European Regulatory Scrutiny Lands On OKX Amid AML Violations
Cryptocurrency exchange OKX is facing scrutiny from regulatory bodies in Europe following a fine imposed by Maltese authorities for violations of Anti-Money Laundering (AML) laws in the past. The Financial Intelligence Analysis Unit (FIAU) issued a penalty statement on April 3, announcing that Okcoin Europe, the European-based arm of OKX, had been fined 1.1 million euros ($1.2 million) for AML failures detected in 2023.
OKX’s Record of Compliance Failures
The FIAU emphasized that while OKX has significantly improved its AML policies over the past 18 months, the authority "could not ignore" the exchange’s compliance failures from 2023. Some of these failures were deemed to be serious and systematic in nature. The regulator’s statement also highlighted that despite OKX’s attempts to comply with regulatory requirements, it was unable to properly assess money laundering risks and take necessary measures to manage them.
Key Findings of the FIAU Investigation
The FIAU investigation revealed multiple deficiencies within the business risk assessment methodology employed by OKX in 2023. This included a failure to identify potential threats from cryptocurrency mixers, privacy coins, stablecoins, and tokens on decentralized exchanges. Furthermore, the regulator found that despite OKX’s pledge only to service European customers, it was exposed to money laundering risks associated with other jurisdictions.
Exposure to Other Jurisdictions
The FIAU statement specifically mentioned the need for OKX to consider potential money laundering/financing terrorism exposure emanating from other jurisdictions. This highlighted a critical area of concern for regulators, emphasizing that even companies operating within a specific geographic region must be vigilant about risks associated with global transactions. In the context of AML compliance, this requires ongoing monitoring and assessment of an organization’s risk posture.
OKX Response to Regulatory Scrutiny
A spokesperson for OKX stated, "With this chapter behind us, OKX remains focused on the future—continuing to build a secure, transparent, and compliant platform for our users worldwide." This response reflects efforts by the exchange to distance itself from past compliance failures, even as it acknowledges significant improvements made in recent months.
Controversy Surrounding OKX’s Potential Role in Bybit Hack
The timing of the fine imposed by Maltese authorities coincided with controversy surrounding OKX’s potential role in facilitating the laundering of $100 million in funds from the Bybit hack. European Union regulators were reported to be probing OKX over this issue, which has further contributed to regulatory scrutiny.
Bybit CEO Allegations
Ben Zhou, CEO of Bybit, had previously alleged that OKX’s Web3 proxy allowed hackers to launder roughly $100 million (40,233 Ether) from the massive hack that occurred in February 2025. In response to these allegations, OKX disputed claims about ongoing EU investigations and criticized Bybit for spreading misinformation.
OKX’s Hiring of Former Governor Andrew Cuomo
Recent reports suggested that OKX hired former New York Governor Andrew Cuomo to advise it on a federal criminal investigation that led to the exchange’s plea and $505 million penalty payment in the US. This move raises further questions about OKX’s legal strategy in dealing with regulatory challenges.
Significance of OKX’s Penalty for MiCA-Licensed Companies
The fine imposed by Maltese authorities on OKX serves as a precedent for regulators dealing with past compliance violations among companies licensed under Europe’s Markets in Crypto-Assets (MiCA) regulation. This sends a clear message that the license does not exempt firms from responsibility for previous breaches, underscoring the importance of ongoing AML efforts.
Conclusion
The controversy surrounding OKX underscores the complex regulatory landscape within which cryptocurrency exchanges operate. The firm’s compliance failures serve as a reminder to all stakeholders that adherence to AML laws is an ongoing and evolving challenge rather than a one-time obligation. As such, regulators continue to scrutinize practices and hold companies accountable for their actions in managing risk.


