Fun

Crypto execs on DeFi domain hacks: Don’t interact with crypto for now

News Feed - 2024-07-12 05:07:20

Ezra Reguerra46 minutes agoCrypto execs on DeFi domain hacks: Don’t interact with crypto for nowCoinGecko founder Bobby Ong explained that after Google sold its domain business to Squarespace, two-factor authentication was removed due to the forced migration of domains.312 Total views5 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksAs the vulnerability on Squarespace domains threatens the decentralized finance (DeFi) space with phishing attacks, Web3 professionals shared their advice on what users and those affected can do to avoid the attacks. 


On July 11, security investigator ZachXBT shared a Telegram post warning the community to stay away from the Compound Finance website, which redirected to a phishing site. The DeFi protocol was the first to be hijacked because of the vulnerability.


Following this, the Celer Network announced that it had also been attacked but successfully thwarted the attempt.


Meanwhile, DefiLlama developer “0xngmi” shared a list of domains vulnerable to the same attack vector. The list had over 100 protocols, including Polymarket, dYdX and Pendle Finance.Don’t interact with crypto for the next few days


CoinGecko founder Bobby Ong said the attack stemmed from Squarespace’s domain registrar. The executive explained that after Google sold its domain business to Squarespace, two-factor authentication (2FA) was removed due to the forced migration of domains.


This made the domains vulnerable. According to Ong, the community should wait until the issue is fixed before interacting with crypto again. “Best thing to do is to not interact with crypto and rest for the next couple of days until everything is resolved,” Ong added.


Related:CoinStats exploiter moves almost $1M to Tornado CashConsider transferring to other domain providers


Security researcher Samzsun said those affected by the recent domain hijacking on Squarespace might need to consider transferring to other providers. The white hat hacker recommended Cloudflare, Amazon Web Services Route 53, MarkMonitor and CSC DBS.


Meanwhile, Matthew Gould, the founder and CEO of Web3 domain provider Unstoppable Domains (UD), took the opportunity to explain how this type of attack may be avoided with Web3 domains. Gould explained:“By creating verified onchain records for domains we can offer an extra layer of protection browsers and others can check to help fight these types of attacks.”


The executive added that users could even configure their DNS records to not update unless they provide a verified onchain signature.


The executive also floated the idea of disallowing records updates without signatures from wallets. This would require hackers to attack the registrar and the user separately.


“So if your UD account was compromised, or UD itself as a registrar was compromised, but not your wallet, the malicious user could not alter your domain in DNS," Gould added.


Magazine:Lazarus Group’s favorite exploit revealed — Crypto hacks analysis# Blockchain# Security# Hackers# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

78 Days: Measuring the Extended Crypto Market Downturn Against Prior Bear Markets
78 Days: Measuring the Extended Crypto Market Downturn Against Prior Bear Markets The crypto economy has shed enormous value over the last three months and the leading crypto asset
Bill Gates: Crypto Is 100% Based on Greater Fool Theory — ‘I’m Not Involved in That’
Bill Gates: Crypto Is 100% Based on Greater Fool Theory — "I"m Not Involved in That" Microsoft co-founder Bill Gates says crypto is an asset class that is 100% based on the Great
Why You Need to Buy Sassy Unicorns NFT
Why You Need to Buy Sassy Unicorns NFT sponsored What Are Sassy Unicorns NFT Sassy Unicorns are a collection of 10,000 unique NFTs on the Ethe
NY Regulators Seize Control of Signature Bank, Depositors Assured by Federal Bailout
NY Regulators Seize Control of Signature Bank, Depositors Assured by Federal Bailout On Sunday, the New York Department of Financial Services, or DFS, announced that it had taken p
Ledger Leak Invokes Legal Action, One Customer Allegedly Threatened With Home Invasion
Ledger Leak Invokes Legal Action, One Customer Allegedly Threatened With Home Invasion Just recently, reports of the Ledger customer database breach being dumped
Samsung Working With Ripple Partner, Finablr, on International Payments
Samsung Pay now has an international remittance feature, utilizing a platform owned by Finablr, a London-listed Ripple partner. Branded as Money Transfer, the service is currently a
Stablecoin competition crucial for regulatory engagement — Tether CEO
Gareth Jenkinson24 minutes agoStablecoin competition crucial for regulatory engagement — Tether CEOTether CEO Paolo Ardoino says adding new players to the stablecoin landscape is crucial to increasing legitimacy in the
Daniele Bernardi10 hours agoDemand is driving the price of Bitcoin to $130KData that accurately predicted when Bitcoin would decline in 2021 now indicates that it will climb to $130,000 — and possibly higher.9846 Total
DeFi Technologies slams ‘defamatory’ report that tanked its stock 28%
Jesse Coghlan3 hours agoDeFi Technologies slams ‘defamatory’ report that tanked its stock 28%The ETP issuer says a Tuesday CoinSnacks report was likely “commissioned by short sellers,” which the crypto-focused ne
Aave protocol’s GHO stablecoin now live on Arbitrum
Vince Quill1 hour agoAave protocol’s GHO stablecoin now live on ArbitrumThe deployment of the GHO stablecoin on the Ethereum layer-2 network will leverage Chainlink"s CCIP interoperability protocol.410 Total views22 To
SingularityNET to invest $53M in AI infrastructure, modular supercomputer
Ana Paula Pereira11 hours agoSingularityNET to invest $53M in AI infrastructure, modular supercomputerThe investment includes modular data centers and high-performance AI infrastructure for advancements in deep neural ne
Former Goldman Sachs CEO: If I Were a Regulator, I’d Be Hyperventilating at the Success of Bitcoin
Former Goldman Sachs CEO: If I Were a Regulator, I"d Be Hyperventilating at the Success of Bitcoin Former Goldman Sachs CEO Lloyd Blankfein has offered his view