Binance Square

hackers

398,118 views
185 Discussing
Cryptoniteuae
--
On January 9, the US Securities and Exchange Commission (SEC) suffered a significant breach of cybersecurity and a loss of public confidence as a result of a social media account hack that led to a fake announcement about the approval of spot Bitcoin exchange-traded funds (ETFs). For a short while, hackers gained access to the SEC's X account and released a statement purporting the organisation had approved the much anticipated products, which momentarily raised the price of Bitcoin. US officials launched a probe into the incident, and the SEC's cybersecurity and position on cryptocurrency came under fresh fire. #ETFApprovalDreams #hackers #SEC #CryptoniteUae #BTCETFSPOT
On January 9, the US Securities and Exchange Commission (SEC) suffered a significant breach of cybersecurity and a loss of public confidence as a result of a social media account hack that led to a fake announcement about the approval of spot Bitcoin exchange-traded funds (ETFs).

For a short while, hackers gained access to the SEC's X account and released a statement purporting the organisation had approved the much anticipated products, which momentarily raised the price of Bitcoin. US officials launched a probe into the incident, and the SEC's cybersecurity and position on cryptocurrency came under fresh fire.

#ETFApprovalDreams #hackers #SEC #CryptoniteUae #BTCETFSPOT
This Article Shares 8 Security Practices That Everyone Should Be Using to Avoid Crypto HacksCrypto hackers have stolen $4+ billion in the last 2 years. If you are not careful, you'll be next. This article shares 8 security practices that everyone should be using. If you already have multisig, virtual machines, 3 identities, your own email servers, a nuclear bunker and a lifetime supply of ramen. Then you wonโ€™t need this guide, For everyone else let's begin. 1. Crypto Storage Hardware Wallets (Tier 1) - Ledger, NGRAVE, Trezor Paper Wallet (Tier 2) - Easily lost and damaged. But costs only time. Desktop wallet (Tier 3) - Only as safe as the system they are on. Not Ideal. 2. Emails Old emails with weak passwords are a common point of entry for hackers. If youโ€™ve had it for a while and used it for multiple websites, chances are you want to get rid of it. 3. VPN Most main providers are good enough (nord / express). You can take your privacy even further and try something like Mullvad. 4. 2FA 2FA everything. Cold 2fa Device (Tier 1) - Yubikey or Google Titan Custom 2fa Device (Tier 2) - Cheaper option is to buy a cheap phone, download 2fa, swap it to flight mode forever. Note: 2FA can be circumvented, it is not an absolute defence.\ 5. Passwords This is where we disproportionately limit the damage a successful hack can do to us. Iโ€™m going to share a multilevel system Iโ€™ve built for myself. There are two tiers of data. Level 1 Data Level 2 Data Level 1 Data To determine if your data is level 1 ask yourself this. "If a hacker had access to only this information, would they be able to attack me?" For example, if a hacker gained access to your private keys, they could directly access your cryptocurrency. Level 1 Data Rules - Keep offline - Never be stored on your laptop - When entering these passwords, you will alternate between using your actual keyboard and an on-screen keyboard - These passwords will be a minimum of 15 keys long and as complex as possible - Have back ups Level 2 Data Any data which on its own cannot grant the hacker access to any of your funds or important data is considered level 2. This means If a hacker were to gain access to a level 2 password, they would still be unable to actually access anything vulnerable. Level 2 Data Rules You can randomly generate by your password manager and should never be typed, always copy and paste from your manager without revealing the password in case you are being watched or key logged. 6. EXCHANGES Don't trust any sketchy exchanges with your crypto. -Deposit only what you need to buy/sell. -Use reputable exchanges like Binance. - Use 2FA -Set a global lock that requires a minimum wait time before settings are changed -Whitelist your addresses and set a lock on adding new addresses -Use leverage to reduce counterparty risk 7. Advanced: Separate computers Separate computers are an expensive option so decide if itโ€™s worth the investment relative to the value of your online security and assets. -High Security Computer -Low Security Computer High Security Computer Used only for handling crypto, banking, trading and other sensitive activities. Your high security device is never to deviate from essential websites or click on any links. All it takes is one mistake to compromise your security. Low Security Computer For all other activities, you can use your low security device. There should never be crossover between these two devices. 8. PROTECT OTHERS Someone you care about getting attacked can be leveraged against you. Share this with others and make sure they are as protected as you. #hackers #BitEagleNews

This Article Shares 8 Security Practices That Everyone Should Be Using to Avoid Crypto Hacks

Crypto hackers have stolen $4+ billion in the last 2 years.
If you are not careful, you'll be next.
This article shares 8 security practices that everyone should be using.
If you already have multisig, virtual machines, 3 identities, your own email servers, a nuclear bunker and a lifetime supply of ramen.
Then you wonโ€™t need this guide,
For everyone else let's begin.

1. Crypto Storage
Hardware Wallets (Tier 1) - Ledger, NGRAVE, Trezor
Paper Wallet (Tier 2) - Easily lost and damaged. But costs only time.
Desktop wallet (Tier 3) - Only as safe as the system they are on. Not Ideal.

2. Emails
Old emails with weak passwords are a common point of entry for hackers.
If youโ€™ve had it for a while and used it for multiple websites, chances are you want to get rid of it.

3. VPN
Most main providers are good enough (nord / express).
You can take your privacy even further and try something like Mullvad.

4. 2FA
2FA everything.
Cold 2fa Device (Tier 1) - Yubikey or Google Titan
Custom 2fa Device (Tier 2) - Cheaper option is to buy a cheap phone, download 2fa, swap it to flight mode forever.
Note: 2FA can be circumvented, it is not an absolute defence.\

5. Passwords
This is where we disproportionately limit the damage a successful hack can do to us. Iโ€™m going to share a multilevel system Iโ€™ve built for myself.
There are two tiers of data.
Level 1 Data
Level 2 Data

Level 1 Data
To determine if your data is level 1 ask yourself this.
"If a hacker had access to only this information, would they be able to attack me?"
For example, if a hacker gained access to your private keys, they could directly access your cryptocurrency.

