Posts

Showing posts with the label hacks

North Korea linked to latest crypto hacks, surpassing $270m

Recent investigations link North Korea’s Lazarus Group to a series of crypto hacks totaling over $270 million in stolen assets across major platforms in the past 102 days. Investigations suggest the latest high-profile hacks targeting crypto entities have been perpetrated by North Korean hackers, particularly the notorious Lazarus Group, with over $270 million stolen over the past 102 days. Data from a consolidated list of the last four massive crypto-related hacks sheds light on this. The list was compiled by MetaMask’s lead product manager Taylor Mohana (Tayvano), and featured contributions from prominent on-chain sleuth ZachXBT. North Korean state-sponsored hackers aka Lazarus Group have stolen over $270 million dollars worth of crypto in the last 102 days. That's an average of $2.64 million dollars stolen every single day. They show no sign of slowing down. https://t.co/M90Nyqgjcz pic.twitter.com/T9oM4jSsz4 — Tay (@tayvano_) September 13, 2023 Notably,...

ZenGo uncovers 'red pill attack' vulnerability in popular Web3 apps

The vulnerability has since been patched, although it affected a number of leading transaction simulation vendors. According to a blog post published by developers of crypto wallet ZenGo, the firm said it had uncovered security vulnerabilities in, transaction simulation solutions used by popular decentralized applications, or dApps. Dubbed the "red pill attack ," this vulnerability allowed malicious dApps to steal user assets based on opaque transaction approvals offered to and approved by users. The vulnerability derives its name from the iconic "red pill" scene from The Matrix movie series.  "If malware is able to detect its actually being executed in a simulated environment or living in the matrix, it can behave in a benign manner, thus deceiving the anti-malware solution, and reveal its true malicious nature only when actually executed in a real environment." ZenGo claimed its research revealed that many leading vendors, including Coinbase Wallet,...

Moonbirds creator Kevin Rose loses $1.1M+ in NFTs after 1 wrong move

Among the nonfungible tokens (NFTs) stolen from the PROOF co-founder were 25 Chromie Squiggles and one Autoglyph NFT. Kevin Rose, the co-founder of the nonfungible token (NFT) collection Moonbirds, has fallen victim to a Phishing scam leading to more than $1.1 million worth of his personal NFTs stolen. The NFT creator and PROOF co-founder shared the news with his 1.6 million Twitter followers on Jan. 25 asking them to avoid buying any Squiggles NFTs until they manage to get them flagged as stolen. I was just hacked, stay tuned for details - please avoid buying any squiggles until we get them flagged (just lost 25) + a few other NFTs (an autoglyph) ... — KΞVIN R◎SE (,) (@kevinrose) January 25, 2023 “Thank you for all the kind, supportive words. Full debrief coming,” he then shared in a separate tweet about two hours later. It is understood that Rose’s NFTs were drained after signing a malicious signature that transferred a significant proportion of his NFT assets to the exploit...