Cointime

Download App
iOS & Android

Security breaches on Cryptocurrency Exchanges | Cryptocurrencies 107

Validated Individual Expert

Security breaches on Cryptocurrency Exchanges

The term “cryptocurrency” refers to all digital currencies that are secured using cryptography. During the time that it is stored in a blockchain, no centralized bank, government, or other financial organization can exert any influence over it.

The fact that cryptocurrency, sometimes known as “crypto,” is not controlled by a single institution is one of the most distinguishing features that sets it apart from traditional forms of cash. As a result of the fact that it is decentralized, there are literally thousands of different crypto currencies from which to choose. The two cryptocurrencies with the highest name recognition are Bitcoin and Ethereum. Both of these digital assets are stored on their own blockchains.

In theory, bitcoin may be used to purchase and sell goods and services just like any other type of cash. This is only a theory, though. But, over the last several years, an increasing number of people have begun to see new cryptocurrencies in the same way as speculative stocks. Bitcoin and other cryptocurrencies are bought in large quantities by people who are betting that their value will go up in the future. In such instance, they will have something that they may sell in order to make a profit. The value of coins can plummet precipitously in a matter of minutes, which makes it difficult to win bets on them.

Those who invest in cryptocurrencies are exposed to a variety of risks, not the least of which are scams known as pump-and-dump and rug-pulling. Even if the price of the cryptocurrency you hold remains the same or goes up, you could still suffer financial loss if your account is compromised by hackers.

Some Methods of Cryptographic Attack

Phishing

Phishing through email is when hackers send their victims emails in an attempt to fool them into doing some kind of criminal action, such as installing malware or handing away sensitive information. Often, the email will include a harmful link that, when clicked, will cause malware to be downloaded into the machine of the receiver. A piece of malware like this gives an adversary the ability to watch a device covertly or even take control of it. If the victim has software known as a hot wallet installed on their smartphone, it will be much simpler for a hacker to steal their money.

Exploits

Hackers frequently focus their attention on the software that is employed to make the storage and transfer of cryptocurrency possible. Every component of the cryptocurrency infrastructure might have flaws or vulnerabilities that have not been addressed, regardless of whether it is a cross-chain bridge or a cryptocurrency exchange. If hackers locate these vulnerabilities, they will be able to exploit them in various types of attacks, including bridge attacks and exchange heists.

Hacks of Bitcoin Exchanges And Others

Ronin Network

The Ronin Network was the victim of a cyberattack, which resulted in a loss of around $625,000,000.00 in total funds. Axie Infinity, a blockchain-based video game, is dependent on the Ronin Network, which is a side chain (a component of a bigger blockchain). The hacker made off with secret keys and then utilized those keys to commit fraudulent withdrawals, which resulted in the loss of hundreds of millions of dollars from the system. It had been a whole week before anybody recognized that there had been a security breach.

Beanstalk Farms

The Beanstalk Farms platform is an Ethereum-based stablecoin infrastructure that can be used by users. (Stablecoins) are digital currency tokens that, owing to the design of the system on which they are based, are not susceptible to price fluctuation. This prevents them from being used as a medium of exchange in speculative markets. The platform’s in-house governance token, STALK, was used by the protocol throughout its operation. Before any asset may be transferred outside of Beanstalk Farms’ control and into the possession of a third party, the corporation needs the consent of the great majority of STALK shareholders.

Mt. Gox

In 2010, the bitcoin trading platform known as Mt. Gox was established in Tokyo, Japan. This particular exchange handled more than seventy percent of all Bitcoin transactions at one point in time, making it the largest cryptocurrency exchange in the world at the time. In 2011, a hacker made off with 8.75 million dollars’ worth of bitcoin from the exchange.

Despite previous assurances that safety would be increased, the exchange was attacked once again in 2014. But, this time around, it was carried out on a somewhat larger scale. Bitcoins with a value of around $815 million went lost. They were successful in achieving their objective by inundating the exchange with fraudulent bitcoins. When something like this took place, it was one of the first times the security of bitcoin had been seriously breached.

