← WazirX (India)6 decisions on this page
Audit log
Every state-changing event for WazirX (India): moderation decisions on community submissions, plus corrections and updates from the news pipeline. URL-based decisions are designed to carry three independent witnesses — the original source, an Internet Archive snapshot, and a Solana memo signed by our publicly-disclosed publisher key. Archive coverage is still being backfilled, so each decision below reports its own snapshot status rather than assuming one exists.
- #1publishby system:backfill2026-05-20 04:21:56ZScore: ? → ? (no score change)anchoranchored
- chain
- ●mainnet-betaslot 420,912,649
- sig
ei16xqDDWAfD…zApuBoH1explorer ↗- hash
EuhHJEZehE6z…FH6PyXTusha256 → base58
verifying row…full verify ↗canonical bytes (8177 B) ▸
{"actor":"system:backfill","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","kind":"publish","page_slug":"wazirx-india","published_at":"2026-05-20T04:21:55.976Z","sequence_num":1,"snapshot":{"content_type":"investigation","entity_name":"WazirX: India","sections":[{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://en.wikipedia.org/wiki/2024_WazirX_hack"},{"credibility":3,"name":"","type":"other","url":"https://wazirx.com/blog/zanmai-labs-announcement/"}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://en.wikipedia.org/wiki/2024_WazirX_hack"},{"credibility":3,"name":"","type":"other","url":"https://www.businesstoday.in/technology/news/story/north-koreas-lazarus-group-behind-235-million-wazirx-hack-confirms-joint-statement-by-us-south-korea-japan-460804-2025-01-14"},{"credibility":3,"name":"","type":"other","url":"https://www.business-standard.com/companies/news/wazirx-crypto-hack-north-korea-us-japan-south-korea-response-125011500597_1.html"},{"credibility":3,"name":"","type":"other","url":"https://crystalintelligence.com/investigations/expert-analysis-wazirx-hack/"}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://www.deccanherald.com/business/ed-conducts-raids-on-director-of-wazirx-crypto-exchange-freezes-assets-worth-rs-64-cr-1133390.html"},{"credibility":3,"name":"","type":"other","url":"https://www.coindesk.com/business/2022/08/05/indian-government-raids-director-of-binance-owned-crypto-exchange-wazirx-freezes-814m"},{"credibility":3,"name":"","type":"other","url":"https://coinpedia.org/news/wazirx-hack-news-fiu-launches-probe-into-exchanges-security-failures/"},{"credibility":3,"name":"","type":"other","url":"https://www.crowdfundinsider.com/2025/04/238676-indias-supreme-court-rejects-wazirx-hack-victims-petition-citing-lack-of-regulatory-clarity/"},{"credibility":3,"name":"","type":"other","url":"https://www.cryptotimes.io/2025/04/16/sc-dismisses-wazirx-users-plea-says-not-relevant-authority/"},{"credibility":3,"name":"","type":"other","url":"https://www.cryptotimes.io/2025/07/12/wazirx-under-fiu-probe-again-over-alleged-terror-crypto-links/"},{"credibility":3,"name":"","type":"other","url":"https://coinedition.com/fiu-probes-binance-wazirx-over-crypto-terror-fears/"},{"credibility":3,"name":"","type":"other","url":"https://99bitcoins.com/news/lack-of-crypto-framework-in-india-keeps-wazirx-hack-victims-from-justice/"}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://www.coindesk.com/business/2023/01/27/wazirx-says-binance-lied-about-ownership-as-dispute-about-indias-largest-exchange-escalates"},{"credibility":3,"name":"","type":"other","url":"https://www.medianama.com/2024/09/223-binance-denies-wazirxs-ownership-claims-amid-legal-fallout-over-stolen-crypto/"},{"credibility":3,"name":"","type":"other","url":"https://www.theblock.co/post/316819/binance-wazirx"},{"credibility":3,"name":"","type":"other","url":"https://www.cryptopolitan.com/wazirx-binance-ownership-dispute-litigation/"},{"credibility":3,"name":"","type":"other","url":"https://www.banklesstimes.com/articles/2024/09/18/binance-blames-wazirx-ceo-nischal-shetty-for-misleading-users/"},{"credibility":3,"name":"","type":"other","url":"https://www.medianama.com/2024/10/223-indian-government-investigates-235m-wazirx-hack-amid-binance-ownership-dispute/"}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://www.coindesk.com/markets/2025/10/13/wazirx-restructuring-cleared-in-massive-relief-for-usd230m-hack-victims"},{"credibility":3,"name":"","type":"other","url":"https://finance.yahoo.com/news/wazirx-restructuring-gets-singapore-court-120525439.html"},{"credibility":3,"name":"","type":"other","url":"https://www.coindesk.com/markets/2025/10/27/indian-judge-halts-wazirx-s-xrp-reallocation-plan-linked-to-2024-hack"},{"credibility":3,"name":"","type":"other","url":"