Connect with us
DAPA Banner

Crypto World

Saudi Arabia Executes First Sovereign Tokenized Property Deed

Published

on

Saudi Arabia Executes First Sovereign Tokenized Property Deed

Editor’s note: Saudi Arabia has completed its first end to end tokenized property deed transaction using sovereign grade digital infrastructure developed by droppRWA. Unlike pilot projects that tokenize assets alongside existing legal systems, this transaction embeds national property law and registry rules directly into the settlement layer itself. The result is a legally enforceable, blockchain verified transfer that settles in seconds rather than days. This milestone signals a shift in how real estate can be digitized at a national level, with implications for capital markets, foreign investment, and the future structure of property ownership.

Key points

  • Saudi Arabia executed the first sovereign native tokenized property deed transfer in a G20 economy.
  • The national Real Estate Registry was directly integrated into the blockchain settlement infrastructure.
  • Settlement time was reduced from days to seconds through automated delivery versus payment.
  • Compliance and property law rules were enforced at the infrastructure level, not layered on top.
  • The transaction involved National Housing Company and the Real Estate Development Fund.

Why this matters

This transaction moves tokenization beyond experimentation into enforceable national infrastructure. By making the property registry the single source of truth within a blockchain system, Saudi Arabia addresses a core challenge in real world asset tokenization: legal certainty. For investors and developers, this approach improves settlement efficiency, liquidity, and confidence. For the region, it reinforces the Kingdom’s role as a leader in regulated digital asset adoption aligned with Vision 2030.

What to watch next

  • Expansion of the infrastructure across Saudi Arabia’s broader real estate pipeline.
  • Adoption within designated investment zones and large scale development projects.
  • How foreign institutional investors engage with tokenized Saudi real estate.

Disclosure: The content below is a press release provided by the company/PR representative. It is published for informational purposes.

Saudi Arabia Completes First End-to-End Tokenized Property Deed Transaction Using droppRWA Sovereign-Grade Infrastructure

The transaction marks the first time a G20 economy has executed a property deed transaction where national property law and registry rules are enforced directly within the digital settlement infrastructure.

RIYADH, SAUDI ARABIA — 3 February 2026: The Kingdom of Saudi Arabia has achieved a global milestone in the digitization of capital markets with the successful execution of the world’s first sovereign-native tokenized property title deed transfer.

The transfer, conducted under the patronage of His Excellency. Majed Al-Hogail, Minister of Municipalities and Housing, marks the direct integration of the Kingdom’s Real Estate Registry (RER) with droppRWA’s blockchain transaction layer.. This infrastructure reduces property settlement times from days to mere seconds, transforming once illiquid physical territory into highly liquid, programmable assets. This enhances the attractiveness of the Saudi real estate market for foreign direct investment and is in line with the digital frameworks of Saudi Vision 2030.

Advertisement

The transaction was executed between the National Housing Company (NHC), the government developer of affordable housing solutions and the Real Estate Development Fund (REDF). Built on droppRWA sovereign-grade market infrastructure, a digital token (tokenized deed) representing the property title deed was linked to the RER’s official registry, alongside the issuance of a separate token representing a transferable ownership interest. Compliance rules were encoded into the ownership transfer logic and settlement was executed securely and simultaneously through stable delivery-versus-payment mechanisms.

His Excellency Majed bin Abdullah Al-Hogail, Minister of Municipal Rural Affairs and Housing, said “Saudi Arabia is building a real estate sector that is digital by design, integrating PropTech and AI across planning and delivery in line with Vision 2030. We have successfully executed the Kingdom’s first end-to-end blockchain verified real estate transaction, using the first government authored standards for tokenizing real estate ownership. By linking transactions directly to official records from the outset, this will expand participation, strengthen FDI confidence, improve liquidity, accelerate development financing and enable new PropTech innovation.”

Faisal Al-Monai, CEO of droppRWA, said “The end-to-end infrastructure used to execute this historic transaction, including the token standard, settlement rails, compliance logic, issuance framework and the stable delivery-versus-payment mechanism, was provided exclusively through droppRWA’s sovereign-grade infrastructure, our goal is to help Saudi skip the “digital wrapper” era other markets are currently stuck in by entirely by embedding enforceability into the asset at the source, creating a new category of sovereign-grade assets and the industrial engine that will allow the Kingdom’s multi-trillion-dollar real estate pipeline to be accessed by global institutional capital with absolute legal certainty.”

While jurisdictions such as Singapore, the UK and the EU have introduced digital asset frameworks, Saudi Arabia is the first in the world to implement the technical code for its own property market. Following this successful execution, the infrastructure is slated for a wider rollout across the Kingdom’s multi-trillion dollar real estate pipeline, including designated investment zones.

Advertisement

About droppRWA

droppRWA is a leading provider of regulator-native sovereign tokenization infrastructure. Built to anticipate the demanding requirements of G20 economies and other fast-growing nations, droppRWA’s proprietary Trust Stack™ enables high value and traditionally illiquid assets and fund instruments in critically important sectors such as real estate, energy, and infrastructure, to be managed on-chain.  droppRWA empowers enterprises, governments, and institutional investors to unlock programmable ownership and expand capital markets in a secure, transparent, and scalable digital economy.

Risk & affiliate notice: Crypto assets are volatile and capital is at risk. This article may contain affiliate links. Read full disclosure

Source link

Advertisement
Continue Reading
Click to comment

You must be logged in to post a comment Login

Leave a Reply

Crypto World

Bitrefill Links Lazarus Group to Employee Laptop Hack, Stolen Funds

Published

on

Crypto Breaking News

Bitrefill, a crypto-enabled e-commerce platform that lets customers spend digital assets on real-world products and gift cards, disclosed a cybersecurity incident that occurred on March 1. The breach enabled attackers to compromise an employee’s laptop by deploying malware and reusing existing IP and email infrastructure, which in turn granted access to hot wallets and the ability to drain funds. In addition to financial losses, Bitrefill confirmed that information tied to about 18,500 purchases was exposed, potentially revealing limited customer data. Crucially, the company said there is no evidence that the attackers extracted the entire database, suggesting the objective was financial rather than data exfiltration on a wholesale scale. Investigators have pointed to BlueNoroff Group, a North Korean hacking outfit with close ties to the Lazarus Group, as a possible participant or sole attacker in the incident.

Key takeaways

  • The breach occurred on March 1 and targeted an employee’s laptop via malware, with attackers leveraging reused IP and email infrastructure to gain a foothold.
  • Attackers deployed on-chain tracing techniques and accessed Bitrefill’s hot wallets to drain funds, while attempting to map accessible assets.
  • Data exposure affected roughly 18,500 purchase records, but Bitrefill asserts that the full customer database was not accessed and that only limited customer information may have been disclosed.
  • There is attribution to North Korea-linked groups, notably BlueNoroff Group with ties to Lazarus Group, as potential participants or sole operators behind the attack.
  • Bitrefill halted systems to contain the breach, engaged law enforcement, and collaborated with multiple security firms to strengthen defenses and detection capabilities.
  • Operations have largely returned to normal, with Bitrefill reporting that payments, inventory, and customer services are functioning, accompanied by ongoing security enhancements.

Tickers mentioned:

Sentiment: Neutral

Market context: The incident sits within a broader pattern of persistent cybersecurity threats facing crypto platforms, underscored by well-funded actors like Lazarus Group and its affiliated outfits. Lazarus remains associated with some of the most high-profile intrusions in the sector, including a noted $1.4 billion breach on a major exchange in February 2025, which has shaped industry risk perceptions and driven heightened security investments across the ecosystem.

Why it matters

The Bitrefill incident underscores how even firms built around rapid, on-demand crypto services must maintain rigorous operational security and incident response protocols. The attack vector—malware, credential reuse, and compromised hardware—highlights the need for layered defenses that extend beyond perimeter protections to include robust endpoint monitoring, strict access controls, and rapid containment measures. In the wake of the breach, Bitrefill not only contained the immediate risk by taking systems offline but also engaged external security partners to conduct comprehensive reviews and implement enhancements. This approach aligns with a broader industry trend: attackers are increasingly adept at blending traditional cyber techniques with on-chain reconnaissance to maximize impact, even on businesses that otherwise operate with strong security postures.

Advertisement

The incident also illustrates the tension between preserving customer trust and absorbing losses when underwrite costs fall to operational budgets. Bitrefill indicated that it would absorb the losses from its working capital, a decision that could reverberate through risk management discussions in the sector. For users, the event reinforces the importance of monitoring transaction activity, staying alert for unusual account behavior, and understanding that security incidents can surface even when providers are actively investing in defense. For operators and builders, it emphasizes the value of proactive third-party security audits, ongoing staff training, and the adoption of least-privilege access models to limit the blast radius of any future breach.

From a regulatory and policy standpoint, the disclosure and coordinated response with law enforcement signal ongoing collaboration between private firms and public authorities in addressing cross-border cyber threats. The Lazarus-linked threat landscape has long compelled exchanges and wallets to prioritize threat intel sharing, user notification protocols, and rapid incident communications to minimize damage and preserve market integrity. While Bitrefill’s experience is not unique, it contributes to a growing corpus of case studies that underscore the need for transparent post-incident reporting and verifiable security hardening measures in real time.

What to watch next

  • Bitrefill’s ongoing security reviews and any published audit findings from the partnering firms (Security Alliance, FearsOff Security, Recoveris.io, and zeroShadow).
  • Updates on how the company enhances internal access controls and monitoring capabilities to reduce the likelihood of a recurrence.
  • Law enforcement disclosures or official statements that could shed further light on the attribution and motive behind the attack.
  • Any public posts or supplementary communications from Bitrefill clarifying the status of customer data exposure and steps available to users who may have concerns.
  • Industry-wide responses to similar intrusions, including changes in security practices, incident response playbooks, and cross-organization threat intelligence sharing.

