{"investigation":{"slug":"grinex","entity_name":"Grinex","trust_score":2,"severity_base":null,"score_modifier":0,"confidence":1,"status":"published","content_type":"investigation","summary":"Grinex is a Kyrgyzstan-registered cryptocurrency exchange widely assessed by blockchain intelligence firms and U.S. regulators as a direct successor to Garantex, a sanctioned Russian exchange seized in March 2025. Grinex was formally sanctioned by OFAC in August 2025 for facilitating billions in cryptocurrency transactions linked to ransomware groups, darknet markets, and Russian sanctions evasion. In April 2026, the exchange suspended operations following a reported $13.7 million hack it attributed to Western intelligence agencies — a claim for which no technical evidence was presented and which analysts have suggested may mask an internal exit scam.","sections":[{"content":"Grinex is a cryptocurrency exchange incorporated in Kyrgyzstan in December 2024, weeks before the March 6, 2025 multinational law enforcement action that seized the domain and froze approximately $26 million in assets belonging to Garantex, a Moscow-operating exchange originally registered in Estonia. Blockchain intelligence firm TRM Labs noted that Grinex was incorporated \"by an individual with no known history in the exchange business,\" and that domain registrations for Grinex and a related entity, Meer Exchange, both occurred on December 9, 2024 — a timing pattern that analysts assessed as synchronized infrastructure deployment in anticipation of the Garantex takedown.\n\nFollowing the Garantex disruption, Telegram channels linked to the exchange began promoting Grinex as a \"new platform with familiar functionality.\" The U.S. Department of Justice unsealed indictments on March 7, 2025 against Garantex executives Aleksandr Mira Serda and Aleksej Besciokov; Besciokov was subsequently arrested in India. OFAC sanctioned three Garantex co-founders — Sergey Mendeleev, Aleksandr Mira Serda, and Pavel Karavatsky — along with six associated companies in Russia and Kyrgyzstan.\n\nGrinex's promotional materials explicitly stated the exchange was formed in response to the sanctions and asset freezes that affected Garantex, and the platform transferred Garantex customer deposits directly to Grinex accounts using the A7A5 ruble-backed stablecoin as a bridge mechanism.","heading":"Background","sources":[{"url":"https://www.trmlabs.com/resources/blog/garantex-grinex-and-the-a7a5-token-a-deep-dive-into-sanctions-evasion-networks","name":"","type":"other","credibility":3},{"url":"https://www.bleepingcomputer.com/news/security/us-sanctions-grinex-crypto-exchange-garantexs-successor/","name":"","type":"other","credibility":3},{"url":"https://www.icij.org/news/2025/09/cryptocurrency-exchange-garantex-lives-on-despite-sanctions-new-report-unveils/","name":"","type":"other","credibility":3}],"severity":"medium"},{"content":"Grinex operated primarily as a crypto-to-ruble exchange serving Russian businesses and individuals. Its core operational role was enabling Russian entities to bypass international financial sanctions imposed following the 2022 invasion of Ukraine. The exchange was the primary trading venue for the A7A5 token, a ruble-backed stablecoin issued by Kyrgyzstani firm Old Vector — itself linked to sanctioned Moldovan oligarch Ilan Shor and sanctioned Russian bank Promsvyazbank.\n\nThe A7A5 token processed extraordinary transaction volumes: Elliptic estimated at least $1 billion per day in transfers, with cumulative aggregate value estimated between $41.2 billion (Elliptic) and over $100 billion (U.S. Treasury). Chainalysis estimated the token's cumulative volume exceeded $51 billion through July 2025. The UK government separately reported that Grinex and Old Vector moved $9.3 billion in four months of operation.