blockchains 

BNB Chain and Ethereum are consistently the most attacked blockchains, accounting for more than half of the total losses. According to Immunefi, 131 incidents involved BNB Chain-based projects, and 91 incidents were seen on Ethereum. They were followed by Polygon with ten incidents, and Avalanche with six.

THE SCOOP

Keep up with the latest news, trends, charts and views on crypto and DeFi with a new biweekly newsletter from The Block's Frank Chaparro

By signing-up you agree to our Terms of Service and Privacy Policy
By signing-up you agree to our Terms of Service and Privacy Policy

North Korea's Lazarus Group got away with $308.6 million of funds stolen from various projects in 2023, which is 17.4% of the total losses seen during the year. The group is believed to be behind the attacks on Atomic Wallet, CoinEx, Alphapo, Stake and CoinsPaid. 

Other notable incidents in 2023 included attacks on Mixin Network ($200 million), Euler Finance ($197 million), Multichain ($126 million), Poloniex ($126 million), and BonqDAO ($120 million), Immunefi said.


Disclaimer: The Block is an independent media outlet that delivers news, research, and data. As of November 2023, Foresight Ventures is a majority investor of The Block. Foresight Ventures invests in other companies in the crypto space. Crypto exchange Bitget is an anchor LP for Foresight Ventures. The Block continues to operate independently to deliver objective, impactful, and timely information about the crypto industry. Here are our current financial disclosures.

© 2023 The Block. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

About Author

Anna is a senior policy reporter at The Block. She has a background in political journalism and covered Russian civil society for a range of news outlets in Moscow, including the award-winning newspaper Novaya Gazeta. Before joining The Block, Anna spent the past five years investigating cryptocurrency policies and adoption around the world at CoinDesk. Anna owns bitcoin and a gift NFT of sentimental value.

Editor

To contact the editor of this story:
Nathan Crooks at
[email protected]