
How Hackers Stole $1,500,000,000 in 3 minutes
Source: YouTube · Cybernews · published Jul 9, 2026 · 30:03
North Korea pulled off the largest financial heist in history, stealing $1.5 billion from the crypto exchange Bybit in just over two minutes 0:53-1:02.
Key Takeaways:
• North Korea shifted its cyber strategy from disruptive attacks to direct financial theft after heavy 2017 sanctions decimated its exports, finding crypto hacks offered immediate returns 9:01-9:42.
• The attack was executed by compromising a Safe Wallet developer via a fake share trading app, allowing hackers to lurk undetected in the system for 16 days 15:00-16:42.
• Hackers injected malicious JavaScript to intercept a routine transaction, altering a single value from zero to one, which tricked signers into authorizing the $1.5 billion transfer 17:49-18:58.
• The stolen funds were rapidly laundered through dozens of wallets, cross-chain bridges, and mixers at speeds of two to three transactions per minute, making the money largely irrecoverable 21:07-23:34.
• Experts believe the ultimate goal is not just lavish projects like a billion-dollar beach resort, but creating a global slush fund to covertly purchase military materials and bribe officials worldwide 26:06-27:01.
North Korea has effectively weaponized cryptocurrency to bypass international sanctions, and as global geopolitics fracture, their illicit financial avenues will likely continue to expand.
Sources:
- 0:53-1:02 Bybit hack overview and $1.5 billion theft
- 9:01-9:42 Shift to crypto hacks due to sanctions
- 15:00-16:42 Initial compromise and 16-day reconnaissance
- 17:49-18:58 The zero-to-one transaction trick
- 21:07-23:34 Rapid laundering techniques and mixer usage
- 26:06-27:01 Global slush fund and military procurement
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 0.5 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
It should have been zero, but it is now one. Benho has just authorized the last transaction of the week. The transfer is taking an unusual amount of time to arrive. Zhao is not stressed out, though. Everything seemed in order. Numbers matched. Signatures were in place. The money should arrive any moment now. He checks the transaction panel. The money is still not there. He checks it again and again and again. Well, that's not good. Bybit's CFO is on the other end. He is losing it. Joe can barely keep up through the mess of words and hyperventilation, but one sentence comes out loud and clear. The whole wallet has been drained. And then it hits him. He's just been robbed. Bybit, one of the largest cryptocurrency exchanges in the world, has been hacked. In just three minutes, $1.5 billion do…