\n\nOn-chain analysis by TRM Labs showed Garantex wallets began moving funds into A7A5 as early as January 2025 — weeks before the March 2025 takedown — indicating advance knowledge of impending enforcement action. Kyrgyzstan's Financial Market Regulation and Supervision Service confirmed Grinex appeared in its registry but offered limited regulatory oversight, with officials providing what Radio Free Europe described as \"deferrals and vague assurances\" when pressed about supervision.","heading":"Exchange Operations","sources":[{"url":"https://www.chainalysis.com/blog/a7a5-grinex-russian-crypto-economy-ofac-sanctions-august-2025/","name":"","type":"other","credibility":3},{"url":"https://www.trmlabs.com/resources/blog/garantex-grinex-and-the-a7a5-token-a-deep-dive-into-sanctions-evasion-networks","name":"","type":"other","credibility":3},{"url":"https://www.rferl.org/a/kyrgyzstan-grinex-crypto-currency-russia-sanctions-evasion/33470887.html","name":"","type":"other","credibility":3},{"url":"https://www.coindesk.com/policy/2025/08/14/ofac-sanctions-crypto-network-behind-ruble-backed-stablecoin-and-shuttered-exchange-garantex","name":"","type":"other","credibility":3}],"severity":"medium"},{"content":"On April 16, 2026 at approximately 12:00 UTC, Grinex announced it had suffered a cyberattack resulting in the theft of over 1 billion rubles (approximately $13.7–$15 million) in user funds. The exchange attributed the breach to \"special services\" of \"unfriendly states,\" claiming attackers possessed \"an unprecedented level of resources and technology, accessible only to entities of hostile states.\"\n\nBlockchain analysts at Elliptic, Chainalysis, and TRM Labs investigated the on-chain evidence and raised significant questions about this attribution. The exfiltrated funds consisted primarily of fiat-backed stablecoins (USDT) that were rapidly converted to Tron (TRX) and Ethereum (ETH) using the SunSwap decentralized exchange protocol — the same DEX previously used by Garantex to gas-fund its hot wallets. TRM Labs identified approximately 70 attacker addresses and discovered a simultaneous hack at TokenSpot, another Kyrgyzstan-based exchange, suggesting a coordinated operation.\n\nChainalysis noted that Western law enforcement agencies typically freeze centralized stablecoins rather than swapping them into more decentralized assets — a behavior that is instead a \"hallmark tactic of cybercriminals and illicit actors attempting to launder funds before a centralized freeze can be executed.\" Elliptic's analysis similarly flagged that funds were converted to assets resistant to centralized freezing.\n\nFintelegram.com alleged the incident was an internal exit scam, characterizing Grinex as a \"Russian Crypto Laundromat\" faking a Western hack. TRM Labs, by contrast, assessed that the relatively low total value drained and the indiscriminate targeting of both large and small wallets across multiple platforms made an external cyber operation \"more likely\" than an exit scam. Neither Grinex's announcement nor reports from Elliptic or TRM Labs identified a specific perpetrator. As of the shutdown announcement, converted TRX funds remained on a single address awaiting downstream movement.","heading":"Security History","sources":[{"url":"https://www.bleepingcomputer.com/news/security/grinex-exchange-blames-western-intelligence-for-137m-crypto-hack/","name":"","type":"other","credibility":3},{"url":"https://www.chainalysis.com/blog/sanctioned-grinex-exchange-suspends-operations/","name":"","type":"other","credibility":3},{"url":"https://www.elliptic.co/blog/sanctioned-russia-linked-crypto-exchange-grinex-halts-operations-following-alleged-hack","name":"","type":"other","credibility":3},{"url":"https://www.trmlabs.com/resources/blog/sanctioned-russian-exchange-grinex-and-kyrgyzstani-exchange-tokenspot-hit-in-usd-15-million-theft","name":"","type":"other","credibility":3},{"url":"https://thehackernews.com/2026/04/1374m-hack-shuts-down-sanctioned-grinex.html","name":"","type":"other","credibility":3},{"url":"https://fintelegram.com/shutdown-sham-russian-crypto-laundromat-grinex-fakes-western-hack-to-mask-15-million-inside-job/","name":"","type":"other","credibility":3}],"severity":"medium"},{"content":"Grinex is subject to sanctions from multiple jurisdictions, making it one of the most heavily sanctioned cryptocurrency exchanges currently known.\n\n**United States:** On August 14, 2025, OFAC formally designated Grinex as a Specially Designated National (SDN), blocking all U.S.