Fun

News Feed - 2023-08-08 12:08:30

Turner Wright8 hours agoCoinsPaid claims North Korean hacking group used fake job interview to steal $37MHackers attempted to infiltrate CoinsPaid infrastructure directly starting in March 2023 but switched their approach to targeting individuals through fake high-salary job offers.1562 Total views28 Total sharesListen to article 0:00Follow upJoin us on social networksEstonia-based cryptocurrency payments firm CoinsPaid suspects North Korean hackers with the Lazarus Group gained access to its systems through fake recruiters targeting employees.


In an Aug. 7 blog post, CoinsPaid said an exploit that allowed hackers to steal more than $37 million on July 22 was the result of tricking one employee into downloading software during a fake job interview, having them believe they were completing a technical task. The firm reported that the worker responded to a job offer put out by hackers and downloaded the malicious code, allowing the bad actors to steal information and give them access to CoinsPaid’s infrastructure.


“Having gained access to the CoinsPaid infrastructure, the attackers took advantage of a vulnerability in the cluster and opened a backdoor,” said CoinsPaid. “The knowledge perpetrators gained at the exploration stage enabled them to reproduce legitimate requests for interaction interfaces with the blockchain and withdraw the company"s funds from our operational storage vault.”We Know Exactly How Attackers Stole and Laundered $37M USD

CoinsPaid invited a partnership with @MatchSystems, in cooperation with law enforcement agencies and regulators, accompanies the process of returning stolen #crypto assets.

Read more: https://t.co/jLF3ICo603 pic.twitter.com/0gDy9CJcS7— CoinsPaid (@coinspaid) August 7, 2023


Related:Curve hacker behind $61M heist begins returning funds


In its July 26 post-mortem report of the hack, CoinsPaid said it suspected Lazarus Group. Prior to the $37 million exploit, the hackers had made several attempts to infiltrate the platform starting in March 2023 but switched their approach to “highly sophisticated and vigorous social engineering techniques” after multiple failures — targeting individual workers rather than the company itself.Tracing the funds stolen from CoinsPaid on July 22. Source: CoinsPaid


CoinsPaid said it had partnered with blockchain security company Match Systems to track the stolen funds, the majority of which were transferred to SwftSwap. According to the firm, many aspects of the hackers’ transactions mirrored those of the Lazarus Group, as in the $35 million hack of Atomic Wallet in June. The company was continuing to monitor any movement of the funds as of Aug. 7. 


Magazine:Should crypto projects ever negotiate with hackers? Probably# Business# Hackers# Estonia# North Korea# HacksAdd reactionAdd reactionRelated NewsWhat are NFT royalties, and how do they work?Worldcoin: Should you let Sam Altman scan your eyeballs for WLD?Ensuring integrity of blockchain transactions: Trust through auditsBinance CEO warns of phishing scams as Uniswap founder gets hackedGaming DAO warns users of fake airdrops amid social media hacksCrypto payment gateway CoinsPaid suspects Lazarus Group in $37M hack

News Feed

Ezra Reguerra14 hours agoDota 2, Rocket League pros ‘want to explore’ Web3 and blockchain gamingProfessional Dota 2 player Erik “Tofu” Engel believes that Web3 has very beneficial features for gamers.5958 Total v
Colombian Tax Authority Warns About Consequences of Not Declaring Crypto Related Taxes
Colombian Tax Authority Warns About Consequences of Not Declaring Crypto Related Taxes The Colombian tax authority, DIAN, has reminded taxpayers that they need to start registering
Avail integrates leading layer-2 networks to create more cost-efficient chains
Savannah Fortis10 hours agoAvail integrates leading layer-2 networks to create more cost-efficient chainsAvail joins forces with leading layer-2 networks for increased Web3 scalability through data availability and rollu
How to get all ERC-20 tokens owned by an address
Dilip Kumar Patairya9 hours agoHow to get all ERC-20 tokens owned by an addressWallet APIs enable users to quickly locate ERC-20 tokens by wallet address. Chainbase, Alchemy and Moralis provide APIs to get token-related
Avalanche Co-Founder Emin Gün Sirer Discusses Macro Conditions and AVAX Sliding in Value
Avalanche Co-Founder Emin Gün Sirer Discusses Macro Conditions and AVAX Sliding in Value The price of Avalanche has slid significantly since the crypto asset’s all-time hig
Lysander Spooner: Natural Law – The Science of Justice
Lysander Spooner: Natural Law - The Science of JusticeThe science of mine and thine – the science of justice – is the science of all human rights; of all a man’s r
William Suberg20 hours agoBlackRock ETF stirs US Bitcoin buying as research says ‘get off zero’Bitcoin is a must-own as the world’s only truly scarce asset, analysis argues, as U.S. BTC accumulation takes a leg up.
Zebedee Inks Deal With Mobile Game Studio Viker to Add BTC Rewards to Solitaire, Sudoku, Missing Letters
Zebedee Inks Deal With Mobile Game Studio Viker to Add BTC Rewards to Solitaire, Sudoku, Missing Letters Seven days after the financial technology and bitcoin payments firm Zebedee
Massive SOL liquidation by FTX estate nets nearly $2B
Ana Paula Pereira2 hours agoMassive SOL liquidation by FTX estate nets nearly $2BGalaxy Trading, Pantera Capital, and Neptune Digital Assets have acquired nearly two-thirds of FTX’s stake in SOL.649 Total viewsListen t
Savannah Fortis10 hours agoBiden administration issues executive order for new AI safety standardsBiden’s executive order establishes six new standards for AI safety and security and its intentions for ethical AI usage
Wyoming stablecoin may launch Q1 2025 —Governor Mark Gordon
Vince Quill6 hours agoWyoming stablecoin may launch Q1 2025 —Governor Mark GordonPrivate issuers of stablecoins could extend the lifespan of the US dollar by driving demand for the underlying fiat currency.2313 Total v
Patreon Considers Allowing Creators to Use Crypto for Monetization
Patreon Considers Allowing Creators to Use Crypto for Monetization Patreon, the membership platform, is pondering the idea of letting creators in its platform issue their own creat