Fun

Blockchain identity platform Fractal ID suffers data breach

News Feed - 2024-07-18 05:07:00

Christopher Roark3 hours agoBlockchain identity platform Fractal ID suffers data breachFractal ID gave notice that an attacker had gained access to an operator’s account, leading to the leak of a small percentage of users’ personal data.376 Total views13 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksBlockchain identity platform Fractal ID suffered a data breach on July 14, according to a notice published on Fractal’s website on July 17. Partners of the platform include the payment system Gnosis Pay, decentralized finance app Acala, the proof of personhood project Polygon ID, the social media platform Lukso, and other Web3 applications. 


In its statement, Fractal did not identify which partners were affected by the breach, if any. Some users on X reported receiving emails from the Gnosis Pay team alerting of the breach and warning them to “be cautious of unsolicited communications.”


Fractal stated that the breach only affected “approximately 0.5% of the Fractal ID user base.”Source: Fractal ID


According to the notice, “A third party external to Fractal ID gained unauthorized access to an operator’s account and ran an API script that started at 05:14 am UTC to access users’ personal data.” Once the team noticed the breach, they “took action to log the attacker off the system by 07:29 AM UTC.” Thus, the attack seemingly took place over a period of two hours and 14 minutes.


The notice states that only a limited number of accounts had data stored in this particular operator’s account, amounting to just 0.5% of Fractal"s total user base. For those particular users, the data that was potentially leaked “may include names, email addresses, wallet addresses, phone numbers, physical addresses, images and pictures of uploaded documents.”


Fractal claimed that the breach did not affect clients" systems or products, as it was “contained within [Fractal’s] environment.” Even so, affected users should be “cautious of unsolicited communications requesting additional personal information,” the notice stated.


Web3 developer Paulo Fonseca posted an image of an email reportedly sent to some GnosisPay users. “At 7:30 PM CET Monday, 15th July 2024, our Know Your Customer (KYC) service provider Fractal ID made the Gnosis Pay team aware that it had suffered a data breach on Sunday 14th July 2024,” the email stated.Reported Gnosis Pay email regarding breach. Source: Paulo Fonseca


The recipient of the email’s information “was not part of the data that was accessed,” it stated. Even so, it warned the user to “be cautious of unsolicited communications requesting additional personal information.”


Cointelegraph contacted Gnosis for comment but did not receive a response by the time of publication.


Related:Chainlink’s CCIP protocol and Automation now live on Gnosis


Most jurisdictions require cryptocurrency exchanges or payment providers to record and store know-your-customer (KYC) information on every customer they serve. This information can include images of users" identity documents, names, physical addresses, emails, and other sensitive data. Supporters of KYC requirements claim that this practice is necessary to prevent money laundering, while critics claim that it poses a risk of personal data being leaked.


On June 27, crypto ID provider Autix10 announced that its administration credentials had been leaked online. But in this case, the attacker appeared to have not obtained any actual customer data. On July 3, the 2-factor authentication app Authy also suffered a data breach, resulting in the phone numbers of users being leaked.


Magazine: Crypto-Sec: Evolve Bank suffers data breach, Turbo Toad enthusiast loses $3.6K# Ethereum# Identity# Adoption# KYC# Hackers# Gnosis# DeFi# RegulationAdd reaction

News Feed

Bitcoin bottomed at $56K? BTC price chart hints at breakout within days
Zoltan Vardai7 hours agoBitcoin bottomed at $56K? BTC price chart hints at breakout within daysAdding to the bullish technical formation, Bitcoin"s distribution "danger zone" has officially ended, according to popular an
Argentine Tax Authority AFIP Detects Irregularities in 184 Digital Wallet Tax Statements
Argentine Tax Authority AFIP Detects Irregularities in 184 Digital Wallet Tax Statements The Argentine tax authority (AFIP) is increasing its scrutiny when it comes to digital wall
Apple holds back AI releases in EU due to Digital Markets rules
Derek Andersen2 hours agoApple holds back AI releases in EU due to Digital Markets rulesHundreds of millions of people will be denied access to new Apple features.354 Total views3 Total sharesListen to article 0:00NewsOw
Bitfinex Files for Subpoena in Bid to Recover $880 Million in Frozen Funds
Bitfinex has applied to a U.S. court to subpoena a former banking executive of a trust company that the crypto exchange believes can help it recover over $850 million in frozen funds.
Samurai, Get Ready to Slash Yōkai Souls Again in Nioh 2 Open Beta
Critical smash-hit Nioh"s sequel has an open beta coming in November. | Source: PlayStationFresh off releasing a new trailer at the Tokyo Game Show, developer Team Ninja has announc
US Lawmaker Suggests ‘Maybe’ Crypto Should Be Banned Citing Bigger Issues Than FTX
US Lawmaker Suggests "Maybe" Crypto Should Be Banned Citing Bigger Issues Than FTX A U.S. senator has suggested that cryptocurrency should “maybe” be banned following t
Blockchain Company Polygon Chosen to Participate in Disney’s 2022 Accelerator Program
Blockchain Company Polygon Chosen to Participate in Disney’s 2022 Accelerator Program The blockchain company Polygon has been chosen to join Disney’s Accelerator program,
Brayden Lindrea3 hours agoRiot Platforms to add 33,000 Bitcoin miners ahead of 2024 halvingThe new rigs will add 7.6 EH/s to the firm’s self-mining capacity, but won’t be installed until the first quarter of 2024.274
SEC, CFTC, FinCEN Warn Crypto Industry to Follow US Banking Laws
The heads of three U.S. financial regulators warned the cryptocurrency industry to abide by banking laws in a joint statement published Friday. The statement, signed by Commodity Fu
Derek Andersen2 hours agoInternational financial group finds gaps in digital euro legislative packageThe Institute of International Finance looked at seven areas where digital euro legislation, which is being developed a
Silk Road Mentor’s Arrest Rekindles Tales of Rogue Agents and Pirate’s Treasure
Silk Road Mentor"s Arrest Rekindles Tales of Rogue Agents and Pirate"s Treasure On January 30, the United States Attorney for the Southern District of New York (SDNY) revealed th
TSX-Listed Voyager Digital ‘Temporarily’ Suspends Trading, Deposits, and Withdrawals
TSX-Listed Voyager Digital "Temporarily" Suspends Trading, Deposits, and Withdrawals After the TSX-listed Voyager Digital revealed that it was owed $655 million from Three Arrows C