이 기사 공유하기

Almost $7M in Bitcoin Held by Colonial Pipeline Attacker Is on the Move

Elliptic has linked the activity to ransomware group REvil, with which DarkSide has close ties, being hacked and forced offline by a U.S. government-led operation.

(Shutterstock)

Bitcoin now worth nearly $7 million held by the DarkSide ransomware group involved in the Colonial Pipeline attack in May is on the move, according to blockchain analytics firm Elliptic.

  • Following the attack, which threatened the petroleum supplies of five eastern states in the U.S., DarkSide’s share of the amount paid in ransom remained dormant until Oct. 21, Elliptic said Friday in a blog.
  • The developer of “ransomware as a service,” DarkSide, maintained a wallet to hold its share of the funds, which included 11.3 BTC. That was identified by Elliptic using its intelligence collection and analysis of blockchain transactions.
  • DarkSide subsequently said the wallet had been claimed by an unknown third party, sending 107.8 BTC ($6.8 million) to a new address.
  • These bitcoin have now been sent through a series of new wallets over a period of several hours, with small amounts being ejected at each step – a common money laundering technique to make funds harder to track.
  • Elliptic has linked this activity to ransomware group REvil, with which DarkSide has close ties, being hacked and forced offline by a U.S. government-led operation.

Read more: Blockchain Analytics Firm Elliptic Raises $60M to Fund R&D, Expansion

jwp-player-placeholder
STORY CONTINUES BELOW
다른 이야기를 놓치지 마세요.오늘 Crypto Daybook Americas 뉴스레터를 구독하세요. 모든 뉴스레터 보기
Jamie Crawley

Jamie has been part of CoinDesk's news team since February 2021, focusing on breaking news, Bitcoin tech and protocols and crypto VC. He holds BTC, ETH and DOGE.

Jamie Crawley

More For You

Multisig Failures Dominate as $2B Is Lost in Web3 Hacks in the First Half

Alt

A wave of multisig-related hacks and operational misconfiguration led to catastrophic losses in the first half of 2025.

알아야 할 것:

  • Over $2 billion was lost to Web3 hacks in the first half of the year, with the first quarter alone surpassing 2024’s total.
  • Multisig wallet mismanagement and UI tampering caused the majority of major exploits.
  • Hacken urges real-time monitoring and automated controls to prevent operational failures.
(
)