Fun

Ether.fi thwarts domain account takeover attempt, confirms user funds safe

News Feed - 2024-09-25 08:09:53

Josh O"Sullivan7 hours agoEther.fi thwarts domain account takeover attempt, confirms user funds safeEther.fi credits security upgrades and partners for thwarting a domain account takeover before user funds were compromised.1650 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTCOINTELEGRAPH IN YOUR SOCIAL FEEDFollow ourSubscribe onEther.fi, a decentralized finance (DeFi) staking protocol, has reported that no user funds were compromised during the recent domain takeover attack.


On Sept. 24, the DeFi protocol faced an attempted domain account takeover involving their domain registrar, Gandi.net, but was stopped before significant harm could occur.


The Ether.fi internal team confirmed that attackers could not present a malicious decentralized application (DApp) on any Ether.fi-related domain.Source:Ether.fi


Related:Ether.fi launching ‘crypto-native’ credit card on ZK-rollup ScrollEther.fi responds to attack


The breach began on Sept. 24 when the DeFi protocol received a recovery notification email from Gandi.net at 4:38 pm UTC.


After verification through the protocol’s security measures, including “SPF, DKIM, and DMARC authentication records,” it was discovered that the attacker was behind the email.


According to an official Ether.fi summary Gitbook post, “it was established an attacker attempted to use the legitimate Gandi recovery flow to gain access to etherfi’s Gandi account.”


Ether.fi immediately contacted Gandi across multiple platforms, and by 7:30 pm UTC, the DeFi staking protocol had confirmed that its account had been locked down to prevent further tampering.


Related:Restaking is ‘inevitable,’ but the risks are still uncertain — Ether.fi CEOSecurity measures


The DeFi protocol implemented security upgrades before the attempted attack, which acted as a buffer to mitigate the threat of the domain takeover attempt.


According to the official Gitbook post weeks prior, Ether.fi noticed an increase in the exploitation of similar attack vectors across other platforms. 


As a precaution, the protocol upgrades its key platforms to require hardware authentication for account recovery and management procedures.


Ether.fi credited its security partners, including Seal911, Doppel, Ethena, and Distrust, for immediate assistance during the attack.


Related:Omni Network seals $600M deal with Ether.FiFollow-up communication and fund safety


On Sept. 24 at 07:13 pm UTC, Ether.fi communicated to its users via social media platform X that they should not “click on any links” or interact with their domain.


The DeFi protocol noted that official communications would come solely through X or Discord and explicitly stated that no communication would come through email.


After resolving the incident, the team stated that “all funds are safe” and that the attackers had “no opportunity” to issue any malicious DApps “on any ether.fi related domain.”


Magazine:Lady of Crypto will be ‘all out of crypto’ by September 2025: X Hall of Flame# Blockchain# Security# Decentralization# Ethereum# Hackers# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Ana Paula Pereira6 hours agoKYC hook for Uniswap v4 stirs community controversyA hook that enables Know Your Customer (KYC) verification on Uniswap V4 pools is fueling debates about DeFi"s future.3733 Total views23 Total
US judge approves Terraform’s $4.5B settlement with SEC
Jesse Coghlan1 hour agoUS judge approves Terraform’s $4.5B settlement with SECA New York district court judge has rubber-stamped Terraform Labs and Do Kwon’s nearly $4.5 billion settlement with the SEC.451 Total view
Venezuelans Made Lightning-Savvy Hardware to Use Bitcoin During Blackouts
On March 7, 2019, all the lights went out in Venezuela. Total blackout. While the electricity crisis was already part of everyday life, the blackout still crippled communications ac
Ripple CEO Wants To Take Over SWIFT’s Customers — Centrals Banks Tap In
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Sources With Ties to Washington Say Joe Biden Will Renominate Fed Chair Jerome Powell
Sources With Ties to Washington Say Joe Biden Will Renominate Fed Chair Jerome Powell Unnamed sources familiar with the matter indicate the Biden administration may allow Federal R
Helen Partz14 hours agoBelarus wants to ban P2P cryptocurrency transactionsThe Ministry of Foreign Affairs of the Republic of Belarus cited a high crypto crime rate for banning all citizens from exchanging Bitcoin with e
Amaka Nwaokocha12 hours agoAI startup Helsing raises $223 million in Series B funding for defense solutionsThe company emphasized its commitment to advancing AI technology for the safeguarding of democratic nations.1440
Guneet Kaur7 hours agoHow to use ChatGPT like a proLearn how to use ChatGPT like a pro to enhance your productivity, optimize your interactions, and unlock the full potential of ChatGPT.1218 Total views2 Total sharesList
Brayden Lindrea6 hours agoWeb3 should draw newcomers, not be a ‘money grab from brands’ — Tech CEOUsing Web3 and NFTs to create another slate of millionaires isn’t a good use of the technology, says EndeavourXR C
Tristan Greene6 hours agoNew research shows how brain-like computers could revolutionize blockchain and AIA CMOS-compatible neuromorphic computing chip could be on the horizon thanks to breakthrough research out of Techn
Turkish Misyon Bank moves into digital assets with Taurus
Helen Partz12 hours agoTurkish Misyon Bank moves into digital assets with TaurusCredit Suisse-backed Taurus will provide the Turkish neobank Misyon with tools to enable digital asset custody and tokenization services.124
Bitcoin Pulls Back To Daily EMA 8 – Can Bulls Hold Momentum?
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu