Crypto Con Empire Collapses As Mastermind Faces 20 Years

bitcoinistPublished on 2026-02-11Last updated on 2026-02-11

Abstract

A man accused of masterminding a large-scale crypto romance scam has been sentenced to 20 years in prison. Daren Li, a dual national of China and St. Kitts and Nevis, was convicted for his role in a scheme that defrauded victims of over $73 million. The operation used fake trading platforms and built trust through social media and dating apps in a process known as "pig butchering," grooming targets over weeks or months. Funds were laundered through U.S. shell companies and cryptocurrency to obscure trails. Li initially fled after removing an ankle monitor but was later captured. The case is part of a broader trend of rising crypto crime, with one report citing $370 million stolen in January 2026 alone.

A man accused of running a large-scale crypto romance scam was given a heavy federal sentence this week. According to court records and Justice Department statements, Daren Li, a dual national of China and St. Kitts and Nevis, received 20 years in prison for his role in a scheme that sent more than $73 million out of victims’ hands.

Trust Built Online

Li and a group of associates set up fake trading sites and copied the look of real platforms to make everything appear legitimate. They reached out through social media and dating apps, building friendly or romantic ties that made victims comfortable enough to move money.

The approach was slow and patient; messages were exchanged for weeks, sometimes months, before the ask came. Reports note the team used a practice the industry calls “pig butchering” — grooming targets until they trusted the strangers on the other end of the chat.

How Crypto Moved

Court filings show the cash did not simply disappear. Money flowed into bank accounts tied to shell companies inside the US, then onward to other conduits.

Nearly $60 million was routed this way, according to prosecutors. Eight co-conspirators have pleaded guilty and are awaiting sentencing, while the investigation continues to map out additional links.

Some transfers were hidden with layers of banking moves. At points funds were converted into cryptocurrency and moved through wallets to complicate tracing.

BTCUSD trading at $66,834 on the 24-hour chart: TradingView

Investigations And International Work

Multiple federal agencies are on the case. The US Secret Service Global Investigative Operations Center led the probe, with help from Homeland Security Investigations’ El Camino Real Financial Crimes Task Force and the US Marshals Service.

Coordination across borders was required because suspects and servers were often overseas. Li slipped an electronic ankle monitor and fled in December 2025, a fact officials say made the job of bringing him to justice harder. He was captured and later admitted to conspiring to launder the money.

Bigger Pattern Of Crime

Reports say crypto-related scams spiked at the start of 2026, with one security firm estimating $370 million stolen in January alone. Phishing and social engineering ate up most of that total; a single social hack accounted for roughly $280 million.

Losses of this size show how attackers combine online trust-building with technical tricks to drain accounts. Back in February 2025, attackers netted about $1.5 billion in one month when a major exchange was hacked, underscoring how varied the threats can be.

The punishment handed down in the Central District of California sends a message that courts view these crypto crimes as serious. Victims will not get all their money back. Some restitution may be ordered. More prosecutions are likely as investigators follow money trails and coordinate with overseas partners.

Featured image from Cayman Compass, chart from TradingView

Related Reads

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

Coldcard Hardware Wallet Hacked: Losses Mount Due to Vulnerable Seed Generation A critical vulnerability in Coldcard hardware wallets has led to a continued wave of fund thefts. According to Galaxy Research, the total stolen has reached 1,367.05 BTC (approx. $88.6 million) from 4,585 addresses, a significant increase from the initial 594.5 BTC reported on July 30, 2026. Most of the stolen funds remain on the attackers' addresses. The issue is not with the current firmware, which Coinkite has updated, but with seed phrases generated on vulnerable devices between March 2021 and the release of fixed firmware versions. Due to a programmer error, devices switched from using a hardware random number generator to the software-based Yasmarang generator, which was initialized with publicly accessible data like the chip's serial number. This made the seed phrases predictable through offline brute-force attacks, meaning wallets remain at risk until funds are moved to a new wallet generated with the patched firmware. Affected devices include Mk2/Mk3 with firmware 4.0.1–4.1.9 (and up to 5.0.3), Mk4/Mk5 up to version 5.6.0, and Q models up to 1.5.0Q. The only exceptions are seeds created with a high-entropy method like at least 50 independent dice rolls or a strong unique BIP-39 passphrase. All other owners must generate a new seed on the fixed firmware and transfer their assets. A case highlighting the human impact involves a 39-year-old long-term investor who lost 2 BTC (approx. $130,000) in minutes. He had accumulated the Bitcoin over eight years through physical labor, viewing it as a financial lifeline and a retirement plan in a country suffering from hyperinflation. His story underscores that even conservative "buy and hold in cold storage" strategies can be compromised by such underlying technical flaws. From a technical perspective, this incident echoes historical failures where weak random number generators undermined cryptographic security, challenging the assumption that offline storage is automatically foolproof.

cryptonews.ru2h ago

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

cryptonews.ru2h ago

Trading

Spot
活动图片