A new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving UA new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving U

ZachXBT Alleges $40 Million Crypto Theft From U.S. Government Wallets

2026/01/26 00:57
5 min read

A new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving U.S. government-controlled wallets.

According to the findings, an individual identified as John Daghita is accused of siphoning over $40 million in various cryptocurrencies from digital wallets managed on behalf of the U.S. government. These wallets reportedly held seized assets tied to criminal investigations, funds meant to be securely stored under federal custody.

ZachXBT’s on-chain tracing reveals that the assets were not taken in a single transaction but drained gradually over several months, suggesting deliberate planning rather than a technical exploit. The stolen crypto was then routed through decentralized protocols and privacy mixers in anju apparent effort to conceal the money trail.

The full investigation was publicly detailed by ZachXBT in a thread shared here:

The revelations are now fueling serious concerns about how seized digital assets are being managed and protected by government contractors.

Family Connection Raises Insider Access Concerns

What makes the case especially alarming is the alleged family link to the firm responsible for safeguarding the seized funds.

ZachXBT reports that John Daghita is the son of the CEO of Cyber Management & Digital Security Services (CMDSS), a cybersecurity company that recently secured a federal contract involving digital asset custody.

CMDSS is not a peripheral service provider. The firm plays a direct role in managing and securing cryptocurrencies confiscated by U.S. authorities during criminal seizures. This places the company in control of wallets holding millions of dollars across multiple blockchains.

The relationship has sparked widespread concern that the alleged theft may not have resulted from hacking in the traditional sense, but rather from insider access, one of the most difficult security risks to prevent.

While no official confirmation has yet emerged from federal agencies, the connection alone has intensified calls for greater oversight in government crypto custody.

Federal Contract Put CMDSS At The Center Of Asset Custody

CMDSS was awarded a high-profile contract to assist the U.S. Marshals Service (USMS) in managing and disposing of seized and forfeited crypto assets.

The responsibilities reportedly include:

• Securing government-controlled wallets

• Managing transfers and liquidations

• Handling custody infrastructure

• Supporting digital asset forfeiture processes

In effect, CMDSS acts as a technical custodian for cryptocurrency confiscated during law enforcement operations.

These wallets may contain assets recovered from major hacks, fraud schemes, darknet marketplaces, and ransomware cases, making them highly sensitive targets.

The scale of funds under custody means even a small breach could lead to massive losses, placing extraordinary trust in the systems and personnel controlling access.

Alleged Systematic Draining And Laundering Operation

According to ZachXBT’s blockchain analysis, the theft unfolded slowly rather than through a sudden exploit.

The funds were allegedly:

• Removed in stages across months

• Moved through decentralized exchanges

• Routed via cross-chain bridges

• Laundered using privacy mixers and protocols

This pattern is consistent with techniques used by sophisticated threat actors to reduce traceability and avoid triggering automated monitoring systems.

ZachXBT claims transaction flows directly connect government seizure wallets to addresses controlled by Daghita, forming a consistent and traceable pattern of unauthorized withdrawals.

The gradual nature of the transfers suggests a calculated operation rather than an accidental exposure of private keys.

Unclear How Access Was Obtained

One of the most critical unanswered questions remains how John Daghita gained control over wallets holding government assets.

What is currently known:

• His father owns CMDSS

• CMDSS holds an active government IT contract in Virginia

• The company assists in managing seized crypto for the USMS

What remains unclear:

• Whether access was granted intentionally

• Whether internal security protocols failed

• Whether credentials were shared or compromised

• Whether proper multi-signature systems were in place

So far, no public explanation has been issued by CMDSS or U.S. authorities.

This lack of clarity has only intensified scrutiny around contractor oversight and internal security practices.

A Wake-Up Call For Government Crypto Security

If confirmed, the incident would represent one of the largest alleged insider crypto thefts tied to government-held funds.

It also highlights a growing challenge as law enforcement agencies accumulate massive crypto reserves through seizures.

Unlike traditional bank assets, cryptocurrencies rely entirely on private key security. Anyone with access can move funds instantly, with no central authority able to reverse transactions.

As governments increasingly outsource custody to private firms, risks expand to include:

• Insider abuse

• Weak access controls

• Poor audit systems

• Lack of real-time monitoring

• Human security failures

The case may push agencies to accelerate adoption of:

• Multi-signature custody wallets

• Segmented access permissions

• Independent security audits

• Continuous on-chain surveillance

For the crypto industry, it reinforces a long-standing reality: custody remains the weakest link in digital finance.

Even the most secure blockchain becomes vulnerable when access control breaks down.

As investigations continue, this case could become a turning point for how seized digital assets are managed worldwide, forcing tighter controls, greater transparency, and stronger accountability across both government agencies and private contractors.

For now, the blockchain evidence uncovered by ZachXBT has already sparked a serious conversation about insider risk in the era of government crypto custody, one likely to shape policy long after the dust settles.

Disclosure: This is not trading or investment advice. Always do your research before buying any cryptocurrency or investing in any services.

Follow us on Twitter @nulltxnews to stay updated with the latest Crypto, NFT, AI, Cybersecurity, Distributed Computing, and Metaverse news!

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference

Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference

The post Ethereum unveils roadmap focusing on scaling, interoperability, and security at Japan Dev Conference appeared on BitcoinEthereumNews.com. Key Takeaways Ethereum’s new roadmap was presented by Vitalik Buterin at the Japan Dev Conference. Short-term priorities include Layer 1 scaling and raising gas limits to enhance transaction throughput. Vitalik Buterin presented Ethereum’s development roadmap at the Japan Dev Conference today, outlining the blockchain platform’s priorities across multiple timeframes. The short-term goals focus on scaling solutions and increasing Layer 1 gas limits to improve transaction capacity. Mid-term objectives target enhanced cross-Layer 2 interoperability and faster network responsiveness to create a more seamless user experience across different scaling solutions. The long-term vision emphasizes building a secure, simple, quantum-resistant, and formally verified minimalist Ethereum network. This approach aims to future-proof the platform against emerging technological threats while maintaining its core functionality. The roadmap presentation comes as Ethereum continues to compete with other blockchain platforms for market share in the smart contract and decentralized application space. Source: https://cryptobriefing.com/ethereum-roadmap-scaling-interoperability-security-japan/
Share
BitcoinEthereumNews2025/09/18 00:25
Here’s How Consumers May Benefit From Lower Interest Rates

Here’s How Consumers May Benefit From Lower Interest Rates

The post Here’s How Consumers May Benefit From Lower Interest Rates appeared on BitcoinEthereumNews.com. Topline The Federal Reserve on Wednesday opted to ease interest rates for the first time in months, leading the way for potentially lower mortgage rates, bond yields and a likely boost to cryptocurrency over the coming weeks. Average long-term mortgage rates dropped to their lowest levels in months ahead of the central bank’s policy shift. Copyright{2018} The Associated Press. All rights reserved. Key Facts The central bank’s policymaking panel voted this week to lower interest rates, which have sat between 4.25% and 4.5% since December, to a new range of 4% and 4.25%. How Will Lower Interest Rates Impact Mortgage Rates? Mortgage rates tend to fall before and during a period of interest rate cuts: The average 30-year fixed-rate mortgage dropped to 6.35% from 6.5% last week, the lowest level since October 2024, mortgage buyer Freddie Mac reported. Borrowing costs on 15-year fixed-rate mortgages also dropped to 5.5% from 5.6% as they neared the year-ago rate of 5.27%. When the Federal Reserve lowered the funds rate to between 0% and 0.25% during the pandemic, 30-year mortgage rates hit record lows between 2.7% and 3% by the end of 2020, according to data published by Freddie Mac. Consumers who refinanced their mortgages in 2020 saved about $5.3 billion annually as rates dropped, according to the Consumer Financial Protection Bureau. Similarly, mortgage rates spiked around 7% as interest rates were hiked in 2022 and 2023, though mortgage rates appeared to react within weeks of the Fed opting to cut or raise rates. How Do Treasury Bonds Respond To Lower Interest Rates? Long-term Treasury yields are more directly influenced by interest rates, as lower rates tend to result in lower yields. When the Fed pushed rates to near zero during the pandemic, 10-year Treasury yields fell to an all-time low of 0.5%. As…
Share
BitcoinEthereumNews2025/09/18 05:59
The Giants Are Stumbling: Why BlockDAG’s 20-Exchange Launch is the Market’s New Safe Haven

The Giants Are Stumbling: Why BlockDAG’s 20-Exchange Launch is the Market’s New Safe Haven

The cryptocurrency market seems to have caught headwinds entering February. Portfolios across the globe are flashing red as the flash crash of February 2nd wreaks
Share
Captainaltcoin2026/02/04 02:30