-based property of the exchange and prohibiting U.S. persons from transacting with it. The Federal Register published notice of the action on August 18, 2025. The designation explicitly identified Grinex as a platform created by Garantex employees to continue sanctions evasion. The action extended secondary sanctions risk to non-U.S. financial institutions maintaining dealings with the network.\n\n**United Kingdom:** The UK's Office of Financial Sanctions Implementation (OFSI) sanctioned Grinex on August 20, 2025, six days after the OFAC action.\n\n**European Union:** The European Commission included Grinex in its 19th package of Russia sanctions on October 23, 2025, and subsequent EU sanctions packages targeted the broader architecture of crypto sanctions evasion, including entities connected to Grinex.\n\n**Predecessor sanctions:** Garantex was originally sanctioned by OFAC in April 2022 for processing over $100 million in illicit transactions, including ransomware payments from Conti, LockBit, and Ryuk, as well as darknet market flows from Hydra Marketplace. Garantex was responsible for more than 70% of cryptocurrency volumes to and from sanctioned entities at its peak.\n\n**Kyrgyzstan:** Grinex was registered in Kyrgyzstan, which licensed 126 virtual asset providers by October 2024 under a lightly-enforced regulatory framework. Kyrgyz authorities confirmed Grinex appeared in the national registry but provided minimal active oversight. The U.S. Department of State offered rewards of up to $5 million for information leading to the arrest of Garantex co-founder Aleksandr Mira Serda, and up to $1 million for other key leaders.","heading":"Regulatory Status","sources":[{"url":"https://home.treasury.gov/news/press-releases/sb0225","name":"","type":"other","credibility":3},{"url":"https://www.federalregister.gov/documents/2025/08/18/2025-15668/notice-of-ofac-sanctions-action","name":"","type":"other","credibility":3},{"url":"https://www.opensanctions.org/entities/ofac-55045/","name":"","type":"other","credibility":3},{"url":"https://www.opensanctions.org/entities/NK-nCCRCEZeb4t4Rz8QxUji3C/","name":"","type":"other","credibility":3},{"url":"https://thehackernews.com/2025/08/us-sanctions-garantex-and-grinex-over.html","name":"","type":"other","credibility":3},{"url":"https://www.elliptic.co/blog/eu-20th-sanctions-package-targets-the-architecture-of-crypto-sanctions-evasion","name":"","type":"other","credibility":3},{"url":"https://cyberscoop.com/garantex-grinex-russian-crypto-exchange-sanctions/","name":"","type":"other","credibility":3}],"severity":"medium"},{"content":"Following the April 16, 2026 shutdown, Grinex users reported an inability to access or withdraw their funds. The exchange suspended all operations after announcing the alleged hack, leaving an estimated 1 billion rubles (approximately $13.7 million) in user deposits unrecoverable at the time of reporting.\n\nGrinex's user base was inherited directly from Garantex: following the March 2025 seizure of Garantex, affected customers were migrated to Grinex via the A7A5 token mechanism, with former Garantex customers receiving A7A5 credits equivalent to their blocked balances. This means users who had already experienced one exchange seizure were subjected to a second fund loss event.\n\nNo verified class-action filings or organized user recovery efforts had been publicly reported as of the investigation date. The exchange's Telegram channel served as the primary communication channel with users, consistent with the operational pattern used by Garantex.\n\nGiven Grinex's status as a fully sanctioned entity, users who interacted with the exchange after August 14, 2025 may face secondary sanctions exposure depending on their jurisdiction. U.S. persons transacting with Grinex after the OFAC designation date were in potential violation of U.S. sanctions law.","heading":"User Reports","sources":[{"url":"https://www.coindesk.com/business/2026/04/17/russia-linked-grinex-exchange-halts-operations-after-usd13-million-state-backed-hack","name":"","type":"other","credibility":3},{"url":"https://hackread.com/grinex-crypto-exchange-shuts-down-west-agency-breach/","name":"","type":"other","credibility":3},{"url":"https://www.infosecurity-magazine.com/news/crypto-exchange-grinex-western/","name":"","type":"other","credibility":3}],"severity":"medium"},{"content":"Grinex presents the highest possible risk profile for any cryptocurrency exchange user or counterparty. The entity is designated as a Specially Designated National by OFAC, sanctioned by the United Kingdom, and listed in multiple EU Russia sanctions packages. Transacting with Grinex after August 14, 2025 creates direct legal exposure for U.S. persons and secondary sanctions risk for non-U.S. financial institutions.