Lummis: CLARITY Act Closes Gaps North Korea’s Lazarus Group Used to Steal $6.75 Billion

53 minutes ago

Senator Cynthia Lummis (R-WY) said the CLARITY Act closes illicit-finance gaps that groups similar North Korea’s Lazarus Group person exploited, arguing the measure hands the U.S. Treasury Department and crypto exchanges caller authorization to frost suspicious transactions earlier funds determination overseas.

Key Takeaways

  • Lummis says CLARITY Act Sections 303 and 305 people North Korea’s Lazarus Group with caller frost tools.
  • North Korea-linked hackers took astir two-thirds of the $972 cardinal stolen successful H1 2026.
  • CLARITY Act needs 60 Senate votes and 7 Democratic crossovers earlier its floor-vote deadline.

Section 303 and 305 Target Illicit Funds

Cynthia Lummis, 1 of the CLARITY Act’s pb sponsors, took to X and pointed to the bill’s anti-money laundering provisions arsenic she pushes for a Senate level ballot earlier lawmakers permission for August recess.

Lummis Tweet astir  CLARITY actImage source: X

The Wyoming Republican has repeated the statement since defending the authorities from Senator Elizabeth Warren earlier this month, stating that:

“Sec. 303 enables caller crypto sanctions connected Iran. Sec. 305 lets exchanges halt illicit funds earlier they scope North Korea.”

Section 303 gives the Treasury new special-measure authority to designate overseas jurisdictions oregon fiscal institutions arsenic a “primary wealth laundering concern” specifically for integer plus activity. Once a jurisdiction is designated, covered exchanges and stablecoin issuers indispensable prohibit oregon restrict money transfers involving it, extending a instrumentality regulators person agelong utilized against analogous banks into crypto for the archetypal time.

Section 305, connected the different hand, works astatine the transaction level, allowing speech operators and stablecoin issuers to spot a 30-day clasp connected immoderate transaction they person crushed to judge involves illicit activity, extendable to 180 days full if instrumentality enforcement submits a ceremonial written request.

Firms that enactment successful bully religion get a harmless harbor from civilian liability, portion existing suspicious enactment study obligations enactment successful place. Lummis has paired some sections with Section 201, which extends Bank Secrecy Act (BSA) anti-money laundering (AML) requirements to integer plus firms for the archetypal time, portion of what she calls much than 16 illicit-finance safeguards built into the bill, a lawsuit she has besides made for wherefore the CLARITY Act would protect lawsuit crypto successful exchange bankruptcies.

Lazarus Group’s Escalating 2026 Haul

North Korea-linked hackers were liable for astir two-thirds of each crypto hacking losses worldwide successful the archetypal fractional of 2026, astir $643 cardinal of the $972 cardinal stolen crossed a grounds 207 incidents.

The azygous largest hits came successful April, erstwhile the Lazarus Group drained Solana-based Drift Protocol of $285 cardinal and past compromised the Layerzero span connecting DeFi level KelpDAO to Ethereum for another $292 million.

Those losses physique connected a signifier researchers person tracked for years, with DPRK-linked actors stealing a grounds $2.02 cardinal successful 2025 alone, a 51% leap from the twelvemonth before, pushing the group’s cumulative haul since 2019 to $6.75 billion. The azygous largest exploit remains the February 2025 onslaught connected Bybit, wherever Lazarus-linked hackers made disconnected with astir $1.5 cardinal successful ethereum.

The radical has besides shifted tactics this year, moving beyond span and protocol exploits toward nonstop targeting of crypto executives. To this point, Bitcoin.com News tracked a Lazarus-linked campaign dubbed Mach-O Man successful April, which uses fake gathering invitations and a social-engineering method called ClickFix to instrumentality fintech and crypto unit into pasting malicious commands into their ain Mac terminals, giving hackers a foothold earlier immoderate onchain theft adjacent begins.

View source