Level 1 Data Rules
- Keep offline
- Never be stored on your laptop
- When entering these passwords, you will alternate between using your actual keyboard and an on-screen keyboard
- These passwords will be a minimum of 15 keys long and as complex as possible
- Have back ups

Level 2 Data
Any data which on its own cannot grant the hacker access to any of your funds or important data is considered level 2.
This means If a hacker were to gain access to a level 2 password, they would still be unable to actually access anything vulnerable.

Level 2 Data Rules
You can randomly generate by your password manager and should never be typed, always copy and paste from your manager without revealing the password in case you are being watched or key logged.

6. EXCHANGES
Don't trust any sketchy exchanges with your crypto.
-Deposit only what you need to buy/sell.
-Use reputable exchanges like Binance.
- Use 2FA
-Set a global lock that requires a minimum wait time before settings are changed
-Whitelist your addresses and set a lock on adding new addresses
-Use leverage to reduce counterparty risk

7. Advanced: Separate computers
Separate computers are an expensive option so decide if itโ€™s worth the investment relative to the value of your online security and assets.
-High Security Computer
-Low Security Computer

High Security Computer
Used only for handling crypto, banking, trading and other sensitive activities.
Your high security device is never to deviate from essential websites or click on any links.
All it takes is one mistake to compromise your security.

Low Security Computer
For all other activities, you can use your low security device.
There should never be crossover between these two devices.

8. PROTECT OTHERS
Someone you care about getting attacked can be leveraged against you.
Share this with others and make sure they are as protected as you.

#hackers #BitEagleNews
See original
HTX and Poloniex assets are '100% safe', says Justin Sun after $200M hack Cryptocurrency tycoon Justin Sun has said assets held on HTX and Poloniex are "100% safe" following last month's hack in which more than $200 million was siphoned from both exchanges. Both exchanges have opened withdrawals for certain assets, although several altcoins remain blocked. Bitcoin (BTC) and Tron (TRX) are the two digital assets that could retire; This led to both tokens trading at a premium on Poloniex over the past few weeks, meaning users would have to take a haircut of up to 10% to liquidate their asset and withdraw another. The withdrawal freeze came after hackers stole $114 million from Poloniex hot wallets on November 10; This was followed by the theft of $97 million from HTX and the Heco Chain blockchain protocol. โ€œAt this time, Poloniex and HTX have recovered from the attack and we are resuming tokens one by one,โ€ investor Justin Sun told CoinDesk. at Poloniex and HTX advisor. โ€œI think for HTX, we have already recovered 95% in terms of assets worth dollars. At Poloniex, we have recovered around 85% in terms of dollar asset value.โ€ โ€œAnd also note that since we have already covered all token losses on the platform, on HTX and Poloniex, 100% of the assets are 100% safe,โ€ Sun added. โ€œAlthough in terms of the exchanges themselves, we basically need to make those profits in the future. But for clientsโ€™ assets, it is 100% safe.โ€ An HTX spokesperson told CoinDesk: โ€œThe recent exit represents a small fraction of our total reserves, and HTX remains in stable and healthy operation.โ€ #HTXExchange #PoloniexHack #hackers #exploit #BTC
HTX and Poloniex assets are '100% safe', says Justin Sun after $200M hack

Cryptocurrency tycoon Justin Sun has said assets held on HTX and Poloniex are "100% safe" following last month's hack in which more than $200 million was siphoned from both exchanges.

Both exchanges have opened withdrawals for certain assets, although several altcoins remain blocked. Bitcoin (BTC) and Tron (TRX) are the two digital assets that could retire; This led to both tokens trading at a premium on Poloniex over the past few weeks, meaning users would have to take a haircut of up to 10% to liquidate their asset and withdraw another.

The withdrawal freeze came after hackers stole $114 million from Poloniex hot wallets on November 10; This was followed by the theft of $97 million from HTX and the Heco Chain blockchain protocol. โ€œAt this time, Poloniex and HTX have recovered from the attack and we are resuming tokens one by one,โ€ investor Justin Sun told CoinDesk. at Poloniex and HTX advisor. โ€œI think for HTX, we have already recovered 95% in terms of assets worth dollars. At Poloniex, we have recovered around 85% in terms of dollar asset value.โ€

โ€œAnd also note that since we have already covered all token losses on the platform, on HTX and Poloniex, 100% of the assets are 100% safe,โ€ Sun added. โ€œAlthough in terms of the exchanges themselves, we basically need to make those profits in the future. But for clientsโ€™ assets, it is 100% safe.โ€

An HTX spokesperson told CoinDesk: โ€œThe recent exit represents a small fraction of our total reserves, and HTX remains in stable and healthy operation.โ€
#HTXExchange #PoloniexHack #hackers #exploit #BTC
๐Ÿ‘‰๐Ÿ‘‰๐Ÿ‘‰ #PhishingScams Targeted Decrypt Newsletter Subscribersโ€”Hereโ€™s the Latest In the early hours of March 27, #hackers posing as Decrypt sent an email to our newsletter subscribers announcing a fabricated token airdrop. Upon discovering the phishing attempt, we promptly sent a follow-up email to alert our readers of the scam. Regrettably, in our urgency to caution our subscribers and due to a previous phishing incident in January, we mistakenly attributed fault to our email service provider, MailerLite, for this attack. However, it has since been clarified that the hackers obtained our password key from Decrypt's endโ€”MailerLite bears no responsibility. โ€œDue to security measures, MailerLite does not retain API key information, making it inaccessible in MailerLiteโ€™s admin panel or the account in general,โ€ explained a MailerLite spokesperson today. โ€œAs a result, despite Decrypt Media's account being affected during the data breach on January 23, 2024, perpetrators were unable to access API keys that could facilitate the sending of phishing campaigns on March 27, 2024.โ€ We extend our sincere apologies to MailerLite for our hasty misjudgment. We'll cooperate with law enforcement as we investigate. MailerLite reported that the phishing campaigns originated from IP address "69.4.234.86" and used user agent "python-requests/2.31.0" via their API. The intruders removed addresses ending in decrypt.co or decryptmedia.com from our list to evade detection before sending the fraudulent emails. While most readers remain vigilant against phishing attempts, one individual tried to connect their wallet to a bogus address. Even one instance is concerning. #CryptoScams are rampant and sophisticated. Decrypt, like other crypto entities, has been impersonated. Hackers create fake websites, Discord servers, and social media accounts impersonating our team. Note that we only operate under decrypt.co and decryptmedia.com domainsโ€”be cautious of other domains! Source - decrypt.co #CryptoNews๐Ÿ”’๐Ÿ“ฐ๐Ÿšซ #BinanceSquareTalks
๐Ÿ‘‰๐Ÿ‘‰๐Ÿ‘‰ #PhishingScams Targeted Decrypt Newsletter Subscribersโ€”Hereโ€™s the Latest

In the early hours of March 27, #hackers posing as Decrypt sent an email to our newsletter subscribers announcing a fabricated token airdrop. Upon discovering the phishing attempt, we promptly sent a follow-up email to alert our readers of the scam.

Regrettably, in our urgency to caution our subscribers and due to a previous phishing incident in January, we mistakenly attributed fault to our email service provider, MailerLite, for this attack. However, it has since been clarified that the hackers obtained our password key from Decrypt's endโ€”MailerLite bears no responsibility.

โ€œDue to security measures, MailerLite does not retain API key information, making it inaccessible in MailerLiteโ€™s admin panel or the account in general,โ€ explained a MailerLite spokesperson today. โ€œAs a result, despite Decrypt Media's account being affected during the data breach on January 23, 2024, perpetrators were unable to access API keys that could facilitate the sending of phishing campaigns on March 27, 2024.โ€

We extend our sincere apologies to MailerLite for our hasty misjudgment.

We'll cooperate with law enforcement as we investigate. MailerLite reported that the phishing campaigns originated from IP address "69.4.234.86" and used user agent "python-requests/2.31.0" via their API. The intruders removed addresses ending in decrypt.co or decryptmedia.com from our list to evade detection before sending the fraudulent emails.

While most readers remain vigilant against phishing attempts, one individual tried to connect their wallet to a bogus address. Even one instance is concerning. #CryptoScams are rampant and sophisticated. Decrypt, like other crypto entities, has been impersonated. Hackers create fake websites, Discord servers, and social media accounts impersonating our team. Note that we only operate under decrypt.co and decryptmedia.com domainsโ€”be cautious of other domains!

Source - decrypt.co

#CryptoNews๐Ÿ”’๐Ÿ“ฐ๐Ÿšซ #BinanceSquareTalks
๐Ÿšจ Deepfake Alert! ๐Ÿ”ด Manta Network's Kenny Li suspects the notorious Lazarus Group tried to target him in a sophisticated deepfake Zoom attack ๐Ÿ•ต๏ธโ€โ™‚๏ธ. #Hackers used a fake video to gain trust, then pushed a malicious script download before disappearing ๐Ÿ’ป๐Ÿ˜ฑ. This incident highlights the growing threat of #deepfakes and social engineering in cybersecurity ๐Ÿค–๐Ÿ’ธ. Prioritize your online security: โœจ Verify identities before sharing sensitive info โœจ Be cautious of unexpected video calls or requests โœจ Keep software and systems up-to-date
๐Ÿšจ Deepfake Alert!

๐Ÿ”ด Manta Network's Kenny Li suspects the notorious Lazarus Group tried to target him in a sophisticated deepfake Zoom attack ๐Ÿ•ต๏ธโ€โ™‚๏ธ.

#Hackers used a fake video to gain trust, then pushed a malicious script download before disappearing ๐Ÿ’ป๐Ÿ˜ฑ.

This incident highlights the growing threat of #deepfakes and social engineering in cybersecurity ๐Ÿค–๐Ÿ’ธ. Prioritize your online security:

โœจ Verify identities before sharing sensitive info
โœจ Be cautious of unexpected video calls or requests
โœจ Keep software and systems up-to-date
Nigeria: EFCC Arrests 792 Suspects in Cryptocurrency Fraud SchemeCommission Uncovers Massive Cryptocurrency Scam Nigeriaโ€™s Economic and Financial Crimes Commission (EFCC) conducted a raid resulting in the arrest of 792 suspects involved in schemes known as crypto romance scams. The fraudsters convinced victims to invest in fake cryptocurrency projects, leading to significant financial losses. Links to International Groups EFCC spokesperson Wilson Uwujaren revealed that among those arrested were 148 Chinese nationals and 40 Filipino citizens. The scammers operated from a luxury building in Lagos, Nigeriaโ€™s commercial hub. Most of the victims were citizens of the United States and Europe. During the raid, agents seized computers, mobile phones, and vehicles. Uwujaren stated that Nigerian fraudsters were recruited by international groups to target victims online using phishing techniques. Once the victimsโ€™ trust was gained, their information was handed over to foreign counterparts, who carried out the fraud. Collaboration with International Partners The EFCC announced it is working with international partners to identify potential links to organized crime. This collaboration aims to strengthen actions against similar fraudulent activities. Another Case: Nigerian Scammer Defrauds Australians of $5 Million The arrests follow a separate case involving Osang Otukpa, who allegedly defrauded 139 Australians of $5.04 million (8 million AUD) through a fraudulent cryptocurrency platform called Liquid Asset Group. Otukpa reportedly used five different aliases and lured victims through social media. EFCC agents apprehended Otukpa on December 6, shortly after he landed at Murtala Mohammed International Airport in Lagos. According to reports, he will be charged once the investigation is complete. Conclusion The EFCC continues to intensify its efforts to combat cryptocurrency fraud, working closely with global partners to curb these illegal activities. The crackdown on 792 suspects and cases like Otukpaโ€™s highlight Nigeriaโ€™s strengthened fight against financial crimes. #hackers , #Cryptoscam , #cryptofraud , #CryptoSecurity , #CryptoNewss Stay one step ahead โ€“ follow our profile and stay informed about everything important in the world of cryptocurrencies! Notice: ,,The information and views presented in this article are intended solely for educational purposes and should not be taken as investment advice in any situation. The content of these pages should not be regarded as financial, investment, or any other form of advice. We caution that investing in cryptocurrencies can be risky and may lead to financial losses.โ€œ

Nigeria: EFCC Arrests 792 Suspects in Cryptocurrency Fraud Scheme

Commission Uncovers Massive Cryptocurrency Scam
Nigeriaโ€™s Economic and Financial Crimes Commission (EFCC) conducted a raid resulting in the arrest of 792 suspects involved in schemes known as crypto romance scams. The fraudsters convinced victims to invest in fake cryptocurrency projects, leading to significant financial losses.
Links to International Groups
EFCC spokesperson Wilson Uwujaren revealed that among those arrested were 148 Chinese nationals and 40 Filipino citizens. The scammers operated from a luxury building in Lagos, Nigeriaโ€™s commercial hub. Most of the victims were citizens of the United States and Europe.
During the raid, agents seized computers, mobile phones, and vehicles. Uwujaren stated that Nigerian fraudsters were recruited by international groups to target victims online using phishing techniques. Once the victimsโ€™ trust was gained, their information was handed over to foreign counterparts, who carried out the fraud.
Collaboration with International Partners
The EFCC announced it is working with international partners to identify potential links to organized crime. This collaboration aims to strengthen actions against similar fraudulent activities.
Another Case: Nigerian Scammer Defrauds Australians of $5 Million
The arrests follow a separate case involving Osang Otukpa, who allegedly defrauded 139 Australians of $5.04 million (8 million AUD) through a fraudulent cryptocurrency platform called Liquid Asset Group.
Otukpa reportedly used five different aliases and lured victims through social media. EFCC agents apprehended Otukpa on December 6, shortly after he landed at Murtala Mohammed International Airport in Lagos. According to reports, he will be charged once the investigation is complete.
Conclusion
The EFCC continues to intensify its efforts to combat cryptocurrency fraud, working closely with global partners to curb these illegal activities. The crackdown on 792 suspects and cases like Otukpaโ€™s highlight Nigeriaโ€™s strengthened fight against financial crimes.

#hackers , #Cryptoscam , #cryptofraud , #CryptoSecurity , #CryptoNewss

Stay one step ahead โ€“ follow our profile and stay informed about everything important in the world of cryptocurrencies!
Notice:
,,The information and views presented in this article are intended solely for educational purposes and should not be taken as investment advice in any situation. The content of these pages should not be regarded as financial, investment, or any other form of advice. We caution that investing in cryptocurrencies can be risky and may lead to financial losses.โ€œ
#hackers stole 4,064 $BTC ($238 million) from a crypto investor! ๐Ÿ™€ ๐Ÿ•ต๏ธโ€โ™‚๏ธThis information was shared by the well-known blockchain researcher ZachXBT on his profile on X. The perpetrators laundered the money through ThorChain, eXch, Kucoin, ChangeNow, Railgun, and Avalanche Bridge. Previously, transfers to the victim's wallet were made from a Genesis Trading address. ๐Ÿง #HackerAlert #Web3 #BinanceSquareFamily #bitcoin {spot}(BTCUSDT)
#hackers stole 4,064 $BTC ($238 million) from a crypto investor! ๐Ÿ™€

๐Ÿ•ต๏ธโ€โ™‚๏ธThis information was shared by the well-known blockchain researcher ZachXBT on his profile on X.

The perpetrators laundered the money through ThorChain, eXch, Kucoin, ChangeNow, Railgun, and Avalanche Bridge.

Previously, transfers to the victim's wallet were made from a Genesis Trading address. ๐Ÿง

#HackerAlert #Web3 #BinanceSquareFamily #bitcoin
Appeals Court Revives AT&T Lawsuit for $24 Million Cryptocurrency TheftA U.S. appeals court has revived investor Michael Terpinโ€™s lawsuit against telecommunications company #AT&T concerning the theft of $24 million in cryptocurrency following a SIM swap hack. This decision allows Terpin to continue his legal claims under the Federal Communications Act (#FCA ). Key Claims Reconsidered A Ninth Circuit Court of Appeals panel reinstated a key claim in the case, in which Terpin alleges that AT&T allowed hackers to take over his phone account, leading to the loss of his #Cryptocurency portfolio. This ruling reinstates part of the lawsuit that had been previously dismissed and allows Terpin to continue his claims based on federal laws protecting telecommunications data. Fraud and Negligence by AT&T The court ruled that Terpin presented enough evidence to show that AT&T's failure to protect his account resulted in hackers gaining access to his phone number through a fraudulent SIM swap. They then used this number to access his personal data and change his passwords, ultimately stealing $24 million worth of cryptocurrency. The 2018 SIM Swap Hack The hack occurred in January 2018, when a group of #hackers , led by 15-year-old Ellis Pinsky, allegedly paid AT&T employees to transfer Terpinโ€™s phone number to a SIM card under their control. Despite new security measures implemented after a previous breach, the hackers found a way to bypass the protection. Once they gained access to his phone number, they changed his passwords and stole the cryptocurrency. Legal Battles with Hackers Pinsky returned his portion of the stolen funds, but another hacker, Nicholas Truglia, was ordered by a Los Angeles court to pay Terpin $75.8 million in damages. This case highlighted the vulnerability of cryptocurrency accounts during SIM swap attacks. AT&T and Hacking Incidents Around the same time, AT&T faced another issue with hackers allegedly stealing customer information, such as call logs and text messages. AT&T reportedly paid $400,000 in bitcoin to hackers to remove the stolen data, although the company officially neither confirmed nor denied the payment. Whatโ€™s Next? The reinstatement of Terpinโ€™s claim allows the lawsuit to proceed, with Terpin seeking $24 million in damages, plus interest and legal fees. His legal team believes this verdict may pave the way for other consumers to sue telecommunications companies for insufficient protection during SIM swaps. AT&T has apologized to Terpin but noted that most of the allegations against the company were dismissed, and they remain confident in defending the remaining claims. This case has attracted attention from blockchain experts, as the number of #HackingIncidents related to cryptocurrency continues to rise. Notice: ,,The information and views presented in this article are intended solely for educational purposes and should not be taken as investment advice in any situation. The content of these pages should not be regarded as financial, investment, or any other form of advice. We caution that investing in cryptocurrencies can be risky and may lead to financial losses.โ€œ

