Fun

Ether.fi thwarts domain account takeover attempt, confirms user funds safe

News Feed - 2024-09-25 08:09:53

Josh O"Sullivan7 hours agoEther.fi thwarts domain account takeover attempt, confirms user funds safeEther.fi credits security upgrades and partners for thwarting a domain account takeover before user funds were compromised.1650 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTCOINTELEGRAPH IN YOUR SOCIAL FEEDFollow ourSubscribe onEther.fi, a decentralized finance (DeFi) staking protocol, has reported that no user funds were compromised during the recent domain takeover attack.


On Sept. 24, the DeFi protocol faced an attempted domain account takeover involving their domain registrar, Gandi.net, but was stopped before significant harm could occur.


The Ether.fi internal team confirmed that attackers could not present a malicious decentralized application (DApp) on any Ether.fi-related domain.Source:Ether.fi


Related:Ether.fi launching ‘crypto-native’ credit card on ZK-rollup ScrollEther.fi responds to attack


The breach began on Sept. 24 when the DeFi protocol received a recovery notification email from Gandi.net at 4:38 pm UTC.


After verification through the protocol’s security measures, including “SPF, DKIM, and DMARC authentication records,” it was discovered that the attacker was behind the email.


According to an official Ether.fi summary Gitbook post, “it was established an attacker attempted to use the legitimate Gandi recovery flow to gain access to etherfi’s Gandi account.”


Ether.fi immediately contacted Gandi across multiple platforms, and by 7:30 pm UTC, the DeFi staking protocol had confirmed that its account had been locked down to prevent further tampering.


Related:Restaking is ‘inevitable,’ but the risks are still uncertain — Ether.fi CEOSecurity measures


The DeFi protocol implemented security upgrades before the attempted attack, which acted as a buffer to mitigate the threat of the domain takeover attempt.


According to the official Gitbook post weeks prior, Ether.fi noticed an increase in the exploitation of similar attack vectors across other platforms. 


As a precaution, the protocol upgrades its key platforms to require hardware authentication for account recovery and management procedures.


Ether.fi credited its security partners, including Seal911, Doppel, Ethena, and Distrust, for immediate assistance during the attack.


Related:Omni Network seals $600M deal with Ether.FiFollow-up communication and fund safety


On Sept. 24 at 07:13 pm UTC, Ether.fi communicated to its users via social media platform X that they should not “click on any links” or interact with their domain.


The DeFi protocol noted that official communications would come solely through X or Discord and explicitly stated that no communication would come through email.


After resolving the incident, the team stated that “all funds are safe” and that the attackers had “no opportunity” to issue any malicious DApps “on any ether.fi related domain.”


Magazine:Lady of Crypto will be ‘all out of crypto’ by September 2025: X Hall of Flame# Blockchain# Security# Decentralization# Ethereum# Hackers# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

SEC Lawsuit: Tierion to Refund Investors From Its $25 Million Token Sale
SEC Lawsuit: Tierion to Refund Investors From Its $25 Million Token Sale The U.S. Securities and Exchange Commission (SEC) has taken action against another start
Derek Andersen5 hours agoGeorgia preparing limited live CBDC pilot, considering Ripple among tech providersAs the country is considered for EU membership, the digital lari is seen as providing interoperability with a dig
Dogecoin Could Hit $1.42 This Cycle In Bull Case, Says 21Shares
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
NFT-Collateralizing South African Startup Raises $5 Million in Latest Seed Round
NFT-Collateralizing South African Startup Raises $5 Million in Latest Seed Round A South African startup, NFTfi, is reported to have recently raised $5 million which the company in
Only 4% of Companies in Spain Have Moved to Offer Services in the Metaverse
Only 4% of Companies in Spain Have Moved to Offer Services in the Metaverse Only 4% of the companies in Spain have managed to apply the metaverse to their operations, according to
Analyst Shares Upper And Lower Targets For XRP Price
Este artículo también está disponible en español. XRP’s price action within the past seven days has been limited to a trading rangeas investors look to recover the
Report Says Binance Shared Client Data With Russia, Crypto Exchange Denies Allegations
Report Says Binance Shared Client Data With Russia, Crypto Exchange Denies Allegations Cryptocurrency exchange Binance has been accused in a media report of agreeing to provide use
Lebanese Currency Collapse: Failed Policies Led to Economic Meltdown
Lebanese Currency Collapse: Failed Policies Led to Economic MeltdownLebanon is facing an unprecedented economic crisis and the local currency has already lost about 60% of its value
Tristan Greene6 hours agoCircle preps $1B war chest to deal with market threats from PayPal and othersCircle’s USDC stablecoin has dropped from $45 billion in circulation at the start of 2023 to just $26 billion as the
Mining Hardware Manufacturer Bitfury Plans to Go Public
Mining Hardware Manufacturer Bitfury Plans to Go Public Bitfury, the non-Chinese bitcoin mining hardware manufacturer, is reportedly planning to go public in the next 12 months. Th
TRON (TRX) Above $0.31, But Is It Just the Beginning? Key Metric Shows Buyers Dominating
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Ethereum ETF Inflows Hit 8-Week Streak—Institutions Still Buying
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu