top of page

Crypto Crackdown: $28M Seized in Swiss Cryptomixer Takedown

  • Dec 1, 2025
  • 2 min read

Key Findings


  • Authorities seized the Cryptomixer cryptocurrency mixing service, seizing $28 million in Bitcoin and disrupting a platform used by cybercriminals to launder over $1.5 billion since 2016.

  • The operation, part of "Operation Olympia," involved coordinated efforts by Europol, Eurojust, and law enforcement agencies from Germany and Switzerland.

  • Cryptomixer, accessible on the clear and dark web, used pooling and randomized withdrawal methods to obscure the origins of funds, enabling its use in various crimes including ransomware, payment card fraud, and drugs/weapons trafficking.


Background


  • Cryptomixer was a cryptocurrency mixing service that had been in operation since 2016, allowing users to obfuscate the origin of their digital assets.

  • The service processed over €1.3 billion ($1.5 billion) in Bitcoin transactions, serving as a platform of choice for cybercriminals to launder funds from illicit activities.

  • Cryptomixer used techniques like pooling deposits and randomizing withdrawal times to conceal the trail of transactions, making it difficult for law enforcement to trace the sources of funds.


Takedown Operation


  • The weeklong operation, coordinated under "Operation Olympia," resulted in the seizure of three servers, the cryptomixer.io domain, its clear web and Tor gateways, and over 12 terabytes of data.

  • Authorities also confiscated nearly $28 million in Bitcoin from the service's infrastructure.

  • The shutdown was carried out by a joint task force involving Europol, Eurojust, the German Federal Criminal Police Office, the Frankfurt Cyber Crime Centre, and Swiss law enforcement agencies including the Zurich City Police and Zurich Cantonal Police.


Significance and Impact


  • Cryptomixer was a major player in the cryptocurrency mixing landscape, facilitating over $1.5 billion in money laundering for various cybercriminal groups and activities.

  • The takedown disrupts a crucial tool used by threat actors to obscure the origins of illicit funds, potentially impacting the operations of ransomware groups, payment card fraud networks, and other criminal organizations.

  • The seizure of Cryptomixer's servers and data provides investigators with valuable information that could lead to further arrests and disruptions of related criminal activities.

  • The action follows previous law enforcement efforts against other prominent mixing services, highlighting the sustained global crackdown on platforms that enable cryptocurrency-based money laundering.


Sources


  • https://cyberscoop.com/cryptomixer-takedown-seizure-europol/

  • https://hackread.com/cryptomixer-domains-infrastructure-bitcoin-seized/

Recent Posts

See All
Defeating AI with AI

Key Findings Generative AI and agentic AI are increasingly used by threat actors to conduct faster and more targeted attacks. One capability that AI improves for threat actors is the ability to profil

 
 
 

Comments


  • Youtube

© 2025 by Explain IT Again. Powered and secured by Wix

bottom of page