The post ZachXBT cracks Railgun privacy to expose Bittensor hacker appeared on BitcoinEthereumNews.com. Crypto sleuth ZachXBT has managed to deanonymise withdrawals from crypto mixer Railgun while identifying a suspect linked to NFT wash trading and the $28 million Bittensor hack.  Decentralized protocol Bittsensor suffered a supply chain attack in 2024 that resulted in the theft of $28 million from 32 holders of its TAO token.  In an investigation revealed today, ZachXBT showed how he was able to trace these funds to instant exchanges where they were swapped for privacy-focused cryptocurrency monero.  5/ I deanonymized the Railgun withdrawals to three addresses (0x1d7, 0x87d8, 0x1fbc) by applying timing / amount heuristics. Total deposits: 1249.68 ETH, 277.2K USDC, 22.35 WETHTotal withdrawals: 1246.16 ETH, 276.4K USDC, 19.83 WETH The unique denominations and short deposit… pic.twitter.com/6jZ2yrqLQw — ZachXBT (@zachxbt) October 15, 2025 A snippet of ZachXBT’s full Bittsensor investigation. Read more: Did the US government hack a scam network for $15B in bitcoin? Almost $5 million worth of these funds was transferred to Railgun in batches of ether, USDC, and wrapped ether.  ZachXBT claims to have then deanonymized the withdrawals from Railgun by applying timing and amount “heuristics.” According to the sleuth, “The unique denominations and short deposit time makes the demix high confidence.” Railgun is a rival to Tornado Cash, and has seen the likes of Ethereum creator Vitalik Buterin use its service.  In some instances, Railgun has utilised protocol policy to return stolen funds, for example from the $9.5 million exploit of the Starknet network. On the flip side, it’s also popular with North Korean hacking collective Lazarus Group.  This is a solid demonstration of Railgun’s privacy pools mechanism ( https://t.co/DekkatsMR5 ) working in practice, allowing Railgun to avoid serving proceeds of crime without using any snooping / backdoors. How it works: * Anyone can deposit into Railgun.* After you deposit,… https://t.co/SqclMS3SzO — vitalik.eth (@VitalikButerin) February… The post ZachXBT cracks Railgun privacy to expose Bittensor hacker appeared on BitcoinEthereumNews.com. Crypto sleuth ZachXBT has managed to deanonymise withdrawals from crypto mixer Railgun while identifying a suspect linked to NFT wash trading and the $28 million Bittensor hack.  Decentralized protocol Bittsensor suffered a supply chain attack in 2024 that resulted in the theft of $28 million from 32 holders of its TAO token.  In an investigation revealed today, ZachXBT showed how he was able to trace these funds to instant exchanges where they were swapped for privacy-focused cryptocurrency monero.  5/ I deanonymized the Railgun withdrawals to three addresses (0x1d7, 0x87d8, 0x1fbc) by applying timing / amount heuristics. Total deposits: 1249.68 ETH, 277.2K USDC, 22.35 WETHTotal withdrawals: 1246.16 ETH, 276.4K USDC, 19.83 WETH The unique denominations and short deposit… pic.twitter.com/6jZ2yrqLQw — ZachXBT (@zachxbt) October 15, 2025 A snippet of ZachXBT’s full Bittsensor investigation. Read more: Did the US government hack a scam network for $15B in bitcoin? Almost $5 million worth of these funds was transferred to Railgun in batches of ether, USDC, and wrapped ether.  ZachXBT claims to have then deanonymized the withdrawals from Railgun by applying timing and amount “heuristics.” According to the sleuth, “The unique denominations and short deposit time makes the demix high confidence.” Railgun is a rival to Tornado Cash, and has seen the likes of Ethereum creator Vitalik Buterin use its service.  In some instances, Railgun has utilised protocol policy to return stolen funds, for example from the $9.5 million exploit of the Starknet network. On the flip side, it’s also popular with North Korean hacking collective Lazarus Group.  This is a solid demonstration of Railgun’s privacy pools mechanism ( https://t.co/DekkatsMR5 ) working in practice, allowing Railgun to avoid serving proceeds of crime without using any snooping / backdoors. How it works: * Anyone can deposit into Railgun.* After you deposit,… https://t.co/SqclMS3SzO — vitalik.eth (@VitalikButerin) February…

ZachXBT cracks Railgun privacy to expose Bittensor hacker

Crypto sleuth ZachXBT has managed to deanonymise withdrawals from crypto mixer Railgun while identifying a suspect linked to NFT wash trading and the $28 million Bittensor hack. 

Decentralized protocol Bittsensor suffered a supply chain attack in 2024 that resulted in the theft of $28 million from 32 holders of its TAO token. 

In an investigation revealed today, ZachXBT showed how he was able to trace these funds to instant exchanges where they were swapped for privacy-focused cryptocurrency monero. 

A snippet of ZachXBT’s full Bittsensor investigation.

Read more: Did the US government hack a scam network for $15B in bitcoin?

Almost $5 million worth of these funds was transferred to Railgun in batches of ether, USDC, and wrapped ether. 

ZachXBT claims to have then deanonymized the withdrawals from Railgun by applying timing and amount “heuristics.

According to the sleuth, “The unique denominations and short deposit time makes the demix high confidence.”

Railgun is a rival to Tornado Cash, and has seen the likes of Ethereum creator Vitalik Buterin use its service. 

In some instances, Railgun has utilised protocol policy to return stolen funds, for example from the $9.5 million exploit of the Starknet network. On the flip side, it’s also popular with North Korean hacking collective Lazarus Group. 

Vitalik Buterin praising the crypto mixer Railgun.

Read more: What does Roman Storm’s guilty verdict mean for the wider DeFi sector?