Because of the breach, the corporation is being taken to court by various business partners, including customers and suppliers. Mark Karpeles, who had previously served as CEO of the exchange and had a significant role in a number of these episodes, was the one at fault for the absence of version control software on the site’s source code.It would only take one negligent programmer to endanger the integrity of the whole system by making changes to the code of the website. The users have not profited from legal action taken against the exchange as of yet. In an attempt to make amends with its clientele, the exchange has presented a civil repair plan to the Tokyo District Court.

KuCoin

KuCoin is a Singaporean cryptocurrency exchange. It began operations in 2013, and accepts Bitcoin, Ethereum, Litecoin, and Ardor as payment. Almost $281 million worth of coins and tokens were stolen in a hack that occurred in September of 2020.

Moreover, thieves stole the private keys to some of the most popular wallets on the trading platform. KuCoin took swift measures to halt all transactions on the platform, but the harm was already done. As compared to other crypto asset hacks, this one ranks high.KuCoin’s leadership immediately began an in-depth inquiry as a result. Quick action paid off, as nearly $204 million was recovered in a matter of weeks. The conversation has also helped narrow down the pool of possible perpetrators.

It is speculated that a North Korean hacking collective was responsible for the incident. The need for prompt response and real-time transaction tracking is highlighted by this scenario. Moreover, the exchange intends to compensate all users for their losses.

FTX

Troubled cryptocurrency exchange FTX, which is now going through a bankruptcy procedure, was hacked on November 12, 2022. Reports and the company’s official Twitter account suggest that when FTX filed for Chapter 11 bankruptcy, an employee named Ryne Miller claimed that improper transactions had occurred. Some sources estimate that USD $60 million was taken in the FTX attack. There is speculation that a novice employee made the transfer of cash to a Kraken wallet, albeit this cannot be confirmed.

Although facing several accusations in a bitcoin lawsuit that carry a potential penalty of 115 years in jail, former CEO Sam Bankman-Fried is presently out on $250 million bond.

Crypto.com

One of the most widely used cryptocurrency applications and well-known exchanges, Crypto.com was the first to be compromised in the cryptocurrency market in 2022. On January 17th, news surfaced that 483 customer accounts had been hacked. The exchange had to temporarily suspend certain of its services for 13–14 hours due to a security breach, the reason of which has not yet been determined but was verified by Crypto.com’s CEO, Kriz Marszalek. The prominent cryptocurrency exchange had 4,836.26 ether (ETH), 443.93 bitcoin (BTC), and almost US$66,200 in other currencies stolen.

Comments

All Comments

Recommended for you

  • US Stablecoin Bill Could Be Ready Soon, Says Top Democrat on House Financial Services Committee

    The top Democrat on the U.S. House Financial Services Committee, Maxine Waters, has stated that a stablecoin bill may be ready soon, indicating progress towards a new stablecoin law in the U.S. before the elections. Waters has previously criticized a version of the stablecoin bill, but emphasized the importance of protecting investors and ensuring that stablecoins are backed by assets. Congressional movement on stablecoin legislation has recently picked up pace, with input from the U.S. Federal Reserve, Treasury Department, and White House in crafting the bill. The stablecoin bill could potentially be tied to a must-pass Federal Aviation Administration reauthorization due next month, and may also be paired with a marijuana banking bill.

  • Crypto mining company Argo mined 1,760 bitcoins last year and earned $50.6 million

    Crypto mining company Argo Blockchain has released its 2023 financial year performance report, which includes:

  • Crypto VC market hits 12-month high in March, with total investment exceeding $1 billion

    According to data from Cointelegraph, the cryptocurrency venture capital market continued to recover in March and April 2024. In March, 161 individual transactions were completed, setting a record in the past 12 months, with a total investment of more than $1 billion, an increase of 52% from the previous month. Although April has not yet ended, as of now, 90 transactions have been completed, attracting more than $820 million in investment.

  • Ethereum Layer 2 TVL has reached $39 billion

    L2BEAT data shows that Ethereum Layer2 TVL has reached $39 billion, with a 7-day increase of 6.66%.

  • Caixin: Mainland investors are currently not allowed to participate in the trading of Hong Kong virtual asset spot ETFs

    According to Caixin, the first batch of six virtual asset spot ETFs issued by Boshi International, Huaxia Fund (Hong Kong), and Jiashi International has been officially approved by the Hong Kong Securities Regulatory Commission. The goal is to be listed on April 30, 2024. It should be noted that mainland Chinese investors are currently not able to participate in the trading of these ETFs, despite the fact that they are first issued by Hong Kong companies under the umbrella of Chinese public funds.According to the product list on the Hong Kong Securities Regulatory Commission website, these six virtual asset spot ETFs were officially approved on April 23, 2024. The products are as follows: Jiashi Bitcoin Spot ETF (03439.HK), Jiashi Ethereum Spot ETF (03179.HK), Huaxia Bitcoin ETF (03042.HK), Huaxia Ethereum ETF (03046.HK), Boshi HashKey Bitcoin ETF (03008.HK), and Boshi HashKey Ethereum ETF (03009.HK).

  • Another person involved in the OneCoin scheme was arrested and the US prosecutors have filed a lawsuit against him

    According to court documents submitted by the Southern District of New York, William Morro, a person involved in OneCoin, has been arrested. Prosecutors said Morro lied to banks about the source of funds to conceal the source of funds related to OneCoin. He was involved in transferring $35 million related to OneCoin to an account in Hong Kong and about $6 million to an account in the United States.

  • Samourai Wallet crypto-currency mixing service co-founder arrested for money laundering

    According to The Block, the co-founders of the encrypted coin-mixing service, Samourai Wallet, have been arrested. Prosecutors allege that they laundered $100 million from Silk Road and other illegal markets. On Wednesday, Samourai CEO Keonne Rodriguez and CTO William Lonergan Hill were charged with operating the Samourai wallet.Prosecutors claim that Samourai is an unlicensed money transfer company that participated in "over $2 billion in illegal transactions and provided over $100 million in money laundering transactions for illegal dark web markets, including Silk Road." Rodriguez was arrested on Wednesday morning and will face trial in Pennsylvania.Hill was reportedly arrested in Portugal, and the US is seeking extradition. Prosecutors say that Samourai's network servers and domain name have also been seized, and the app can no longer be downloaded from the US Google Play store. Rodriguez and Hill are charged with money laundering and unlicensed money transmission, with maximum sentences of 20 years and 5 years, respectively.

  • Rune token DOG's transaction volume exceeded 100 BTC within 4 hours of launch

    According to data from Ordinal News forwarded by Runestone founder Leonidas, the Bitcoin symbol token DOG broke through a trading volume of 118.72 BTC (approximately $7,685,101 USD) within 4 hours of trading. The trading volume on three platforms was: Magic Eden on Bitcoin: 45.21 BTC; OKX Wallet: 20.37 BTC; UniSat: 53.14 BTC.

  • NFT lending volume exceeds $2 billion in Q1

    According to a report from CoinGecko, the first quarter trading volume of the lending market using non-fungible tokens (NFTs) as collateral exceeded $2 billion, a 44% increase compared to the fourth quarter of 2023. The lending platform Blend has shown significant dominance in the market, with a monthly loan amount of $562.3 million as of March 2024, occupying nearly 93% of the market share.

  • Bitcoin Conference to Bring Star-Studded Lineup of Speakers to Hong Kong on Dawn of Historic ETFs.

    Excitement is brewing in the heart of Asia as Hong Kong regulators pave the way for a new era of innovation with the recent approval of spot Bitcoin exchange-traded funds (ETFs). This groundbreaking development underscores Hong Kong's commitment to becoming a regulated hub for Bitcoin. At the same time, the Bitcoin Conference is bringing the best and brightest Bitcoiners from around the world to Hong Kong for Bitcoin Asia.