\n\nThe exchange was explicitly designed as a sanctions evasion vehicle, incorporating the operational infrastructure, user base, and liquidity mechanisms of its predecessor Garantex — itself sanctioned for processing ransomware proceeds from Conti, LockBit, and Ryuk, and darknet market flows from Hydra. The A7A5 stablecoin associated with Grinex processed an estimated $41–100 billion in transactions, primarily facilitating Russian financial sovereignty outside international banking channels.\n\nThe April 2026 shutdown, whether the result of an external hack or an internal exit scam, resulted in the total loss of approximately $13.7–$15 million in user funds with no credible recovery pathway. The exchange's unverified attribution of the breach to Western intelligence services, the rapid conversion of stolen stablecoins to non-freezable TRX using infrastructure previously associated with Garantex, and the prior pattern of Russian-linked exchanges fabricating external hacks to cover insider fund movements all constitute significant red flags.\n\nNo legitimate exchange operator, institutional counterparty, or retail user should engage with Grinex or any entity directly derived from its operations. The combination of active multilateral sanctions, criminal indictments of associated executives, documented illicit transaction processing, and unresolved fund loss creates an extreme risk profile across all relevant dimensions.","heading":"Risk Assessment","sources":[{"url":"https://www.chainalysis.com/blog/sanctioned-grinex-exchange-suspends-operations/","name":"","type":"other","credibility":3},{"url":"https://www.elliptic.co/blog/sanctioned-russia-linked-crypto-exchange-grinex-halts-operations-following-alleged-hack","name":"","type":"other","credibility":3},{"url":"https://home.treasury.gov/news/press-releases/sb0225","name":"","type":"other","credibility":3},{"url":"https://www.trmlabs.com/resources/blog/garantex-grinex-and-the-a7a5-token-a-deep-dive-into-sanctions-evasion-networks","name":"","type":"other","credibility":3}],"severity":"medium"}],"timeline":[{"date":"2022-04-05","event":"OFAC sanctions Garantex for processing over $100 million in illicit transactions, including ransomware payments from Conti, LockBit, and Ryuk, and Hydra darknet market flows.","source":""},{"date":"2024-12-09","event":"Grinex and Meer Exchange domain registrations both occur on the same date, suggesting synchronized infrastructure deployment in anticipation of enforcement action against Garantex.","source":""},{"date":"2025","event":"On-chain analysis later reveals Garantex wallets began moving funds into A7A5 stablecoin as early as January 2025 — weeks before the Garantex takedown.","source":"","date_original":"2025-01-01"},{"date":"2025-03-06","event":"Multinational law enforcement action led by the U.S. Secret Service seizes Garantex domains and freezes approximately $26 million in cryptocurrency.","source":""},{"date":"2025-03-07","event":"DOJ unseals indictments against Garantex executives Aleksandr Mira Serda and Aleksej Besciokov. Besciokov is subsequently arrested in India.","source":""},{"date":"2025-03-07","event":"Garantex Telegram channels begin promoting Grinex as a 'new platform with familiar functionality,' transferring Garantex customer deposits to Grinex via the A7A5 stablecoin mechanism.","source":""},{"date":"2025-08-14","event":"OFAC formally designates Grinex as an SDN, along with Garantex co-founders Sergey Mendeleev, Aleksandr Mira Serda, and Pavel Karavatsky, and six associated companies. The A7A5 stablecoin network is also sanctioned.","source":""},{"date":"2025-08-20","event":"UK Office of Financial Sanctions Implementation (OFSI) sanctions Grinex.","source":""},{"date":"2025-09","event":"ICIJ publishes investigation confirming Garantex/Grinex operational continuity despite international sanctions.","source":"","date_original":"2025-09-01"},{"date":"2025-10-23","event":"European