Crypto mixers are designed to make funds untraceable once they’ve been withdrawn. ZachXBT’s research, however, appears to undermine this completely.  

Wash trading NFT anime girls

Once the crypto was obfuscated, the suspects sent the funds to three more addresses and made various bridged transactions.

The funds were then used to purchase some anime-themed NFTs and, through various overpriced sales and fund transfers, they were laundered.

The crypto sleuth noted that, “It’s extremely rare to see exploits/hacks involve NFT wash trading.” 

The Killer GF NFT series in question.

One address that received the funds was funded by an address belonging to a Bittensor user who went by the alias “Rusty,” and created “Skrtt racing,” a crypto project that took bets on live-streamed Hot Wheels races.  

ZachXBT linked this individual to a lawsuit launched against suspects of the Bittensor hack, and noted that Rusty, giving a statement in the lawsuit as Ayden B, denies involvement in the scam, but admitted to owning the wallets ZachXBT managed to identify in his investigation.

Hopefully law enforcement eventually moves forward with a criminal case in the future,” he said. 

Protos has reached out to ZachXBT to find out more and will update this piece should we hear back.

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

Source: https://protos.com/zachxbt-deanonymizes-withdrawals-from-crypto-mixer-railgun/

Market Opportunity
null Logo
null Price(null)
--
----
USD
null (null) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case

House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case

The post House Judiciary Rejects Vote To Subpoena Banks CEOs For Epstein Case appeared on BitcoinEthereumNews.com. Topline House Judiciary Committee Republicans blocked a Democrat effort Wednesday to subpoena a group of major banks as part of a renewed investigation into late sex offender Jeffrey Epstein’s financial ties. Congressman Jim Jordan, R-OH, is the chairman of the committee. (Photo by Nathan Posner/Anadolu via Getty Images) Anadolu via Getty Images Key Facts A near party-line vote squashed the effort to vote on a subpoena, with Rep. Thomas Massie, R-Ky., who is leading a separate effort to force the Justice Department to release more Epstein case materials, voting alongside Democrats. The vote, if successful, would have resulted in the issuing of subpoenas to JPMorgan Chase CEO Jamie Dimon, Bank of America CEO Brian Moynihan, Deutsche Bank CEO Christian Sewing and Bank of New York Mellon CEO Robin Vince. The subpoenas would have specifically looked into multiple reports that claimed the four banks flagged $1.5 billion in suspicious transactions linked to Epstein. The failed effort from Democrats followed an FBI oversight hearing in which agency director Kash Patel misleadingly claimed the FBI cannot release many of the files it has on Epstein. Get Forbes Breaking News Text Alerts: We’re launching text message alerts so you’ll always know the biggest stories shaping the day’s headlines. Text “Alerts” to (201) 335-0739 or sign up here. Crucial Quote Dimon, who attended a lunch with Senate Republicans before the vote, according to Politico, told reporters, “We regret any association with that man at all. And, of course, if it’s a legal requirement, we would conform to it. We have no issue with that.” Chief Critic “Republicans had the chance to subpoena the CEOs of JPMorgan, Bank of America, Deutsche Bank, and Bank of New York Mellon to expose Epstein’s money trail,” the House Judiciary Democrats said in a tweet. “Instead, they tried to bury…
Share
BitcoinEthereumNews2025/09/18 08:02
Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

The post Polygon Tops RWA Rankings With $1.1B in Tokenized Assets appeared on BitcoinEthereumNews.com. Key Notes A new report from Dune and RWA.xyz highlights Polygon’s role in the growing RWA sector. Polygon PoS currently holds $1.13 billion in RWA Total Value Locked (TVL) across 269 assets. The network holds a 62% market share of tokenized global bonds, driven by European money market funds. The Polygon POL $0.25 24h volatility: 1.4% Market cap: $2.64 B Vol. 24h: $106.17 M network is securing a significant position in the rapidly growing tokenization space, now holding over $1.13 billion in total value locked (TVL) from Real World Assets (RWAs). This development comes as the network continues to evolve, recently deploying its major “Rio” upgrade on the Amoy testnet to enhance future scaling capabilities. This information comes from a new joint report on the state of the RWA market published on Sept. 17 by blockchain analytics firm Dune and data platform RWA.xyz. The focus on RWAs is intensifying across the industry, coinciding with events like the ongoing Real-World Asset Summit in New York. Sandeep Nailwal, CEO of the Polygon Foundation, highlighted the findings via a post on X, noting that the TVL is spread across 269 assets and 2,900 holders on the Polygon PoS chain. The Dune and https://t.co/W6WSFlHoQF report on RWA is out and it shows that RWA is happening on Polygon. Here are a few highlights: – Leading in Global Bonds: Polygon holds 62% share of tokenized global bonds (driven by Spiko’s euro MMF and Cashlink euro issues) – Spiko U.S.… — Sandeep | CEO, Polygon Foundation (※,※) (@sandeepnailwal) September 17, 2025 Key Trends From the 2025 RWA Report The joint publication, titled “RWA REPORT 2025,” offers a comprehensive look into the tokenized asset landscape, which it states has grown 224% since the start of 2024. The report identifies several key trends driving this expansion. According to…
Share
BitcoinEthereumNews2025/09/18 00:40
transcosmos helping Chinese lingerie brand LING LINGERIE’s full-fledged entry into Japan

transcosmos helping Chinese lingerie brand LING LINGERIE’s full-fledged entry into Japan

Executing strategies to help LING LINGERIE, a Chinese brand meeting Gen Z needs, boost awareness TOKYO, Jan. 23, 2026 /PRNewswire/ — transcosmos today announced
Share
AI Journal2026/01/23 19:30