Appeals Court Revives AT&T Lawsuit for $24 Million Cryptocurrency Theft

A U.S. appeals court has revived investor Michael Terpinโ€™s lawsuit against telecommunications company #AT&T concerning the theft of $24 million in cryptocurrency following a SIM swap hack. This decision allows Terpin to continue his legal claims under the Federal Communications Act (#FCA ).
Key Claims Reconsidered
A Ninth Circuit Court of Appeals panel reinstated a key claim in the case, in which Terpin alleges that AT&T allowed hackers to take over his phone account, leading to the loss of his #Cryptocurency portfolio. This ruling reinstates part of the lawsuit that had been previously dismissed and allows Terpin to continue his claims based on federal laws protecting telecommunications data.
Fraud and Negligence by AT&T
The court ruled that Terpin presented enough evidence to show that AT&T's failure to protect his account resulted in hackers gaining access to his phone number through a fraudulent SIM swap. They then used this number to access his personal data and change his passwords, ultimately stealing $24 million worth of cryptocurrency.
The 2018 SIM Swap Hack
The hack occurred in January 2018, when a group of #hackers , led by 15-year-old Ellis Pinsky, allegedly paid AT&T employees to transfer Terpinโ€™s phone number to a SIM card under their control. Despite new security measures implemented after a previous breach, the hackers found a way to bypass the protection. Once they gained access to his phone number, they changed his passwords and stole the cryptocurrency.
Legal Battles with Hackers
Pinsky returned his portion of the stolen funds, but another hacker, Nicholas Truglia, was ordered by a Los Angeles court to pay Terpin $75.8 million in damages. This case highlighted the vulnerability of cryptocurrency accounts during SIM swap attacks.
AT&T and Hacking Incidents
Around the same time, AT&T faced another issue with hackers allegedly stealing customer information, such as call logs and text messages. AT&T reportedly paid $400,000 in bitcoin to hackers to remove the stolen data, although the company officially neither confirmed nor denied the payment.
Whatโ€™s Next?
The reinstatement of Terpinโ€™s claim allows the lawsuit to proceed, with Terpin seeking $24 million in damages, plus interest and legal fees. His legal team believes this verdict may pave the way for other consumers to sue telecommunications companies for insufficient protection during SIM swaps.
AT&T has apologized to Terpin but noted that most of the allegations against the company were dismissed, and they remain confident in defending the remaining claims. This case has attracted attention from blockchain experts, as the number of #HackingIncidents related to cryptocurrency continues to rise.

Notice:
,,The information and views presented in this article are intended solely for educational purposes and should not be taken as investment advice in any situation. The content of these pages should not be regarded as financial, investment, or any other form of advice. We caution that investing in cryptocurrencies can be risky and may lead to financial losses.โ€œ
North Korea is behind the Bybit HACK๐Ÿ™„Hack A group of DPRK #hackers #LazarusGroup hacked a cold wallet on the exchange for 400k $ETH ($1.5 billion dollars) Now they have more ether than Vitaliy Buterin, the creator of the token himself ๐Ÿ˜€The channels are already screaming that North Korea has announced a strategic reserve of ether๐Ÿ˜‚ #BybitHack #BybitWalletHack

North Korea is behind the Bybit HACK

๐Ÿ™„Hack A group of DPRK #hackers #LazarusGroup hacked a cold wallet on the exchange for 400k $ETH ($1.5 billion dollars)
Now they have more ether than Vitaliy Buterin, the creator of the token himself
๐Ÿ˜€The channels are already screaming that North Korea has announced a strategic reserve of ether๐Ÿ˜‚

#BybitHack #BybitWalletHack
--
Bullish
More about OpenBounty on Shentu Chain! OpenBounty is a decentralized platform that connects white hat hackers and Web3 projects to enhance the security of the decentralized ecosystem. Here's a more detailed breakdown of how it works: 1. Project Registration: Web3 projects register on the OpenBounty platform, providing details about their project and the bounties they offer for identifying and reporting vulnerabilities. 2. Bounty Creation: Projects create bounties for specific vulnerabilities or issues they want to address. The bounty amount is set by the project and can vary depending on the severity of the vulnerability. 3. White Hat Participation: White hat hackers and security researchers review the available bounties and choose the ones they want to work on. They then analyze the project's code and systems to identify potential vulnerabilities. 4. Vulnerability Reporting: Once a white hat hacker identifies a vulnerability, they submit a detailed report to the OpenBounty platform. The report includes a description of the vulnerability, its potential impact, and steps to reproduce the issue. 5. Verification and Resolution: The project team reviews the vulnerability report and verifies its validity. If the vulnerability is confirmed, the project works on fixing the issue. The white hat hacker receives the bounty reward once the vulnerability is resolved. 6. Reputation System: OpenBounty maintains a reputation system for both projects and white hat hackers. Projects with a good reputation are more likely to attract skilled white hat hackers, while white hat hackers with a strong reputation are more likely to be trusted by projects. By utilizing the Shentu Chain, OpenBounty ensures a transparent and tamper-proof environment for bug bounty programs. This fosters collaboration between Web3 protocols and skilled white hat hackers, ultimately enhancing the security of the decentralized ecosystem. #shentu #ShentuChain #openbounty #hackers #write2earn $CTK
More about OpenBounty on Shentu Chain!