Commission includes Grinex in its 19th package of Russia sanctions.","source":""},{"date":"2026-04-16","event":"Grinex announces a cyberattack resulting in the theft of over 1 billion rubles (approximately $13.7–$15 million) in user funds, attributing the breach to Western intelligence agencies.","source":""},{"date":"2026-04-16","event":"Grinex suspends all operations. On-chain analysts at Chainalysis, Elliptic, and TRM Labs track stolen USDT being converted to TRX and ETH via SunSwap DEX. TRM Labs identifies a simultaneous hack at TokenSpot exchange.","source":""},{"date":"2026-04-17","event":"Blockchain analysts publish findings raising questions about whether the breach was an external hack or an internal exit scam, noting that fund movement patterns resemble criminal laundering rather than state-actor behavior.","source":""}],"sources_used":[{"url":"https://www.trmlabs.com/resources/blog/garantex-grinex-and-the-a7a5-token-a-deep-dive-into-sanctions-evasion-networks","name":"","type":"other","archive_url":"http://web.archive.org/web/20260601163255/https://www.trmlabs.com/resources/blog/garantex-grinex-and-the-a7a5-token-a-deep-dive-into-sanctions-evasion-networks","credibility":3,"archive_timestamp":"2026-06-01T16:32:55+00:00"},{"url":"https://www.bleepingcomputer.com/news/security/us-sanctions-grinex-crypto-exchange-garantexs-successor/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260417151720/https://www.bleepingcomputer.com/news/security/us-sanctions-grinex-crypto-exchange-garantexs-successor/","credibility":3,"archive_timestamp":"2026-04-17T15:17:20+00:00"},{"url":"https://www.icij.org/news/2025/09/cryptocurrency-exchange-garantex-lives-on-despite-sanctions-new-report-unveils/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260121163221/https://www.icij.org/news/2025/09/cryptocurrency-exchange-garantex-lives-on-despite-sanctions-new-report-unveils/","credibility":3,"archive_timestamp":"2026-01-21T16:32:21+00:00"},{"url":"https://www.chainalysis.com/blog/a7a5-grinex-russian-crypto-economy-ofac-sanctions-august-2025/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260811064640/https://www.chainalysis.com/blog/a7a5-grinex-russian-crypto-economy-ofac-sanctions-august-2025/","credibility":3,"archive_timestamp":"2026-08-11T06:46:40+00:00"},{"url":"https://www.rferl.org/a/kyrgyzstan-grinex-crypto-currency-russia-sanctions-evasion/33470887.html","name":"","type":"other","archive_url":"http://web.archive.org/web/20260724074040/https://www.rferl.org/a/kyrgyzstan-grinex-crypto-currency-russia-sanctions-evasion/33470887.html","credibility":3,"archive_timestamp":"2026-07-24T07:40:40+00:00"},{"url":"https://www.coindesk.com/policy/2025/08/14/ofac-sanctions-crypto-network-behind-ruble-backed-stablecoin-and-shuttered-exchange-garantex","name":"","type":"other","archive_url":"http://web.archive.org/web/20260311191004/https://www.coindesk.com/policy/2025/08/14/ofac-sanctions-crypto-network-behind-ruble-backed-stablecoin-and-shuttered-exchange-garantex","credibility":3,"archive_timestamp":"2026-03-11T19:10:04+00:00"},{"url":"https://www.bleepingcomputer.com/news/security/grinex-exchange-blames-western-intelligence-for-137m-crypto-hack/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260616121044/https://www.bleepingcomputer.com/news/security/grinex-exchange-blames-western-intelligence-for-137m-crypto-hack/","credibility":3,"archive_timestamp":"2026-06-16T12:10:44+00:00"},{"url":"https://www.chainalysis.com/blog/sanctioned-grinex-exchange-suspends-operations/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260609061724/https://www.chainalysis.com/blog/sanctioned-grinex-exchange-suspends-operations/","credibility":3,"archive_timestamp":"2026-06-09T06:17:24+00:00"},{"url":"https://www.elliptic.co/blog/sanctioned-russia-linked-crypto-exchange-grinex-halts-operations-following-alleged-hack","name":"","type":"other","archive_url":"http://web.archive.org/web/20260723141304/https://www.elliptic.co/blog/sanctioned-russia-linked-crypto-exchange-grinex-halts-operations-following-alleged-hack","credibility":3,"archive_timestamp":"2026-07-23T14:13:04+00:00"},{"url":"https://www.trmlabs.com/resources/blog/sanctioned-russian-exchange-grinex-and-kyrgyzstani-exchange-tokenspot-hit-in-usd-15-million