ZachXBT Links US Seized Crypto Theft to Contractor CEO’s Son

TheNewsCrypto2026-01-26 tarihinde yayınlandı2026-01-26 tarihinde güncellendi

Özet

Blockchain investigator ZachXBT has alleged that the individual responsible for stealing millions of dollars in cryptocurrency from U.S. government-controlled wallets is John Daghita, the son of Dean Daghita, CEO of Command Services and Support (CMDSS). The company was contracted by the U.S. Marshals Service to manage seized digital assets. ZachXBT linked online persona “Lick” to the theft, tracing transactions back to a government wallet tied to the 2016 Bitfinex hack. Approximately $23 million was consolidated into a single wallet during the incident. CMDSS has not commented, and no criminal charges have been filed.

ZachXBT, a blockchain investigator, has claimed that the person accountable for a multimillion-dollar robbery of cryptocurrency from US government-curbed wallets is the son of the CEO of a company contracted to protect captured digital assets.

ZachXBT posted his detailed findings, claiming that a body known online as “Lick”, recognised as John Daghita, drained tens of millions of dollars in crypto from wallets associated with the US government.

He further claimed that Daghita is the son of Dean Daghita, president and CEO of Command Services and Support (CMDSS), a firm contracted by the US Marshals Service to manage some captured cryptocurrencies.

Public records reveal that CMDSS, based in Haymarket, Virginia, was awarded a contract in October 2024 to help the Marshals Service with the custody and disposal of so-called “Class 2-4” digital assets.

These comprise tokens that aren’t backed by prominent centralised exchanges and mostly need bespoke handling. The claim hasn’t been tested in court, and no criminal charges have been publicised.

At the time of writing, CMDSS had not officially commented on the matter. The claims of ZachXBT were highlighted with the publication of January 23, which associated the same online persona with over $90 million in suspected illegal crypto activity.

The Investigation

The investigation followed the trail back to a U.S. government wallet linked with assets captured from the 2016 Bitfinex hack. The inquiry gained traction after a listed dispute in a Telegram group chat between “Lick” and another individual.

At the time of exchange, “Lick” screen-shared an Exodus wallet showing a Tron address holding around $2.3 million after a live transfer of around $6.7 million in Ether. With the conclusion of the session, around $23 million had been united into a single wallet.

After the transactions were traced backward, ZachXBT associated that wallet with an address that got $24.9 million from a US government-controlled wallet in March 2024.

Highlighted Crypto News Today:

Metaplanet Lifts 2026 Outlook Despite $680M BTC Write-Down

TagsCEOUSAZachXBT

İlgili Sorular

QWho is ZachXBT and what did he claim in his investigation?

AZachXBT is a blockchain investigator who claimed that the person responsible for a multimillion-dollar cryptocurrency theft from US government-curbed wallets is the son of the CEO of Command Services and Support (CMDSS), a company contracted to protect captured digital assets.

QWhat is the online alias and real name of the individual accused of the crypto theft?

AThe individual accused is known online as 'Lick' and is identified as John Daghita.

QWhat is the connection between the accused individual and the company CMDSS?

AJohn Daghita is alleged to be the son of Dean Daghita, who is the president and CEO of Command Services and Support (CMDSS).

QWhat was the value of the suspected illegal crypto activity associated with the online persona 'Lick'?

AThe online persona 'Lick' was associated with over $90 million in suspected illegal crypto activity.

QFrom which infamous hack were the assets in the US government wallet linked to?

AThe assets in the US government wallet were linked to the 2016 Bitfinex hack.

İlgili Okumalar

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

Coldcard Hardware Wallet Hacked: Losses Mount Due to Vulnerable Seed Generation A critical vulnerability in Coldcard hardware wallets has led to a continued wave of fund thefts. According to Galaxy Research, the total stolen has reached 1,367.05 BTC (approx. $88.6 million) from 4,585 addresses, a significant increase from the initial 594.5 BTC reported on July 30, 2026. Most of the stolen funds remain on the attackers' addresses. The issue is not with the current firmware, which Coinkite has updated, but with seed phrases generated on vulnerable devices between March 2021 and the release of fixed firmware versions. Due to a programmer error, devices switched from using a hardware random number generator to the software-based Yasmarang generator, which was initialized with publicly accessible data like the chip's serial number. This made the seed phrases predictable through offline brute-force attacks, meaning wallets remain at risk until funds are moved to a new wallet generated with the patched firmware. Affected devices include Mk2/Mk3 with firmware 4.0.1–4.1.9 (and up to 5.0.3), Mk4/Mk5 up to version 5.6.0, and Q models up to 1.5.0Q. The only exceptions are seeds created with a high-entropy method like at least 50 independent dice rolls or a strong unique BIP-39 passphrase. All other owners must generate a new seed on the fixed firmware and transfer their assets. A case highlighting the human impact involves a 39-year-old long-term investor who lost 2 BTC (approx. $130,000) in minutes. He had accumulated the Bitcoin over eight years through physical labor, viewing it as a financial lifeline and a retirement plan in a country suffering from hyperinflation. His story underscores that even conservative "buy and hold in cold storage" strategies can be compromised by such underlying technical flaws. From a technical perspective, this incident echoes historical failures where weak random number generators undermined cryptographic security, challenging the assumption that offline storage is automatically foolproof.

cryptonews.ru5 saat önce

Bitcoin Withdrawals Continue: 8 Years of Storage in a Coldcard Cold Wallet Ended in Zero

cryptonews.ru5 saat önce

İşlemler

Spot
活动图片