Sources & verification

  • Bitrefill’s official post on X detailing the breach, its scope, and immediate response
  • Statements naming BlueNoroff Group and Lazarus Group as potential actors and their relation to the Lazarus ecosystem
  • Public references to the security firms engaged in mitigating the incident: Security Alliance, FearsOff Security, Recoveris.io, zeroShadow
  • Bitrefill’s note that the breach did not appear to access the entire customer database and that the losses will be absorbed from operational capital

Bitrefill breach highlights security lessons for the crypto retail ecosystem

Bitrefill’s experience is a stark reminder that cyber threats targeting crypto-enabled businesses are multifaceted, blending classic malware and credential theft with blockchain-focused reconnaissance. The company’s rapid containment, coupled with its collaboration with multiple security specialists, demonstrates a practical model for incident response that others in the space can emulate. While the attackers’ apparent objective seems financial, the exposure of tens of thousands of purchase records—under a platform that bridges crypto wallets with everyday purchases—serves as a cautionary note about data leakage, privacy considerations, and the ongoing need for rigorous access governance.

In the broader crypto market, the incident dovetails with a continuing pattern where high-profile breaches test the limits of security controls and force operators to balance customer trust with practical risk management. The Bybit event cited in industry chatter underscores a particularly aggressive threat landscape, where attackers leverage sophisticated techniques and persistent campaigns. As platforms expand services, including gift cards and fiat-onramps, the imperative to secure the end-to-end user journey—from authentication to transaction settlement—becomes more pronounced. Bitrefill’s commitment to a thorough security upgrade, including external audits and tightened internal processes, aligns with a prudent standard for the sector in 2026 and beyond.

Risk & affiliate notice: Crypto assets are volatile and capital is at risk. This article may contain affiliate links. Read full disclosure

Advertisement

Source link

Continue Reading

Crypto World

Gold-Linked Yield Stablecoin Launches After Theo Closes $100M Vault

Published

on

Gold-Linked Yield Stablecoin Launches After Theo Closes $100M Vault

Tokenization platform Theo has received $100 million for a structured investment facility backing its yield-bearing stablecoin, thUSD, underscoring growing institutional appetite for digital dollars tied to alternative yield sources beyond US Treasurys.

Theo co-founder Ari Pingle told Cointelegraph that the capital was committed through a structured facility known as the Genesis Vault, which reached its $100 million cap within 24 hours. The funds were deposited into the facility to support the launch of thUSD, rather than representing venture funding for the company.

The company uses the deposited funds to buy tokenized gold while simultaneously shorting gold futures on the CME to hedge price movements. The strategy is designed to reduce exposure to gold price volatility while generating yield from gold financing and futures market spreads.

Theo realized an average annual return of 8.27% in 2025 using that strategy and targets returns of 5% to 12%, depending on market conditions, Pingle said.

Advertisement

While gold-backed stablecoins remain relatively nascent, several blockchain projects have issued tokens backed by physical bullion, including Tether Gold and Paxos Gold. Unlike dollar-pegged stablecoins, these tokens track the market price of gold, with each token typically representing one troy ounce of vaulted bullion.

Investors in Theo include Hack VC and Anthos Capital, as well as angel investors from Jane Street, Optiver and JPMorgan, according to a company announcement.

Related: Gold is acting like the hedge Bitcoin promised to be

The tension over “yield” under US GENIUS Act

The launch comes as yield-bearing stablecoins have gained traction following recent regulatory developments in the United States.

Advertisement

The GENIUS Act restricts payment stablecoin issuers from distributing yield on reserve assets, such as Treasury bills. Theo says thUSD differs because returns are generated through the underlying trading and asset structure rather than issuer-paid interest.

The $300 billion stablecoin market is expected to grow following the passage of the US GENIUS Act, though debate around yield continues. Source: RWA.xyz

“The GENIUS Act restricts issuers of payment stablecoins from paying yield to holders simply for holding the token. The intent is to prevent stablecoins from functioning like interest-bearing bank deposits,” Pingle told Cointelegraph, adding that this restriction applies to “issuer-paid yield on payment stablecoins backed by reserves like T-Bills.”

He added:

“Products structured around tokenized assets or separate financial primitives can generate yield differently, because the return comes from the underlying asset or system rather than from the issuer distributing reserve income. thUSD falls into that latter category.”

Nevertheless, debate over stablecoin yield in the United States continues to weigh on broader crypto-market structure talks in Washington, where lawmakers and banking groups remain divided over whether third parties should be allowed to offer yield on stablecoin holdings.

Related: SEC’s ‘Crypto Mom’ calls for simpler disclosure rules, flags tokenization debate

Advertisement