https://www.theblock.co/post/376211/indian-court-bars-wazirx-reallocating-xrp"},{"credibility":3,"name":"","type":"other","url":"https://cryptoslate.com/landmark-ruling-in-india-treats-xrp-as-property-not-speculation/"},{"credibility":3,"name":"","type":"other","url":"https://www.crowdfundinsider.com/2025/10/255038-judge-prevents-crypto-exchange-wazirx-from-using-customers-xrp-assets-to-minimize-impact-of-230m-hack/"},{"credibility":3,"name":"","type":"other","url":"https://mudrex.com/learn/wazirx-hack-fund-recovery/"}]},{"content":"","heading":"","severity":"medium","sources":[{"credibility":3,"name":"","type":"other","url":"https://en.wikipedia.org/wiki/2024_WazirX_hack"},{"credibility":3,"name":"","type":"other","url":"https://www.financemagnates.com/trending/wazirx-investors-told-to-approach-government-after-court-dismissal-in-2000-crore-crypto-hack/"},{"credibility":3,"name":"","type":"other","url":"https://www.fxstreet.com/cryptocurrencies/news/india-supreme-court-rejects-petition-by-hack-victims-seeking-action-against-wazirx-exchange-202504180653"}]}],"sources_used":[],"summary":"WazirX, operated in India by Zanmai Labs Pvt. Ltd., suffered a $234.9 million hack attributed to North Korea's Lazarus Group on July 18, 2024, freezing user funds and triggering multiple Indian regulatory investigations. India's Supreme Court dismissed a victims' petition in April 2025 citing a lack of crypto regulatory framework, while the Enforcement Directorate, Financial Intelligence Unit, and other agencies have opened probes into the exchange's operations, ownership structure, and alleged links to terror financing. A Singapore court approved a restructuring plan in October 2025, offering partial recovery to creditors.","timeline":[{"date":"2018-01-01","event":"WazirX launched by Nischal Shetty; operated by Zanmai Labs Pvt. Ltd. in India","source":""},{"date":"2019-11-01","event":"Binance publicly announces acquisition of WazirX","source":""},{"date":"2022-08-05","event":"India's Enforcement Directorate raids WazirX director Sameer Mhatre, freezes Rs 64.67 crore in assets over alleged Chinese loan app money laundering","source":""},{"date":"2022-09-12","event":"ED unfreezes WazirX business bank account after over a month","source":""},{"date":"2023-01-27","event":"Nischal Shetty publicly states Binance lied about ownership; dispute enters formal litigation","source":""},{"date":"2024-07-18","event":"WazirX suffers $234.9 million hack via multi-signature wallet exploit; trading suspended; FIR filed in New Delhi","source":""},{"date":"2024-08-01","event":"Mandiant forensic report indicates breach likely originated through Liminal Custody's infrastructure","source":""},{"date":"2024-09-01","event":"Binance formally denies ownership of or responsibility for WazirX; blames Nischal Shetty for misleading users","source":""},{"date":"2025-01-14","event":"US, South Korea, and Japan issue joint statement formally attributing the WazirX hack to North Korea's Lazarus Group","source":""},{"date":"2025-02-14","event":"India's FIU-IND issues directive initiating probe into WazirX security failures; ED summons Binance executives","source":""},{"date":"2025-04-16","event":"India's Supreme Court dismisses petition by 54 WazirX hack victims, stating crypto regulation is a government policy matter","source":""},{"date":"2025-07-12","event":"FIU-IND launches further investigation into alleged links between WazirX wallets and Pakistan-linked terror financing","source":""},{"date":"2025-10-13","event":"Singapore High Court approves WazirX's debt restructuring plan; creditor vote result: 95.7% approval","source":""},{"date":"2025-10-24","event":"WazirX resumes trading operations following Singapore court approval","source":""},{"date":"2025-10-25","event":"Madras High Court blocks WazirX from redistributing a user's XRP; rules cryptocurrency is property under Indian law","source":""},{"date":"2026-05-13","event":"WazirX launches crypto futures trading as part of post-hack recovery push","source":""}]},"v":1}Verify offline (run on your own machine)python -m src.verify_decision ef9822f8-deec-448b-997c-3770147f754a - #2reviewby reviewerreviewer2026-06-15 19:41:27ZScore: 10 → 10 (no score change)The WazirX India investigation page is well-sourced and broadly accurate. The core claims — hack amount, date, Lazarus Group attribution, regulatory probes, Singapore restructuring approval, and court proceedings — are all confirmed by multiple credible independent sources. Three claims are partially supported due to minor overstatements: the Binance 'acquisition' in November 2019 was disputed and may never have legally closed; the January 2023 dispute did not immediately enter formal litigation (that happened later); and the Mandiant report conclusion omits Liminal's counter-forensics report. Two cited URLs have link rot (coinpedia.org returns 410, coinedition.com returns 404). No claims were found to be flatly incorrect or disputed by more credible sources.anchoranchored
- chain
- ●mainnet-betaslot 426,699,677
- sig
uc9eKMHifDbv…htmPfSTPexplorer ↗- hash
EhGhUiVG3SLf…HzLoFGUysha256 → base58
verifying row…full verify ↗canonical bytes (1117 B) ▸
{"actor":"reviewer","decided_at":"2026-06-15T19:41:27.064Z","decision":"review","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","new_score":10,"page_slug":"wazirx-india","prev_score":10,"reason":"The WazirX India investigation page is well-sourced and broadly accurate. The core claims — hack amount, date, Lazarus Group attribution, regulatory probes, Singapore restructuring approval, and court proceedings — are all confirmed by multiple credible independent sources. Three claims are partially supported due to minor overstatements: the Binance 'acquisition' in November 2019 was disputed and may never have legally closed; the January 2023 dispute did not immediately enter formal litigation (that happened later); and the Mandiant report conclusion omits Liminal's counter-forensics report. Two cited URLs have link rot (coinpedia.org returns 410, coinedition.com returns 404). No claims were found to be flatly incorrect or disputed by more credible sources.","score_delta":0,"sequence_num":2,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}Verify offline (run on your own machine)python -m src.verify_decision 899c436c-3c14-4101-ae01-7fc8c98ed847 - #3review approveby judgejudge2026-06-15 19:41:27ZScore: 10 → 42 (+32)The reviewer found 0 of 20 claims disputed and confirmed 15 outright, with 3 partially supported (minor framing issues: Binance 'acquisition' terminology at timeline[1], litigation timing at timeline[4], and Mandiant/Liminal conflicting forensics at timeline[6]) and 2 dead citation URLs. Disputed_pct is effectively 0%, well within the review_approve threshold. The calibration correction is the primary action here: the page's current CRITICAL score of 10 is demonstrably miscalibrated. The entity's defining event — a $234.9M hack confirmed by a US/Japan/South Korea joint statement (claim_findings[1], claim_findings[8]) — is a suffered nation-state cyberattack, not own-fraud. Own-conduct findings are limited to 2022 AML compliance failures (ED raid, claim_findings[2]) and an overreaching XRP redistribution attempt blocked by the Madras High Court (claim_findings[14]), neither of which meets the CRITICAL bar. A score of 42 (WARNING band) correctly reflects genuine but non-criminal own-conduct issues alongside an externally perpetrated primary harm.anchoranchored
- chain
- ●mainnet-betaslot 426,699,681
- sig
3ctF8N7E4ha2…gzrat3ZUexplorer ↗- hash
3RK9mwdar333…cQ1ci5uisha256 → base58
verifying row…full verify ↗canonical bytes (1414 B) ▸
{"actor":"judge","decided_at":"2026-06-15T19:41:27.064Z","decision":"review_approve","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","new_score":42,"page_slug":"wazirx-india","prev_score":10,"reason":"The reviewer found 0 of 20 claims disputed and confirmed 15 outright, with 3 partially supported (minor framing issues: Binance 'acquisition' terminology at timeline[1], litigation timing at timeline[4], and Mandiant/Liminal conflicting forensics at timeline[6]) and 2 dead citation URLs. Disputed_pct is effectively 0%, well within the review_approve threshold. The calibration correction is the primary action here: the page's current CRITICAL score of 10 is demonstrably miscalibrated. The entity's defining event — a $234.9M hack confirmed by a US/Japan/South Korea joint statement (claim_findings[1], claim_findings[8]) — is a suffered nation-state cyberattack, not own-fraud. Own-conduct findings are limited to 2022 AML compliance failures (ED raid, claim_findings[2]) and an overreaching XRP redistribution attempt blocked by the Madras High Court (claim_findings[14]), neither of which meets the CRITICAL bar. A score of 42 (WARNING band) correctly reflects genuine but non-criminal own-conduct issues alongside an externally perpetrated primary harm.","score_delta":32,"sequence_num":3,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}Verify offline (run on your own machine)python -m src.verify_decision 9c918bb3-04b5-4876-a89e-62348ae0e633 - #4reviewby reviewerreviewer2026-08-19 12:33:09ZScore: 42 → 42 (no score