Hacker steals $3 million worth of XRP from Ellipal wallet in the US
- User loses $3 million in XRP after hack
- Diverted funds pass through bridges and OTCs linked to Huione
- Investigation points to user failure, not Ellipal wallet failure
A U.S. cryptocurrency user had approximately $3,05 million worth of XRP stolen after his Ellipal wallet was compromised, according to an investigation led by on-chain analyst ZachXBT. The investigation revealed that the funds were transferred via inter-chain bridges and subsequently laundered through over-the-counter exchanges associated with Huione, a network under investigation by authorities for facilitating illicit activities in Southeast Asia.
According to ZachXBT, the attack occurred on October 12th and involved over 120 XRP-to-Tron exchanges before the funds were consolidated and redistributed to Huione-linked OTC addresses on October 15th. The expert published the addresses involved and described the detailed movements in a thread on X.
1/ A video went viral on YT this week after a US based victim lost $3.05M (1.2M XRP) from their Ellipal wallet.
Here's the tracing of where the stolen funds ended up and the biggest takeaways for similar thefts. pic.twitter.com/Gyw0OWjts4
— ZachXBT (@zachxbt) October 19, 2025
In recent months, the U.S. Treasury Department and FinCEN have been increasing their monitoring of entities associated with Huione, including proposed sanctions and new rules that classify the Cambodian organization as a significant money laundering concern. Recent reports cite billions of dollars in suspicious transactions connected to this ecosystem.
ZachXBT emphasized that in this case, there's no evidence of a technical failure in the Ellipal wallet, but rather a user configuration error. "The victim believed they were using a cold storage device, when in fact they were operating a hot wallet," the investigator explained. He also noted that the lack of clarity between custodial and non-custodial products still exposes many users to unnecessary risks.
The incident reinforces a recurring pattern of attacks on wallets and private keys in 2025. A recent report from TRM Labs found that over $2 billion was lost in the first half of the year alone in thefts linked to front-end vulnerabilities and access fraud. Much of these funds end up being converted into other assets and diverted through OTC channels similar to those identified in this case.
ZachXBT stated that recovery of the funds is unlikely due to jurisdictional limitations and the speed with which the funds were moved. He also urged centralized exchanges and stablecoin issuers to adopt stricter controls to track suspicious flows and curb money laundering in parallel markets.
XRP, the native token of the XRP Ledger designed for rapid value transfers, was trading around $2,46 on Monday, up 6% in the last 24 hours, following the general recovery of cryptocurrencies after recent market sell-offs.
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
The Emergence of Hyperliquid and What Lies Ahead for Perpetual Trading Platforms
- Hyperliquid dominates 56% of decentralized perpetual trading volume in 2025 with $86.6M 30-day revenue, driven by HyperCore's on-chain CLOB and HyperBFT consensus. - Its sub-second finality and 200k orders/second capacity rival centralized exchanges while maintaining transparency, attracting institutional traders seeking compliance and security. - Strategic partnerships with Anchorage Digital and Circle's CCTP V2, plus a $888M strategies fund, reinforce institutional adoption aligned with U.S. and EU reg

COAI's Unexpected Price Decline: Causes, Impacts, and Potential Prospects?
- COAI token's nearly 90% drop from $44.90 to $2.18 in October 2025 driven by C3.ai's $116.8M loss, governance issues, and regulatory uncertainty. - Market fear index hit 10/100 as top wallets (88% supply control) accelerated selling, shifting capital to Binance Chain meme coins. - Technical indicators show oversold RSI (31.4) but broken key support levels, creating asymmetric risks for contrarian investors. - Regulatory ambiguity and governance flaws persist, with 30-day -92.6% decline highlighting struct


LUNA +30.44% 7D as Network Improvements and Upcoming Sentencing Date Fuel Market Fluctuations
- Terraform Labs founder Do Kwon's sentencing hearing on Dec 11 intensified LUNA volatility, with 11.16% 24h drop amid legal uncertainty. - Terra network's v2.18 upgrade boosted LUNA by 250% in 10 days through performance improvements and Cosmos interoperability. - LUNC surged 116% weekly driven by viral social media nostalgia and accelerated token burns, highlighting community-driven sentiment. - Legal outcomes and technical upgrades remain dual drivers, with market volatility expected to persist until re

