The U.S. Treasury Department’s Office of Foreign Assets Control expanded sanctions on the Central Bank of Iran by adding four cryptocurrency wallet addresses as identifiers under an existing designation that also covers the National Development Fund of Iran. Treasury had previously sanctioned the bank and fund for providing financial support to the Islamic Revolutionary Guard Corps-Qods Force and other activities tied to Iran’s regional operations.
Blockchain analysis cited in reporting said the newly listed wallets received more than $165 million in stablecoins, and Tether froze about $131 million linked to those addresses after the designation update. The action highlights U.S. efforts to disrupt alleged sanctions evasion through digital assets, with reporting stating that wallets attributed to the Central Bank of Iran have been used to move funds to regional partners including Hezbollah and that Tether has now frozen nearly $475 million tied to OFAC-identified Central Bank of Iran addresses.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Following the OFAC update, Tether froze $131 million in balances associated with the four wallet addresses added to the Central Bank of Iran designation. Chainalysis reported this brought Tether’s total frozen from OFAC-identified Central Bank of Iran wallets to nearly $475 million.
OFAC updated its sanctions designation for the Central Bank of Iran by adding four cryptocurrency wallet addresses as identifiers. Chainalysis said the wallets had received more than $165 million in stablecoins.
The U.S. Department of the Treasury announced sanctions on the Central Bank of Iran and the National Development Fund of Iran. This established the underlying sanctions designation later referenced in OFAC updates.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
chainalysis.com
Open sourcehome.treasury.gov
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.