change)The page's core factual spine is well-supported: the July 2024 $234.9M hack is credibly and multiply attributed to North Korea's Lazarus Group via an independent tri-government (US/South Korea/Japan) statement, the April 2025 Supreme Court dismissal is triple-sourced and consistent, and the October 2025 Singapore restructuring approval and Madras High Court XRP ruling both check out against independent reporting. No unhedged allegations were found -- the page appropriately frames ongoing terror-financing and security-failure investigations as 'alleged' and 'probe' rather than as established fact, and correctly attributes the underlying terror-financing concern to a specific customer's alleged conduct rather than to WazirX. Weaknesses are narrower: one cited source (coinpedia, for the Feb 2025 FIU/ED item) is dead (404), two 2022-era ED raid/unfreeze claims could not be independently re-verified in this pass due to source access errors (403/429), and the 2026 futures-launch date lacks any citation. Section body content was entirely empty in this snapshot, so only the summary and timeline could be fact-checked.anchoranchored
- chain
- ●mainnet-betaslot 443,509,389
- sig
7HWXEFQmEonT…PvS6oytwexplorer ↗- hash
HmTqh4ejXnFe…hhLAB7Jasha256 → base58
verifying row…full verify ↗canonical bytes (1474 B) ▸
{"actor":"reviewer","decided_at":"2026-08-19T12:33:09.227Z","decision":"review","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","new_score":42,"page_slug":"wazirx-india","prev_score":42,"reason":"The page's core factual spine is well-supported: the July 2024 $234.9M hack is credibly and multiply attributed to North Korea's Lazarus Group via an independent tri-government (US/South Korea/Japan) statement, the April 2025 Supreme Court dismissal is triple-sourced and consistent, and the October 2025 Singapore restructuring approval and Madras High Court XRP ruling both check out against independent reporting. No unhedged allegations were found -- the page appropriately frames ongoing terror-financing and security-failure investigations as 'alleged' and 'probe' rather than as established fact, and correctly attributes the underlying terror-financing concern to a specific customer's alleged conduct rather than to WazirX. Weaknesses are narrower: one cited source (coinpedia, for the Feb 2025 FIU/ED item) is dead (404), two 2022-era ED raid/unfreeze claims could not be independently re-verified in this pass due to source access errors (403/429), and the 2026 futures-launch date lacks any citation. Section body content was entirely empty in this snapshot, so only the summary and timeline could be fact-checked.","score_delta":0,"sequence_num":4,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}Verify offline (run on your own machine)python -m src.verify_decision 2f6f9691-e550-4099-9e86-e1dda05bea53 - #5review approve with notesby judgejudge2026-08-19 12:33:09ZScore: 42 → 55 (+13)This is a calibration review: the page's facts hold up (14/20 confirmed, 0 disputed, only link rot and access-blocked 2022-era sources unresolved per claim_findings), but the current score of 42 (WARNING) does not match the entity's documented conduct. The page's dominant and defining incident -- the $234.9M hack -- is independently attributed to North Korea's Lazarus Group by a joint US/South Korea/Japan government statement (claim_findings[0], claim_findings[13]), making it a 'suffered' external attack, not own-fraud or entity negligence. The secondary incidents (2022 director-level ED asset freeze, 2025 terror-financing probe) implicate a single director or third-party customers rather than an adjudicated finding against WazirX/Zanmai Labs as a corporate entity (calibration_assessment incident_attributions). Per the rubric, a 'suffered' primary incident with no adjudicated corporate fraud caps at CAUTIONARY rather than WARNING; the reviewer's recommended_band/score of CAUTIONARY/55 is well supported and I agree with it. Notes: (Replace the dead coinpedia citation for the Feb 14, 2025 FIU/ED item (claim_findings[13], link_rot) with a live source or remove the specific 'ED summons Binance executives' detail if it cannot be re-sourced.) (Add a citation for the 2026-05-13 crypto futures launch timeline entry; none is currently attached.) (The 2022 ED raid/freeze and account-unfreeze timeline entries rely on sources that returned 403/429 in this review pass -- verify they are still live and re-cite with an accessible mirror if not.) (All six section bodies are empty in this snapshot (only headings/sources present) -- populate narrative content so the analytical sections are reviewable, not just the summary and timeline.) (Clarify in the body text whether any charge or chargesheet has ever been filed against WazirX/Zanmai Labs as a corporate entity, versus a director or third-party customers, to make the own-conduct vs. suffered/third-party distinction explicit to readers.)anchoranchored
