USDT Issuer Tether Under Fire for Multi-Sig Lag Enabling Crypto Laundering

By: cryptosheadlines|2025/05/16 03:45:06
0
Share
copy
Airdrop Is Live CaryptosHeadlines Media Has Launched Its Native Token CHT. Airdrop Is Live For Everyone, Claim Instant 5000 CHT Tokens Worth Of $50 USDT. Join the Airdrop at the official website, CryptosHeadlinesToken.com A new report from AMLBot has revealed that a delay in Tether’s fund-freezing mechanism has allowed criminals to exploit the system and move over $78 million in USDT across Ethereum and Tron since 2017.Tether’s Freeze Mechanism and Its VulnerabilitiesAMLBot, a blockchain forensics firm, has reported that Tether’s process for freezing USDT linked to criminal activity contains a delay that criminals have exploited. The firm found that the process of blacklisting addresses involves a multi-signature setup, which creates a delay between a freeze request and its execution on the blockchain.This process requires multiple parties to sign the freeze transaction, which can take time to complete. During this time window, some wallets have moved funds before the freeze became active. AMLBot called this period a “critical window” for illicit actors.PeckShield, a blockchain security firm, reviewed the report and confirmed the delay.“It does not necessarily indicate a problem with the contract itself,” a spokesperson said. “Rather, it is an operational issue that creates a time window between when the blacklist transaction is submitted and when it is executed.”$78 Million Moved Through Ethereum and TronAMLBot’s findings showed that bad actors withdrew $49.6 million on Tron and $28.5 million on Ethereum through this loophole. In one example, there was a 44-minute gap between the freeze request and its confirmation on the Tron network. This gave wallets enough time to make up to three transactions before being frozen.According to AMLBot, 4.88% of all blacklisted wallets on Tron were able to exploit this lag. Although smaller in volume, Ethereum-based wallets also took advantage of this operational gap. Since 2017, the total amount of USDT moved by such wallets reached $78.1 million.AMLBot believes some actors may be using tools to monitor freeze requests. These tools scan for specific smart contract calls that are part of the freezing process. If such a call is detected, the tools alert the wallet owner, giving them time to move funds.Security Concerns and Industry ReactionsTether is the issuer of USDT, the world’s largest stablecoin, and regularly freezes tokens tied to illegal activities. Its blacklisting process was used recently after the $1.4 billion Bybit hack, which was linked to North Korea’s Lazarus Group. Tether froze addresses to prevent the stolen assets from being moved or exchanged, although Germany has recently seized $38M from the exploit.PeckShield explained that the vulnerability is a known issue with multi-signature wallets. These wallets are used to improve security, but they slow down urgent actions. PeckShield suggested that Tether could improve this by bundling the freeze request and necessary signatures into a single on-chain transaction to eliminate delays.Slava Demchuk, CEO of AMLBot, stated, “Tools can be programmed to monitor the blockchain for specific contract interactions, such as submitTransaction() calls linked to freeze requests.” He added that while the firm has not observed the bots directly, the on-chain behavior strongly indicates automated systems are involved.Amid scrutiny, Tether has taken steps to improve compliance through a partnership with Chainalysis. The two firms will integrate Chainalysis’ monitoring tools into Tether’s Hadron platform, which focuses on real-world asset tokenization.AMLBot Criticized for Alleged Misuse of Its ToolsWhile the investigation was happening, ZachXBT, a blockchain expert, pointed out some issues with AMLBot. According to him, AMLBot’s own tools enabled criminals to go undetected.As reported by ZachXBT, soon after the $243 million Genesis creditor theft in August 2024, AMLBot was used to transfer stolen funds through instant exchanges. In February 2025, breach logs from the BlackBasta ransomware group also referenced AMLBot as a recommended platform to check flagged addresses.Cybercrime researcher Krebs previously reported that AMLBot clients included Antinalysis, a tool created by darknet group “Incognito” to check addresses for risks of being flagged.Despite these allegations, AMLBot maintains that its tools are built for compliance and monitoring. It continues to warn that criminals are growing more sophisticated and are actively exploiting operational delays.✓ Share: Kelvin Munene Murithi Kelvin is a distinguished writer with expertise in crypto and finance, holding a Bachelor’s degree in Actuarial Science. Known for his incisive analysis and insightful content, he possesses a strong command of English and excels in conducting thorough research and delivering timely cryptocurrency market updates. Disclaimer: The presented content may include the personal opinion of the author and is subject to market condition. Do your market research before investing in cryptocurrencies. The author or the publication does not hold any responsibility for your personal financial loss.Source link

You may also like

What Is Vibe Coding? How AI Is Changing Web3 & Crypto Development

What is vibe coding? Learn how AI coding tools are lowering the barrier to Web3 development and enabling anyone to build crypto applications.

The parent company of the New York Stock Exchange strategically invests in OKX: The intentions behind the $25 billion valuation

Continuous cases show that cryptocurrency exchanges are becoming a battleground for traditional finance and tech giants, while also serving as an important stronghold for entering the strategic landscape of Web3.

WEEX P2P update: Country/region restrictions for ad posting

To improve ad security and matching accuracy, WEEX P2P now allows advertisers to restrict who can trade with their ads based on country or region. Advertisers can select preferred counterparty locations for a safer, smoother trading experience.

 

I. Overview

When publishing P2P ads, advertisers can now set the following:

Allow only counterparties from selected countries or regions to trade with your ads.

With this feature, you can:

Target specific user groups more precisely.Reduce cross-region trading risks.Improve order matching quality.

 

II. Applicable scenarios

The following are some common scenarios:

Restrict payment methods: Limit orders to users in your country using supported local banks or wallets.Risk control: Avoid trading with users from high-risk regions.Operational strategy: Tailor ads to specific markets.

 

III. How to get started

On the ad posting page, find "Trading requirements":

Select "Trade with users from selected countries or regions only".Then select the countries or regions to add to the allowlist.Use the search box to quickly find a country or region.Once your settings are complete, submit the ad to apply the restrictions.

 

When an advertiser enables the "Country/Region Restriction" feature, users who do not meet the criteria will be blocked when placing an order and will see the following prompt:

If you encounter this issue when placing an order as a regular user, try the following solutions.

Choose another ad: Select ads that do not restrict your country/region, or ads that allow users from your location.Show local ads only: Prioritize ads available in the same country as your identity verification.

 

IV. Benefits

Compared with ads without country/region restrictions, this feature provides the following improvements.

Aspect

Improvement

Trading security

Reduces abnormal orders and fraud risk

Conversion efficiency

Matches ads with more relevant users

Order completion rate

Reduces failures caused by incompatible payment methods

V. FAQ

Q1: Why are some users not able to place orders on my ad?
A1: Their country or region may not be included in your allowlist.

 

Q2: Can I select multiple countries or regions when setting the restriction?
A2: Yes, multiple selections are supported.

 

Q3: Can I edit my published ads?
A3: Yes. You can edit your ad in the "My Ads" list. Changes will take effect immediately after saving.

What are the key highlights of this year's Ethereum's most important upgrade, the Glamsterdam upgrade?

The Ethereum Race Against Time, Perhaps Truly a Quest for Revival

March 6 Key Market Update You Can't Miss! | Alpha Morning Report

.Top News: Recent Developments in US-Iran Conflict, Military Action to Escalate Further, Trump Rejects Soleimani's Son Taking Over Token Unlock: $W, $RED

Sell Nvidia, Buy Power Plant: 27-Year-Old AI Investor Earns $5 Billion in One Year

The essence of investment is to find price dislocation in the future that has already arrived but is not yet evenly distributed.

Popular coins

Latest Crypto News

Read more