OpenBounty is a decentralized platform that connects white hat hackers and Web3 projects to enhance the security of the decentralized ecosystem. Here's a more detailed breakdown of how it works:

1. Project Registration: Web3 projects register on the OpenBounty platform, providing details about their project and the bounties they offer for identifying and reporting vulnerabilities.

2. Bounty Creation: Projects create bounties for specific vulnerabilities or issues they want to address. The bounty amount is set by the project and can vary depending on the severity of the vulnerability.

3. White Hat Participation: White hat hackers and security researchers review the available bounties and choose the ones they want to work on. They then analyze the project's code and systems to identify potential vulnerabilities.

4. Vulnerability Reporting: Once a white hat hacker identifies a vulnerability, they submit a detailed report to the OpenBounty platform. The report includes a description of the vulnerability, its potential impact, and steps to reproduce the issue.

5. Verification and Resolution: The project team reviews the vulnerability report and verifies its validity. If the vulnerability is confirmed, the project works on fixing the issue. The white hat hacker receives the bounty reward once the vulnerability is resolved.

6. Reputation System: OpenBounty maintains a reputation system for both projects and white hat hackers. Projects with a good reputation are more likely to attract skilled white hat hackers, while white hat hackers with a strong reputation are more likely to be trusted by projects.

By utilizing the Shentu Chain, OpenBounty ensures a transparent and tamper-proof environment for bug bounty programs. This fosters collaboration between Web3 protocols and skilled white hat hackers, ultimately enhancing the security of the decentralized ecosystem.

#shentu #ShentuChain #openbounty #hackers #write2earn

$CTK
--
Bullish
๐Ÿ”“ Hackers Steal $1.5bn from Crypto Exchange in โ€˜Biggest Digital Heist Everโ€™ ๐Ÿ’ธ๐Ÿ’ป The crypto world has been rocked by a massive security breach! ๐Ÿ˜ฑ Hackers have stolen a staggering $1.5 billion from a major cryptocurrency exchange, making it the largest digital heist in history. ๐Ÿดโ€โ˜ ๏ธ๐Ÿ’ฐ ๐Ÿšจ What Happened? Cybercriminals managed to bypass security protocols and siphon off funds from the exchangeโ€™s wallets. ๐Ÿ”โžก๏ธ๐Ÿ’ธ Hereโ€™s what we know: โš ๏ธ Unprecedented breach โ€“ A sophisticated attack exploited vulnerabilities in the exchangeโ€™s system. ๐Ÿ›‘๐Ÿ”“ ๐Ÿ’ฐ $1.5 billion lost โ€“ One of the biggest crypto thefts ever recorded. ๐Ÿ“‰๐Ÿ”ฅ ๐ŸŒ Impact on the crypto market โ€“ Prices of major cryptocurrencies fluctuated as news broke. ๐Ÿ“Š๐Ÿ“‰ ๐Ÿ•ต๏ธ How Did the Hackers Do It? Security experts believe the attack was executed through: ๐Ÿ” Phishing & social engineering โ€“ Tricking employees into revealing credentials. ๐ŸŽญ๐Ÿ”‘ ๐Ÿ› ๏ธ Exploiting smart contract flaws โ€“ Manipulating weaknesses in blockchain protocols. ๐Ÿ—๏ธโš ๏ธ ๐ŸŒ Global cyber network โ€“ A well-organized hacker group likely behind the attack. ๐Ÿ’ป๐ŸŒ ๐Ÿฆ How to Protect Your Crypto? With cybercrime on the rise, hereโ€™s how you can keep your crypto assets safe: ๐Ÿ›ก๏ธ๐Ÿ”’ 1๏ธโƒฃ Use Cold Wallets โ€“ Store your crypto offline to prevent online breaches. ๐Ÿฆโ„๏ธ 2๏ธโƒฃ Enable 2FA โ€“ Add an extra layer of security to your accounts. ๐Ÿ”‘๐Ÿ” 3๏ธโƒฃ Be Wary of Phishing โ€“ Avoid suspicious emails and messages. ๐Ÿšซ๐Ÿ“ง 4๏ธโƒฃ Use Reputable Exchanges โ€“ Stick to platforms with strong security measures. ๐Ÿ›๏ธโœ… 5๏ธโƒฃ Stay Informed โ€“ Follow cybersecurity updates to spot potential threats. ๐Ÿ“ข๐Ÿ“ฐ ๐Ÿ Whatโ€™s Next? Authorities and cybersecurity firms are working around the clock to track down the hackers and recover stolen funds. โณโš–๏ธ Will they succeed? Only time will tell. ๐Ÿ•ฐ๏ธ๐Ÿ‘€ #Crypto #Hackers #CyberSecurity #Bitcoin #CryptoExchange $SOL $BNB $XRP
๐Ÿ”“ Hackers Steal $1.5bn from Crypto Exchange in โ€˜Biggest Digital Heist Everโ€™ ๐Ÿ’ธ๐Ÿ’ป

The crypto world has been rocked by a massive security breach! ๐Ÿ˜ฑ Hackers have stolen a staggering $1.5 billion from a major cryptocurrency exchange, making it the largest digital heist in history. ๐Ÿดโ€โ˜ ๏ธ๐Ÿ’ฐ

๐Ÿšจ What Happened?

