Fun

CoinStats hack caused by ‘socially engineered’ employee, CEO suspects

News Feed - 2024-06-27 04:06:11

Arijit Sarkar1 hour agoCoinStats hack caused by ‘socially engineered’ employee, CEO suspectsCoinStats reveals an employee-targeted social engineering attack behind the hack affecting 1.3% of wallets.316 Total viewsListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksThe recent hack of 1,590 CoinStats crypto wallets was carried out by compromising a CoinStats employee.


On June 22, the cryptocurrency portfolio manager CoinStats temporarily suspended its services after discovering an active attack on its wallets. A swift and proactive response limited the hacker’s access to only 1.3% of all CoinStats wallets, resulting in a loss of $2 million.Source:Narek Gevorgyan


Five days later, on June 26, Narek Gevorgyan, CEO of CoinStats, revealed the findings of an internal investigation:“Our AWS infrastructure was hacked, with strong evidence suggesting it was done through one of our employees who was socially engineered into downloading malicious software onto his work computer.”


Social engineering is a widely-used tactic used by hackers to manipulate, influence or deceive a victim in order to gain control over a computer system.CoinStats shut down its website while it resolves the security issue. Source: CoinStats


While Gevorgyan’s message did not explicitly promise refunds for all victims, the company plans to provide a detailed plan of action after conducting a thorough post-mortem analysis of the situation.“I empathize with those who lost money; I’m sure their situation is just as difficult. CoinStats will definitely support the victims of the hack, and we’ve been discussing options internally.”


Some community members have reported even greater losses due to the breach. For instance, a wallet owned by Blurr.eth allegedly lost 3,657 Maker (MKR) tokens valued at approximately $8.7 million.Source:Wu Blockchain


However, the company has yet to acknowledge the claims.


Related:1,590 CoinStats crypto wallets ‘affected’ in security breach


Security breaches have become a rising concern among crypto service providers. On June 5, cryptocurrency data aggregator CoinGecko suffered a data breach via its third-party email management platform GetResponse.


Similar to the CoinStats hack, the security breach at CoinGecko occurred due to a compromised employee account, according to the company’s June 7 announcement:“An attacker had compromised a GetResponse employee’s account, leading to a breach. We received confirmation from the GetResponse team on 6 June 2024, at 11:58 AM UTC, that a data breach had occurred.”


The compromised data include users’ names, email addresses, IP addresses, location of email opens and other metadata such as sign-up dates and subscription plans.


Magazine:Polkadot’s Indy 500 driver Conor Daly: ‘My dad holds DOT, how mad is that?’# Blockchain# Business# Wallet# Hackers# Hacks# InvestigationAdd reaction

News Feed

DeFi pump-and-dump schemes rake in millions, harm industry credibility
Francisco Rodrigues9 hours agoDeFi pump-and-dump schemes rake in millions, harm industry credibilityOver 90,000 Ethereum-based projects were likely involved in pump-and-dumps schemes, damaging the industry’s reputation
South Korea Proposes Law Allowing Direct Seizure and Sale of Crypto Assets to Pay Overdue Taxes
South Korea Proposes Law Allowing Direct Seizure and Sale of Crypto Assets to Pay Overdue Taxes The South Korean government has proposed an amendment to the tax
TOTHESMART Is Transitioning to Its Own Token What Is the TTS Token Phenomenon?
TOTHESMART Is Transitioning to Its Own Token What Is the TTS Token Phenomenon? press release PRESS RELEASE.TOTHESMART is a PlayToEarn mining farm built on Binance Smart Chain blockc
Judith BannermanQuist6 hours agoCFTC issues $54M default judgment against trader in crypto fraud schemeAs a result of the judgment, the defendant is also now prohibited from engaging in any trading activities within mark
Neon Link’s Gaming-Focused Neon Coin Presale Begins
Neon Link’s Gaming-Focused Neon Coin Presale Begins press release PRESS RELEASE. LONDON, ENGLAND – February 15th, 2023 – Neon Link, the new blockchain gaming ecosyst
Coinbase to add proof of reserves to Bitcoin wrapper cbBTC
Alex O’Donnell4 hours agoCoinbase to add proof of reserves to Bitcoin wrapper cbBTCAdding proof of reserves will head off concerns about Coinbase’s perceived lack of transparency.777 Total views2 Total sharesListen t
Hashdex files S-1 for ETF to hold Bitcoin, Ether and potentially others
Brayden Lindrea9 hours agoHashdex files S-1 for ETF to hold Bitcoin, Ether and potentially othersThe Hashdex Nasdaq Crypto Index US ETF could see other cryptocurrencies added down the track, subject to all the necessary
Russia’s First Digital Financial Assets Expected This Year, Lawmaker Says
Russia’s First Digital Financial Assets Expected This Year, Lawmaker Says The first digital financial assets based on Russian blockchains may be issued as early as this year, a h
Solana Network Activity Grows As 11M Wallets Now Hold 0.1 SOL Or More – Analyst
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
ENS to end eth.link domain suit after DAO greenlights $300K settlement
Jesse Coghlan5 hours agoENS to end eth.link domain suit after DAO greenlights $300K settlementENS Labs has been given approval from its DAO to settle and dismiss a legal fight over the ownership of the eth.link domain.81
Morgan Stanley Analyst Says Crypto Economy’s Liquidity Improved, but There’s ‘No Huge Demand to Re-Leverage’
Morgan Stanley Analyst Says Crypto Economy"s Liquidity Improved, but There"s "No Huge Demand to Re-Leverage" An analyst at the New York-based financial services and investment mana
Friend​.tech v2 airdrop could introduce nontransferable token
Zoltan Vardai12 hours agoFriend​.tech v2 airdrop could introduce nontransferable tokenMaking the token nontransferable could force users to pay the 1.5% Friend.tech platform fee in an “ironic” shift from the platfo