CryptaCount
EN
EnglishENDeutschDEEspañolESFrançaisFRItalianoIT日本語JA한국어KONederlandsNLPolskiPLPortuguêsPT
Log in Start Free

Mexico Raids Hidden Puebla Crypto Mine Over AML and Power Theft

CryptaCount Editorial · · 9 min read
AML / KYC / LICENSING Mexico Raids Hidden Puebla Crypto MineOver AML and Power Theft

Mexican federal prosecutors, the national navy, and state security officers raided a covert GPU mining compound tucked into a remote mountain community in Tlaola, Puebla on 13 September 2026. They seized roughly 300 graphics processing units, a transformer, around 80 medium-voltage terminals, and eight satellite internet antennas. Investigators are pursuing two converging theories: that the operators stole electricity from a nearby hydroelectric dam to fund the mine, and that the operation generated freshly created cryptocurrency as a mechanism to disguise proceeds from organised crime. For accounting firms, auditors, and CFOs managing digital asset accounting software across Latin American portfolios, the Puebla raid is not a regional curiosity. It is a compliance signal that demands immediate attention.

Mexico Raids Hidden Puebla Crypto Mine Over AML and Power Theft

What the Puebla Raid Actually Found

The compound was located in Tlaola, a highland municipality in the northern Sierra Norte region of Puebla. The joint operation brought together Mexico's federal attorney general's office, naval personnel, and state-level security units, reflecting the seriousness with which authorities are now treating clandestine crypto infrastructure.

Equipment seized

The haul was not improvised. Around 300 GPUs, a professional-grade transformer, approximately 80 medium-voltage electrical terminals, and eight satellite antennas point to a deliberately engineered site, not a hobbyist operation. The satellite connectivity is particularly notable: it allowed the compound to operate entirely off local telecom infrastructure, reducing the digital footprint that might otherwise have triggered suspicion.

The pattern: four sites in less than two years

This raid is the fourth crypto mining operation uncovered in the same area since early 2025, according to Reuters. Local authorities confirmed they are coordinating with neighbouring states to identify additional sites. That pattern is critical context for any AML assessment. A single discovery can be treated as an outlier. Four discoveries in one corridor, all near the same hydroelectric dam, constitute an organised network, and that is exactly how prosecutors appear to be treating it.

Two Suspected Criminal Theories

The investigation is running on parallel tracks. Each track has distinct implications for how financial intermediaries and accounting teams should classify and escalate related transactions.

Energy theft from the hydroelectric dam

GPU mining is electricity-intensive. Running hundreds of cards around the clock in a remote location requires significant power draw. Prosecutors believe the operators tapped the nearby hydroelectric dam's grid without authorisation. If confirmed, this would mean the mine's operating costs were, in effect, zero, making even modest mining revenues highly profitable and suppressing any normal audit trail of electricity expenditure that a legitimate operation would generate. From a crypto bookkeeping software perspective, the absence of energy costs on the ledger is itself a red flag for any firm reviewing counterparty books.

Mining as a money-laundering method

This is the more structurally significant allegation. The core mechanism is straightforward: illicit cash is used to fund a mining operation; the mining operation produces new coins; those coins enter circulation with a clean on-chain origin, because their blockchain history begins at the block reward rather than at a tainted wallet address. Security analyst David Saucedo, speaking to Reuters, noted that drug cartels appear to have reached a new level of operational sophistication, citing the expertise and financing required to run a clandestine facility of this scale.

Industry researchers have described this technique in published compliance literature. One compliance report identified the purchase of mining equipment with illicit proceeds as a pathway to acquiring cryptocurrency that appears clean on-chain. Separately, blockchain analytics research has examined suspected laundering through mining pools, finding that certain exchange deposit addresses received both funds linked to ransomware or fraud and income attributable to mining activity. The research framed it plainly: mining provides a means to acquire money with a clean on-chain origin. Neither of those published studies establishes how the Puebla operation specifically handled its funds; that is for Mexican prosecutors to determine. But the technique they describe maps directly onto what investigators appear to be probing.

Cartel Crypto Transfers: The Broader Mexican Context

The Puebla raid does not stand alone. Earlier in 2026, the U.S. Department of the Treasury sanctioned a network that the agency alleged was run by Armando de Jesus Ojeda Aviles. According to the Treasury, that network collected drug-sale proceeds in the United States, converted the cash to cryptocurrency, and transferred it to the Sinaloa Cartel in Mexico. The Puebla mine, if the money-laundering theory is confirmed, represents a different layer of the same ecosystem: rather than converting existing dirty cash into crypto, it would generate new crypto directly, bypassing the conversion step altogether.

Taken together, these enforcement actions suggest Mexican and U.S. authorities are now tracking multiple nodes in a cartel crypto infrastructure, from fiat-to-crypto conversion networks to covert mining facilities. For any firm with digital asset accounting software covering Latin American clients or counterparties, that infrastructure warrants heightened screening.

AML and Accounting Implications for B2B Practitioners

The Puebla case creates concrete obligations and risk considerations for accounting firms, auditors, and CFOs, regardless of whether their clients are directly connected to Mexico.

Transaction monitoring and source-of-funds analysis

Mining rewards are often treated as lower-risk in on-chain tracing because they originate from block production rather than from a prior wallet. The Puebla case is a reminder that this assumption requires qualification. Where a counterparty's crypto holdings are described as mining-sourced, practitioners should ask: what is the energy-cost footprint of that operation, is the mining entity licensed or registered under applicable national law, and does the declared mining volume align with the electricity consumption one would expect? Anomalies in any of these dimensions should be documented and, where thresholds apply, reported as suspicious activity.

Enhanced due diligence for Mexican-domiciled entities

Mexico's Financial Intelligence Unit (Unidad de Inteligencia Financiera, UIF) has AML reporting obligations that apply to virtual asset service providers operating in the country. The UIF is Mexico's primary financial intelligence body under the Federal Law for the Prevention and Identification of Operations with Resources of Illicit Origin. Accounting teams onboarding Mexican crypto entities should verify UIF registration status, review any public enforcement history, and assess whether energy-cost disclosures are consistent with declared operations.

Energy provenance as a new AML data point

One practical implication of the Puebla model is that energy provenance is now a relevant AML data point for mining clients. A legitimate industrial mining operation will have documented power purchase agreements, utility bills, or grid connection certificates. An operation that cannot produce these, or that claims to operate off-grid without credible documentation, warrants escalation. This is not a standard checklist item in most crypto bookkeeping software workflows today, but the Puebla case makes a strong argument for adding it.

Accounting treatment of seized assets

For any firm that holds mining assets on behalf of clients in a jurisdiction where enforcement risk has crystallised, the possibility of regulatory seizure creates a contingent liability that may need disclosure under applicable financial reporting standards. Where mining equipment or mined coin balances are material, auditors should consider whether a seizure risk note is warranted in financial statements, particularly where the client operates in a region under active law-enforcement scrutiny.

What Firms Should Do Now

The raid itself is still under active investigation, and Mexico's federal attorney's office has declined to comment publicly. That silence means the facts will develop. But the compliance response does not need to wait for a conviction.

Immediate steps

First, review any client or counterparty with declared mining income from Mexico or from operations near hydroelectric infrastructure in Latin America. Second, request energy-cost documentation as part of enhanced due diligence for mining-related accounts. Third, cross-reference known sanctioned networks, including those identified in U.S. Treasury actions related to the Sinaloa Cartel, against your transaction monitoring outputs. Fourth, brief your suspicious-activity reporting team on the mining-as-laundering typology so that analysts recognise the pattern when reviewing flagged transactions.

Firms already tracking Mexico's escalating illegal crypto mine enforcement campaign will recognise that the Puebla raid accelerates a trend that has been building for at least eighteen months. And for teams calibrating their broader AML frameworks, understanding how OFAC sanctions on illicit crypto marketplaces reshape due-diligence workflows provides useful parallel context on how enforcement agencies are connecting fiat laundering networks to on-chain activity.

The Puebla compound is a live illustration of why robust crypto accounting software needs to do more than reconcile wallet balances. It needs to surface provenance anomalies, flag energy-cost inconsistencies, and integrate sanctions-screening outputs into a single auditable record. Four raids in one Mexican corridor in under two years is not background noise. It is a pattern, and patterns like this tend to widen before they narrow.

Mexico Raids Hidden Puebla Crypto Mine Over AML and Power Theft

Frequently Asked Questions

Why does crypto mining appeal to money launderers?

Mining produces new coins whose on-chain history begins at the block reward. That means there is no prior wallet address linking them to illicit funds, making them appear clean to basic blockchain tracing tools. Investigators must instead establish the origin of the cash or assets used to fund the mining operation itself, which requires off-chain forensic work.

What Mexican law governs AML obligations for virtual asset operators?

The primary statute is the Federal Law for the Prevention and Identification of Operations with Resources of Illicit Origin (Ley Federal para la Prevención e Identificación de Operaciones con Recursos de Procedencia Ilícita). Virtual asset service providers operating in Mexico are also subject to oversight by the UIF and, depending on their activities, by the National Banking and Securities Commission (CNBV).

Does energy theft change how a mine's output should be classified for accounting purposes?

If it is established that operating costs were funded through theft, the accounting treatment of the mined coins becomes entangled with the underlying criminal liability. For a compliant counterparty reviewing such an entity's books, the more immediate concern is whether the energy cost disclosures are materially misstated, which has audit implications independent of any criminal finding.

Should firms outside Mexico be concerned about this raid?

Yes, if they have counterparties, clients, or investment exposure linked to Mexican crypto operations or to mining entities in Latin America more broadly. The cartel networks identified in related U.S. Treasury enforcement actions operate across borders, so the compliance perimeter is not limited to firms with a physical presence in Mexico.

What documentation should accounting teams request from mining clients?

At minimum: a power purchase agreement or utility contract confirming the source and cost of electricity, registration or licensing status with the relevant national regulator, corporate ownership documentation sufficient to identify ultimate beneficial owners, and transaction records linking mining rewards to declared wallet addresses. Where any of these are unavailable or inconsistent, enhanced due diligence is warranted.

Source: The Block

MXGeneralEnforcementAML/KYC & Licensing

Related articles

AML/KYC & Licensing
Crypto in Conflict: Sanctions Risk, DeFi Fundraising, and What Firms Must Know
AML/KYC & Licensing
5 Emerging Cryptoasset Financial Crime Typologies: What Firms Must Track
AML/KYC & Licensing
Cross-Chain Crime: What the Elliptic Report Means for Crypto AML and Accounting
AML/KYC & Licensing
Coin Swap Services: AML Risks and Accounting Implications