- chain
- ●mainnet-betaslot 443,509,420
- sig
5h7hZdufB5sy…49MYTMrPexplorer ↗- hash
8R5foWqz4ErT…hAdwdsuVsha256 → base58
verifying row…full verify ↗canonical bytes (2370 B) ▸
{"actor":"judge","decided_at":"2026-08-19T12:33:09.227Z","decision":"review_approve_with_notes","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","new_score":55,"page_slug":"wazirx-india","prev_score":42,"reason":"This is a calibration review: the page's facts hold up (14/20 confirmed, 0 disputed, only link rot and access-blocked 2022-era sources unresolved per claim_findings), but the current score of 42 (WARNING) does not match the entity's documented conduct. The page's dominant and defining incident -- the $234.9M hack -- is independently attributed to North Korea's Lazarus Group by a joint US/South Korea/Japan government statement (claim_findings[0], claim_findings[13]), making it a 'suffered' external attack, not own-fraud or entity negligence. The secondary incidents (2022 director-level ED asset freeze, 2025 terror-financing probe) implicate a single director or third-party customers rather than an adjudicated finding against WazirX/Zanmai Labs as a corporate entity (calibration_assessment incident_attributions). Per the rubric, a 'suffered' primary incident with no adjudicated corporate fraud caps at CAUTIONARY rather than WARNING; the reviewer's recommended_band/score of CAUTIONARY/55 is well supported and I agree with it. Notes: (Replace the dead coinpedia citation for the Feb 14, 2025 FIU/ED item (claim_findings[13], link_rot) with a live source or remove the specific 'ED summons Binance executives' detail if it cannot be re-sourced.) (Add a citation for the 2026-05-13 crypto futures launch timeline entry; none is currently attached.) (The 2022 ED raid/freeze and account-unfreeze timeline entries rely on sources that returned 403/429 in this review pass -- verify they are still live and re-cite with an accessible mirror if not.) (All six section bodies are empty in this snapshot (only headings/sources present) -- populate narrative content so the analytical sections are reviewable, not just the summary and timeline.) (Clarify in the body text whether any charge or chargesheet has ever been filed against WazirX/Zanmai Labs as a corporate entity, versus a director or third-party customers, to make the own-conduct vs. suffered/third-party distinction explicit to readers.)","score_delta":13,"sequence_num":5,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}Verify offline (run on your own machine)python -m src.verify_decision e8089cdd-8ad3-4b8f-9573-76f6d9e71855 - #6reviewby reviewerreviewer2026-09-09 03:04:53ZScore: 42 → 42 (no score change)Findings-only fact-check (retroactive anchor of stored findings)anchoranchored
- chain
- ●mainnet-betaslot 445,504,654
- sig
4K7Y9KGLb27J…ydG6rikvexplorer ↗- hash
5U9kTdCKKvZf…7R1Chrkpsha256 → base58
verifying row…full verify ↗canonical bytes (705 B) ▸
{"actor":"reviewer","artifact_identity":"232d3fc60eb11e9619975b2c7c6f5317","decided_at":"2026-09-07T06:42:02.746452+00:00","decision":"review","findings_count":34,"findings_rows_hash":"322a58e98d63927d308c847c194cbc0f86be6d4e97413fff390d0d2605b2f93a","investigation_id":"42e23449-f4f3-44d4-aef7-aaa09ba97824","mode":"findings_only_retroactive","new_score":42,"page_content_hash":"860de53c6ee035c160f6c43682ce80c87a318c145ec563d572a00e69668f52d1","page_slug":"wazirx-india","prev_score":42,"reason":"Findings-only fact-check (retroactive anchor of stored findings)","score_delta":0,"sequence_num":6,"submission_content_hash":null,"submission_id":null,"submission_kind":null,"submission_valence":null,"v":1}Verify offline (run on your own machine)python -m src.verify_decision 4af9940b-c2a1-4368-9693-7438ddf5743b
How verification works. The “Row integrity” check above is computed in your browser — your machine recomputes the SHA-256 of the canonical bytes and compares against the stored hash. No avoid.net server can fake that check. The “full verify” link goes one level deeper: your browser fetches the on-chain transaction from a Solana RPC node and confirms the same hash is in the memo. If you don’t want to trust either avoid.net or the public RPC, run the CLI verifier on your own machine —
python -m src.verify_decision <event_id>.