Cybercriminals managed to bypass security protocols and siphon off funds from the exchangeโ€™s wallets. ๐Ÿ”โžก๏ธ๐Ÿ’ธ Hereโ€™s what we know:

โš ๏ธ Unprecedented breach โ€“ A sophisticated attack exploited vulnerabilities in the exchangeโ€™s system. ๐Ÿ›‘๐Ÿ”“
๐Ÿ’ฐ $1.5 billion lost โ€“ One of the biggest crypto thefts ever recorded. ๐Ÿ“‰๐Ÿ”ฅ
๐ŸŒ Impact on the crypto market โ€“ Prices of major cryptocurrencies fluctuated as news broke. ๐Ÿ“Š๐Ÿ“‰

๐Ÿ•ต๏ธ How Did the Hackers Do It?

Security experts believe the attack was executed through:

๐Ÿ” Phishing & social engineering โ€“ Tricking employees into revealing credentials. ๐ŸŽญ๐Ÿ”‘
๐Ÿ› ๏ธ Exploiting smart contract flaws โ€“ Manipulating weaknesses in blockchain protocols. ๐Ÿ—๏ธโš ๏ธ
๐ŸŒ Global cyber network โ€“ A well-organized hacker group likely behind the attack. ๐Ÿ’ป๐ŸŒ

๐Ÿฆ How to Protect Your Crypto?

With cybercrime on the rise, hereโ€™s how you can keep your crypto assets safe: ๐Ÿ›ก๏ธ๐Ÿ”’

1๏ธโƒฃ Use Cold Wallets โ€“ Store your crypto offline to prevent online breaches. ๐Ÿฆโ„๏ธ
2๏ธโƒฃ Enable 2FA โ€“ Add an extra layer of security to your accounts. ๐Ÿ”‘๐Ÿ”
3๏ธโƒฃ Be Wary of Phishing โ€“ Avoid suspicious emails and messages. ๐Ÿšซ๐Ÿ“ง
4๏ธโƒฃ Use Reputable Exchanges โ€“ Stick to platforms with strong security measures. ๐Ÿ›๏ธโœ…
5๏ธโƒฃ Stay Informed โ€“ Follow cybersecurity updates to spot potential threats. ๐Ÿ“ข๐Ÿ“ฐ

๐Ÿ Whatโ€™s Next?

Authorities and cybersecurity firms are working around the clock to track down the hackers and recover stolen funds. โณโš–๏ธ Will they succeed? Only time will tell. ๐Ÿ•ฐ๏ธ๐Ÿ‘€

#Crypto #Hackers #CyberSecurity #Bitcoin #CryptoExchange

$SOL $BNB $XRP
๐Ÿšจ๐Ÿ‡ฐ๐Ÿ‡ตNorth Korean #hackers are using a new malware called "NimDoor" to target crypto companies, according to Sentinel Labs. ๐Ÿ”นDisguised as Zoom updates and spread via Telegram, the malware is written in the rare Nim language, allowing it to bypass Apple's security and steal crypto wallet data, browser passwords, and Telegram local databases. ---- $BTC $ETH {spot}(ETHUSDT)
๐Ÿšจ๐Ÿ‡ฐ๐Ÿ‡ตNorth Korean #hackers are using a new malware called "NimDoor" to target crypto companies, according to Sentinel Labs.

๐Ÿ”นDisguised as Zoom updates and spread via Telegram, the malware is written in the rare Nim language, allowing it to bypass Apple's security and steal crypto wallet data, browser passwords, and Telegram local databases.
----
$BTC $ETH
what do you all think about hackers who hacked major crypto exchanges $BTC #hackers
what do you all think about hackers who hacked major crypto exchanges $BTC #hackers
See original
The theft of cryptocurrencies has increased as hackers sell fake phones equipped with malware Kaspersky Cybersecurity has revealed that hackers are using malicious software installed on Android devices to steal cryptocurrencies. The company advised users to exercise caution. As the world of cryptocurrencies evolves, hackers are innovating new ways to steal users' digital assets. Kaspersky Lab experts revealed that hackers are using fake Android smartphones to steal cryptocurrencies. According to Kaspersky Cybersecurity, thousands of infected Android devices have been discovered, specifically developed to steal user data and cryptocurrencies. These devices are often sold at low prices to attract buyers. The latest malware is a modified version of Triada, a Trojan remote access malware used to compromise Android devices. Security companies reported finding over 2,600 users affected by the new version of Triada. These users belong to various regions around the world, but the majority are from Russia. #russia #HackerAlert #hackers #Malwareattack #kaspersky
The theft of cryptocurrencies has increased as hackers sell fake phones equipped with malware

Kaspersky Cybersecurity has revealed that hackers are using malicious software installed on Android devices to steal cryptocurrencies.
The company advised users to exercise caution.
As the world of cryptocurrencies evolves, hackers are innovating new ways to steal users' digital assets. Kaspersky Lab experts revealed that hackers are using fake Android smartphones to steal cryptocurrencies.

According to Kaspersky Cybersecurity, thousands of infected Android devices have been discovered, specifically developed to steal user data and cryptocurrencies. These devices are often sold at low prices to attract buyers.

The latest malware is a modified version of Triada, a Trojan remote access malware used to compromise Android devices. Security companies reported finding over 2,600 users affected by the new version of Triada. These users belong to various regions around the world, but the majority are from Russia.
#russia #HackerAlert #hackers #Malwareattack
#kaspersky
๐Ÿšจ#LOOPSCALE RECAPTURES #STOLEN FUNDS, SET TO RESTART SERVICES POST-HACK ๐Ÿ”นExploit Details: #Hackers drained 5.73M USDC and 1,211.4 SOL via a pricing logic flaw ๐Ÿ”นAll stolen funds have been recovered ๐Ÿ”นService Restoration: Refinancing function will restart soon, full rollout in phases ๐Ÿ”นBorrower Update: 3-day grace period extended; users urged to manage positions proactively ๐Ÿ”นRewards: Vault/Advanced Lend balances (Apr 26โ€“Jun 7) get 12x points boost --- $SOL
๐Ÿšจ#LOOPSCALE RECAPTURES #STOLEN FUNDS, SET TO RESTART SERVICES POST-HACK

๐Ÿ”นExploit Details: #Hackers drained 5.73M USDC and 1,211.4 SOL via a pricing logic flaw

๐Ÿ”นAll stolen funds have been recovered

๐Ÿ”นService Restoration: Refinancing function will restart soon, full rollout in phases

๐Ÿ”นBorrower Update: 3-day grace period extended; users urged to manage positions proactively

๐Ÿ”นRewards: Vault/Advanced Lend balances (Apr 26โ€“Jun 7) get 12x points boost
---
$SOL
InfoRoom
--
๐ŸšจLOOPscale #HACKER AGREES TO#RETURN FUNDS FOR BOUNTY

๐Ÿ”นLoopscale Labs said hackers agreed to return stolen funds via bounty negotiation.

๐Ÿ”นHack involved 5.7M$USDC and 1,200$SOL theft.

๐Ÿ”นWithdrawal recovery plan and incident report postponed, expected in a few days.
๐Ÿ›ก๏ธ Blockchain vs Hackers: Who Wins in 2025? ๐Ÿš€ Blockchain is secure, but hackers donโ€™t always attack the chain itselfโ€”they target exchanges, wallets, and smart contracts. โšก Common Attacks: โœ…Exchange hacks ๐Ÿ’ธ โœ…Smart contract bugs ๐Ÿ”“ โœ…Cross-chain bridge exploits ๐ŸŒ‰ โœ…Phishing scams ๐ŸŽญ โŒ Defenses: โœ…Decentralization makes Bitcoin/Ethereum resilient โœ…Audits & bug bounties protect DeFi โœ…Multi-sig wallets & AI monitoring improve security ๐Ÿ‘‰ Final Thought: Blockchain isnโ€™t unhackable, but itโ€™s getting harder to break every year. Do you think hackers will always stay one step ahead, or will blockchain win the battle? #Blockchain #Hackers #CyberSecurity #Crypto $BTC
๐Ÿ›ก๏ธ Blockchain vs Hackers: Who Wins in 2025? ๐Ÿš€

Blockchain is secure, but hackers donโ€™t always attack the chain itselfโ€”they target exchanges, wallets, and smart contracts.

โšก Common Attacks:

โœ…Exchange hacks ๐Ÿ’ธ

โœ…Smart contract bugs ๐Ÿ”“

โœ…Cross-chain bridge exploits ๐ŸŒ‰

โœ…Phishing scams ๐ŸŽญ

โŒ Defenses:

โœ…Decentralization makes Bitcoin/Ethereum resilient

โœ…Audits & bug bounties protect DeFi

โœ…Multi-sig wallets & AI monitoring improve security

๐Ÿ‘‰ Final Thought: Blockchain isnโ€™t unhackable, but itโ€™s getting harder to break every year.

Do you think hackers will always stay one step ahead, or will blockchain win the battle?

#Blockchain #Hackers #CyberSecurity #Crypto $BTC
--
Bullish
Schrรถdinger's Vulnerability: Why Hackers Invent WordPress Security Problems An unusual strategy by cybercriminals is leading to massive infections of websites with malicious code. WordPressย adminsย are receiving fake security notifications related to a non-existent vulnerability allegedly being tracked under the IDย CVE-2023-45124ย .ย The purpose of the attack is to infect websites with a malicious plugin. The emails, masquerading as official messages from WordPress, talk about a critical remote code execution (ย RCEย ) vulnerability discovered on the administrator's site.ย WordPress users are being persuaded to install a plugin that claims to solve a security problem. Clicking the โ€œDownload pluginโ€ button leads to a fake page โ€œen-gb-wordpress[.]orgโ€, outwardly indistinguishable from the official site โ€œwordpress.comโ€.ย The page indicates an inflated number of downloads of the plugin at 500 thousand downloads, as well as fake user reviews. makes it difficult to detect and remove.ย At the moment, the purpose of the plugin is unknown, but experts suggest that it can be used to inject advertising on compromised sites, redirect visitors, steal confidential information, or even blackmail site owners with the threat of leaking database contents. WordPress security experts fromย Wordfenceย andย PatchStackย have posted warnings on their sites to raise awareness among administrators and users about this threat.ย It is extremely important to be careful when installing unknown plugins and to pay attention to suspicious emails. #cyborg #BinanceTournament #hackers #News #BTC $BTC $ETH $BNB
Schrรถdinger's Vulnerability: Why Hackers Invent WordPress Security Problems
An unusual strategy by cybercriminals is leading to massive infections of websites with malicious code.
WordPressย adminsย are receiving fake security notifications related to a non-existent vulnerability allegedly being tracked under the IDย CVE-2023-45124ย .ย The purpose of the attack is to infect websites with a malicious plugin.
The emails, masquerading as official messages from WordPress, talk about a critical remote code execution (ย RCEย ) vulnerability discovered on the administrator's site.ย WordPress users are being persuaded to install a plugin that claims to solve a security problem.
Clicking the โ€œDownload pluginโ€ button leads to a fake page โ€œen-gb-wordpress[.]orgโ€, outwardly indistinguishable from the official site โ€œwordpress.comโ€.ย The page indicates an inflated number of downloads of the plugin at 500 thousand downloads, as well as fake user reviews.
makes it difficult to detect and remove.ย At the moment, the purpose of the plugin is unknown, but experts suggest that it can be used to inject advertising on compromised sites, redirect visitors, steal confidential information, or even blackmail site owners with the threat of leaking database contents.
WordPress security experts fromย Wordfenceย andย PatchStackย have posted warnings on their sites to raise awareness among administrators and users about this threat.ย It is extremely important to be careful when installing unknown plugins and to pay attention to suspicious emails.
#cyborg #BinanceTournament #hackers #News #BTC
$BTC $ETH $BNB
Login to explore more contents
Explore the latest crypto news
โšก๏ธ Be a part of the latests discussions in crypto
๐Ÿ’ฌ Interact with your favorite creators
๐Ÿ‘ Enjoy content that interests you
Email / Phone number