A new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving UA new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving U

ZachXBT Alleges $40 Million Crypto Theft From U.S. Government Wallets

2026/01/26 00:57
5 min read

A new investigation by prominent on-chain analyst ZachXBT has exposed what could be one of the most serious insider-related crypto security breaches involving U.S. government-controlled wallets.

According to the findings, an individual identified as John Daghita is accused of siphoning over $40 million in various cryptocurrencies from digital wallets managed on behalf of the U.S. government. These wallets reportedly held seized assets tied to criminal investigations, funds meant to be securely stored under federal custody.

ZachXBT’s on-chain tracing reveals that the assets were not taken in a single transaction but drained gradually over several months, suggesting deliberate planning rather than a technical exploit. The stolen crypto was then routed through decentralized protocols and privacy mixers in anju apparent effort to conceal the money trail.

The full investigation was publicly detailed by ZachXBT in a thread shared here:

The revelations are now fueling serious concerns about how seized digital assets are being managed and protected by government contractors.

Family Connection Raises Insider Access Concerns

What makes the case especially alarming is the alleged family link to the firm responsible for safeguarding the seized funds.

ZachXBT reports that John Daghita is the son of the CEO of Cyber Management & Digital Security Services (CMDSS), a cybersecurity company that recently secured a federal contract involving digital asset custody.

CMDSS is not a peripheral service provider. The firm plays a direct role in managing and securing cryptocurrencies confiscated by U.S. authorities during criminal seizures. This places the company in control of wallets holding millions of dollars across multiple blockchains.

The relationship has sparked widespread concern that the alleged theft may not have resulted from hacking in the traditional sense, but rather from insider access, one of the most difficult security risks to prevent.

While no official confirmation has yet emerged from federal agencies, the connection alone has intensified calls for greater oversight in government crypto custody.

Federal Contract Put CMDSS At The Center Of Asset Custody

CMDSS was awarded a high-profile contract to assist the U.S. Marshals Service (USMS) in managing and disposing of seized and forfeited crypto assets.

The responsibilities reportedly include:

• Securing government-controlled wallets

• Managing transfers and liquidations

• Handling custody infrastructure

• Supporting digital asset forfeiture processes

In effect, CMDSS acts as a technical custodian for cryptocurrency confiscated during law enforcement operations.

These wallets may contain assets recovered from major hacks, fraud schemes, darknet marketplaces, and ransomware cases, making them highly sensitive targets.

The scale of funds under custody means even a small breach could lead to massive losses, placing extraordinary trust in the systems and personnel controlling access.

Alleged Systematic Draining And Laundering Operation

According to ZachXBT’s blockchain analysis, the theft unfolded slowly rather than through a sudden exploit.

The funds were allegedly:

• Removed in stages across months

• Moved through decentralized exchanges

• Routed via cross-chain bridges

• Laundered using privacy mixers and protocols

This pattern is consistent with techniques used by sophisticated threat actors to reduce traceability and avoid triggering automated monitoring systems.

ZachXBT claims transaction flows directly connect government seizure wallets to addresses controlled by Daghita, forming a consistent and traceable pattern of unauthorized withdrawals.

The gradual nature of the transfers suggests a calculated operation rather than an accidental exposure of private keys.

Unclear How Access Was Obtained

One of the most critical unanswered questions remains how John Daghita gained control over wallets holding government assets.

What is currently known:

• His father owns CMDSS

• CMDSS holds an active government IT contract in Virginia

• The company assists in managing seized crypto for the USMS

What remains unclear:

• Whether access was granted intentionally

• Whether internal security protocols failed

• Whether credentials were shared or compromised

• Whether proper multi-signature systems were in place

So far, no public explanation has been issued by CMDSS or U.S. authorities.

This lack of clarity has only intensified scrutiny around contractor oversight and internal security practices.

A Wake-Up Call For Government Crypto Security

If confirmed, the incident would represent one of the largest alleged insider crypto thefts tied to government-held funds.

It also highlights a growing challenge as law enforcement agencies accumulate massive crypto reserves through seizures.

Unlike traditional bank assets, cryptocurrencies rely entirely on private key security. Anyone with access can move funds instantly, with no central authority able to reverse transactions.

As governments increasingly outsource custody to private firms, risks expand to include:

• Insider abuse

• Weak access controls

• Poor audit systems

• Lack of real-time monitoring

• Human security failures

The case may push agencies to accelerate adoption of:

• Multi-signature custody wallets

• Segmented access permissions

• Independent security audits

• Continuous on-chain surveillance

For the crypto industry, it reinforces a long-standing reality: custody remains the weakest link in digital finance.

Even the most secure blockchain becomes vulnerable when access control breaks down.

As investigations continue, this case could become a turning point for how seized digital assets are managed worldwide, forcing tighter controls, greater transparency, and stronger accountability across both government agencies and private contractors.

For now, the blockchain evidence uncovered by ZachXBT has already sparked a serious conversation about insider risk in the era of government crypto custody, one likely to shape policy long after the dust settles.

Disclosure: This is not trading or investment advice. Always do your research before buying any cryptocurrency or investing in any services.

Follow us on Twitter @nulltxnews to stay updated with the latest Crypto, NFT, AI, Cybersecurity, Distributed Computing, and Metaverse news!

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Trump foe devises plan to starve him of what he 'craves' most

Trump foe devises plan to starve him of what he 'craves' most

A longtime adversary of President Donald Trump has a plan for a key group to take away what Trump craves the most — attention. EX-CNN journalist Jim Acosta, who
Share
Rawstory2026/02/04 01:19
Why Bitcoin Is Struggling: 8 Factors Impacting Crypto Markets

Why Bitcoin Is Struggling: 8 Factors Impacting Crypto Markets

Failed blockchain adoption narratives and weak fee capture have undercut confidence in major crypto projects.
Share
CryptoPotato2026/02/04 01:05
GBP trades firmly against US Dollar

GBP trades firmly against US Dollar

The post GBP trades firmly against US Dollar appeared on BitcoinEthereumNews.com. Pound Sterling trades firmly against US Dollar ahead of Fed’s policy outcome The Pound Sterling (GBP) clings to Tuesday’s gains near 1.3640 against the US Dollar (USD) during the European trading session on Wednesday. The GBP/USD pair holds onto gains as the US Dollar remains on the back foot amid firm expectations that the Federal Reserve (Fed) will cut interest rates in the monetary policy announcement at 18:00 GMT. At the time of writing, the US Dollar Index (DXY), which tracks the Greenback’s value against six major currencies, holds onto losses near a fresh two-month low of 96.60 posted on Tuesday. Read more… UK inflation unchanged at 3.8%, Pound shrugs The British pound is unchanged on Wednesday, trading at 1.3645 in the European session. Today’s inflation report was a dour reminder that UK inflation remains entrenched. CPI for August was unchanged at 3.8% y/y, matching the consensus and its highest level since January 2024. Airfares decreased but this was offset by food and petrol prices. Monthly, CPI rose 0.3%, up from 0.1% in July and matching the consensus. Core CPI, which excludes volatile items such as food and energy, eased to 3.6% from 3.8%. Monthly, core CPI ticked up to 0.3% from 0.2%. The inflation report comes just a day before the Bank of England announces its rate decision. Inflation is almost double the BoE’s target of 2% and today’s release likely means that the BoE will not reduce rates before 2026. Read more… Source: https://www.fxstreet.com/news/pound-sterling-price-news-and-forecast-gbp-trades-firmly-against-us-dollar-ahead-of-feds-policy-outcome-202509171209
Share
BitcoinEthereumNews2025/09/18 01:50