{"id":4596,"date":"2025-07-01T09:59:09","date_gmt":"2025-07-01T09:59:09","guid":{"rendered":"https:\/\/bitunikey.com\/news\/circles-compliant-usdc-is-the-go-to-for-dprk-hackers-zachxbt\/"},"modified":"2025-07-01T09:59:10","modified_gmt":"2025-07-01T09:59:10","slug":"circles-compliant-usdc-is-the-go-to-for-dprk-hackers-zachxbt","status":"publish","type":"post","link":"https:\/\/bitunikey.com\/news\/circles-compliant-usdc-is-the-go-to-for-dprk-hackers-zachxbt\/","title":{"rendered":"Circle\u2019s \u2018compliant\u2019 USDC is the go-to for DPRK hackers: ZachXBT"},"content":{"rendered":"<p><\/p>\n<div class=\"post-detail__content blocks\">\n<p class=\"is-style-lead\">On-chain investigator ZachXBT has raised concerns over USDC stablecoin issuer Circle\u2019s compliance standards and its growing use among malicious actors.<\/p>\n<p>According to ZachXBT, North Korean IT workers have been using USDC (USDC) to move millions in illicit payments. The on-chain analyst\u2019s comments came in response to Circle\u2019s recent filing for a national trust bank charter, which would authorize the firm to manage the reserves backing USD Coin.<\/p>\n<p>ZachXBT criticized Circle\u2019s handling of the situation, alleging that despite the scale and visibility of the fund flows, the company has taken no steps to curb the activity or freeze any of the wallets involved. \u201cThey currently do nothing to detect \/ freeze the activity while boasting about compliance,\u201d he wrote.\u00a0<\/p>\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\">\n<div class=\"wp-block-embed__wrapper\">\n<blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\">\n<p lang=\"en\" dir=\"ltr\">Circle \/ USDC is the primary infra used by DPRK IT workers to facilitate payments. <\/p>\n<p>They currently do NOTHNG to detect \/ freeze the activity while boasting about compliance.  <\/p>\n<p>I can point out high 8 figs in recent volume.<\/p>\n<p>However it\u2019s the crime super cycle so no one cares.<\/p>\n<p>\u2014 ZachXBT (@zachxbt) <a rel=\"nofollow\" target=\"_blank\" href=\"https:\/\/twitter.com\/zachxbt\/status\/1939900744586686649?ref_src=twsrc%5Etfw\" target=\"_blank\">July 1, 2025<\/a><\/p><\/blockquote>\n<\/div>\n<\/figure>\n<p>The payments are tied to malicious North Korean cyber actors who land remote tech jobs under false identities, gaining access to unsuspecting organizations\u2019 infrastructures. This is a tactic that has become widely flagged by security experts as one of the group\u2019s latest methods for stealing funds and information.<\/p>\n<p>ZachXBT claimed to have identified high eight-figure volumes flowing through these wallets recently, most of it in USDC.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p>\n<p>For years, Circle\u2019s rival Tether\u2019s USDT (USDT) drew the most criticism for enabling illicit transactions due to its perceived lack of oversight. In contrast, Circle was viewed as the industry\u2019s compliance leader, boasting licenses from major regulators and pushing a cleaner image.<\/p>\n<p>Earlier this year, the firm went public under the same compliance narrative and earned praise for setting a positive regulatory precedent within the industry.\u00a0Circle\u2019s reported failure to take action also contrasts sharply with how Tether and other stablecoin issuers have responded in similar cases, freezing wallets and blocking suspicious fund movements. <\/p>\n<p>While the issuer has yet to publicly deny or acknowledge the allegations, the reports of allowing sanctioned actors to operate unchecked deal a major blow to its reputation.\u00a0<\/p>\n<p>crypto.news reached out to Circle for comment but has yet to receive a response as of press time.<\/p>\n<p>    <!-- .cn-block-related-link --><\/p><\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n","protected":false},"excerpt":{"rendered":"<p>On-chain investigator ZachXBT has raised concerns over USDC stablecoin issuer Circle\u2019s compliance standards and its growing use among malicious actors. According to ZachXBT, North Korean IT workers have been using&hellip;<\/p>\n","protected":false},"author":1,"featured_media":1909,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[],"class_list":["post-4596","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cryptocurrency"],"_links":{"self":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/4596","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/comments?post=4596"}],"version-history":[{"count":1,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/4596\/revisions"}],"predecessor-version":[{"id":4597,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/posts\/4596\/revisions\/4597"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media\/1909"}],"wp:attachment":[{"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/media?parent=4596"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/categories?post=4596"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/bitunikey.com\/news\/wp-json\/wp\/v2\/tags?post=4596"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}