-theft","name":"","type":"other","archive_url":"http://web.archive.org/web/20260722130918/https://www.trmlabs.com/resources/blog/sanctioned-russian-exchange-grinex-and-kyrgyzstani-exchange-tokenspot-hit-in-usd-15-million-theft","credibility":3,"archive_timestamp":"2026-07-22T13:09:18+00:00"},{"url":"https://thehackernews.com/2026/04/1374m-hack-shuts-down-sanctioned-grinex.html","name":"","type":"other","archive_url":"http://web.archive.org/web/20260819065602/https://thehackernews.com/2026/04/1374m-hack-shuts-down-sanctioned-grinex.html","credibility":3,"archive_timestamp":"2026-08-19T06:56:02+00:00"},{"url":"https://fintelegram.com/shutdown-sham-russian-crypto-laundromat-grinex-fakes-western-hack-to-mask-15-million-inside-job/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260511145231/https://fintelegram.com/shutdown-sham-russian-crypto-laundromat-grinex-fakes-western-hack-to-mask-15-million-inside-job/","credibility":3,"archive_timestamp":"2026-05-11T14:52:31+00:00"},{"url":"https://home.treasury.gov/news/press-releases/sb0225","name":"","type":"other","archive_url":"http://web.archive.org/web/20260816005307/https://home.treasury.gov/news/press-releases/sb0225","credibility":3,"archive_timestamp":"2026-08-16T00:53:07+00:00"},{"url":"https://www.federalregister.gov/documents/2025/08/18/2025-15668/notice-of-ofac-sanctions-action","name":"","type":"other","archive_url":"https://web.archive.org/web/20260829050032/https://unblock.federalregister.gov/","credibility":3,"archive_timestamp":"2026-08-29T05:00:32+00:00"},{"url":"https://www.opensanctions.org/entities/ofac-55045/","name":"","type":"other","archive_url":"https://web.archive.org/web/20260829091124/https://www.opensanctions.org/entities/NK-nCCRCEZeb4t4Rz8QxUji3C/","credibility":3,"archive_timestamp":"2026-08-29T09:11:24+00:00"},{"url":"https://www.opensanctions.org/entities/NK-nCCRCEZeb4t4Rz8QxUji3C/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260219122817/https://www.opensanctions.org/entities/NK-nCCRCEZeb4t4Rz8QxUji3C/","credibility":3,"archive_timestamp":"2026-02-19T12:28:17+00:00"},{"url":"https://thehackernews.com/2025/08/us-sanctions-garantex-and-grinex-over.html","name":"","type":"other","archive_url":"http://web.archive.org/web/20260821105348/https://thehackernews.com/2025/08/us-sanctions-garantex-and-grinex-over.html","credibility":3,"archive_timestamp":"2026-08-21T10:53:48+00:00"},{"url":"https://www.elliptic.co/blog/eu-20th-sanctions-package-targets-the-architecture-of-crypto-sanctions-evasion","name":"","type":"other","archive_url":"http://web.archive.org/web/20260729040743/https://www.elliptic.co/blog/eu-20th-sanctions-package-targets-the-architecture-of-crypto-sanctions-evasion","credibility":3,"archive_timestamp":"2026-07-29T04:07:43+00:00"},{"url":"https://cyberscoop.com/garantex-grinex-russian-crypto-exchange-sanctions/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260419050449/https://cyberscoop.com/garantex-grinex-russian-crypto-exchange-sanctions/","credibility":3,"archive_timestamp":"2026-04-19T05:04:49+00:00"},{"url":"https://www.coindesk.com/business/2026/04/17/russia-linked-grinex-exchange-halts-operations-after-usd13-million-state-backed-hack","name":"","type":"other","archive_url":"http://web.archive.org/web/20260526223644/https://www.coindesk.com/business/2026/04/17/russia-linked-grinex-exchange-halts-operations-after-usd13-million-state-backed-hack","credibility":3,"archive_timestamp":"2026-05-26T22:36:44+00:00"},{"url":"https://hackread.com/grinex-crypto-exchange-shuts-down-west-agency-breach/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260508123016/https://hackread.com/grinex-crypto-exchange-shuts-down-west-agency-breach/","credibility":3,"archive_timestamp":"2026-05-08T12:30:16+00:00"},{"url":"https://www.infosecurity-magazine.com/news/crypto-exchange-grinex-western/","name":"","type":"other","archive_url":"http://web.archive.org/web/20260510142352/https://www.infosecurity-magazine.com/news/crypto-exchange-grinex-western/","credibility":3,"archive_timestamp":"2026-05-10T14:23:52+00:00"}],"source_tags":["defillama"],"addresses":[],"reviewed":false,"reviewed_by":null,"model_used":"claude-sonnet-4-6","created_at":"2026-05-04T02:54:17.206294+00:00","updated_at":"2026-08-29T09:21:01.560709+00:00"}}