Fun

Privacy-focused Aleo says KYC leak is copy and paste error

News Feed - 2024-02-28 08:02:18

Amaka Nwaokocha12 hours agoPrivacy-focused Aleo says KYC leak is copy and paste errorAccording to Aleo’s statement, it has begun implementing new long-term technical controls for its KYC confirmation practices.5788 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksDecentralized blockchain platform Aleo has released a statement regarding the recent Know Your Customer (KYC) information exposure. The zero-knowledge (ZK) platform blamed the leak on a copy/paste error in email metadata.


Aleo said in a post on social media platform X that the KYC information leak affected about 10 participants from its recent Aleo Learn and Earn events. Aleo stated that it removed the exposed information, investigated the cause and informed the affected individuals.


The platform gathered users’ unencrypted KYC data through the third-party protocol HackerOne. However, based on Aleo’s findings, it said that it has begun implementing new long-term technical controls for its KYC confirmation practices.


According to reports on X on Feb. 25, Aleo, which focuses on ZK cryptography, revealed some users’ sensitive information.This weekend, Know Your Customer (KYC) information about 10 participants from our recent Aleo Learn & Earn events was mistakenly exposed to other Aleo community members through a copy/paste error in email metadata.

We appreciate everyone’s patience as our team worked to remove…— Aleo (@AleoHQ) February 26, 2024


ZK layer-1 blockchain platforms focus on providing enhanced privacy and security for users. They employ ZK-proof cryptographic techniques to enable transactions without revealing specific details, ensuring confidentiality.


In accordance with Aleo’s internal policies, users must complete KYC and Anti-Money Laundering (AML) requirements and pass the United States Office of Foreign Assets Control (OFAC) screening to claim a reward on Aleo.


This privacy-centric approach makes it challenging for external parties to trace or access sensitive information, offering users greater control over their data. These platforms aim to enhance privacy in blockchain transactions, making them secure and more confidential for participants.


Related:Coinbase expands asset recovery tool to Polygon and BNB Chain


Cointelegraph spoke to Adebayo Tiamiyu, a cybersecurity and blockchain investigations and intelligence expert, who highlighted that if a ZK platform like Aleo attributes KYC information exposure to a copy/paste error in email metadata, it raises concerns about the efficacy of their security protocols.


According to Adebayo, the incident highlights a lapse in handling personal data in blockchains. He further emphasized the need for strict data protection, continuous cybersecurity vigilance, and a “least privilege” approach, as regular audits and enhanced encryption are vital to prevent such incidents, even in supposedly secure blockchain platforms.


The Aleo mainnet is set to launch in the next few weeks once final bugs have been taken care of to bring privacy to crypto transactions, Aleo Foundation executive director Alex Pruden stated.


Cointelegraph reached out to Aleo for details on the technical controls it intends to implement for KYC confirmation practices but has yet to receive a response.


Magazine:What did Satoshi Nakamoto think about ZK-proofs?# Blockchain# Business# Security# KYC# Cybersecurity# zk-RollupAdd reactionAdd reactionRead moreGemini to return at least $1.1B to Earn customers in settlement with NYDFSFrom zombie to unicorn: VCs discuss

News Feed

Permissionless Software Foundation Aims to Foster Open-Source Software With Bitcoin Cash
Permissionless Software Foundation Aims to Foster Open-Source Software With Bitcoin CashJust recently, Bitcoin Cash proponents were introduced to a new foundation called the “
Ezra Reguerra13 hours agoEthical hacker retrieves $5.4M for Curve Finance amid exploitTwitter accounts impersonating Curve Finance have also started to promote a fake refund scheme, further targeting victims of the hack.
Apple Co-Founder Steve Wozniak Expects Bitcoin to Hit $100K — Says ‘I Just Really Feel It From All of the Interest’
Apple Co-Founder Steve Wozniak Expects Bitcoin to Hit $100K — Says "I Just Really Feel It From All of the Interest" Apple co-founder Steve Wozniak expects the price of bitcoin to
Report: Federal Prosecutors in New York Probe Digital Currency Group and Subsidiary Genesis
Report: Federal Prosecutors in New York Probe Digital Currency Group and Subsidiary Genesis Following accusations from Gemini co-founder Cameron Winklevoss in an open letter to Dig
Derek Andersen5 hours agoTornado Cash co-founders charged with money laundering, sanctions violationsRoman Semenov was placed on OFAC’s sanctioned persons list, and Roman Storm was arrested as the United States continu
Ripple’s Asia Pacific Business Flourishing Despite SEC Lawsuit, Says CEO
Ripple"s Asia Pacific Business Flourishing Despite SEC Lawsuit, Says CEO Ripple chief executive officer Brad Garlinghouse said Friday that the company’s bu
SEC delays decision on 7RCC’s eco-friendly spot Bitcoin ETF
Ana Paula Pereira4 hours agoSEC delays decision on 7RCC’s eco-friendly spot Bitcoin ETFThe U.S. SEC has extended its review period on a rule change that would allow the listing of 7RCC’s Spot Bitcoin and Carbon Credi
Hashkey Capital Raises $500 Million for Its Third Fund, Despite Crypto Market Downturn
Hashkey Capital Raises $500 Million for Its Third Fund, Despite Crypto Market Downturn On Tuesday, global asset manager Hashkey, which focuses on crypto and blockchain investments,
Bulgarian Businessman Loses Half a Million Dollars to Call Center Crypto Fraud
Bulgarian Businessman Loses Half a Million Dollars to Call Center Crypto Fraud A Bulgarian investor has lost a large amount of money to fraudsters who convinced him he was putting
Mike Novogratz Laments US Government’s Penchant for Discussing Crypto While Saying ‘Nothing About AI Regulation’
Mike Novogratz Laments US Government"s Penchant for Discussing Crypto While Saying "Nothing About AI Regulation" Galaxy Digital Holdings chief executive Mike Novogratz has said he
Why is ETH demand lacking post-Ethereum ETF?
Biraajmaan Tamuly2 hours agoWhy is ETH demand lacking post-Ethereum ETF?ETH price failed to crack the $3,400 resistance level, as spot Ethereum ETFs are seeing more outflows largely due to Grayscale.801 Total views2 Tota
MiCA regulation takes shape under EBA’s newest guidelines
Ana Paula Pereira2 hours agoMiCA regulation takes shape under EBA’s newest guidelinesThe European Banking Authority has introduced a series of technical standards and guidelines for token issuers as MiCA implementation