Top

Mixin Network Suspends Services Amid $200 Million Hack

Policy & Regulation·September 25, 2023, 11:56 PM

On Monday, Mixin Network, a decentralized peer-to-peer network whose project team is based in Hong Kong, officially confirmed a substantial security breach that resulted in the loss of approximately $200 million in crypto assets from its mainnet.

Photo by GuerrillaBuzz on Unsplash

 

September 23 hack

This incident, disclosed via an X (formerly Twitter) post, prompted the immediate suspension of all deposit and withdrawal services on Mixin Network until further notice.

The project team outlined that the hack occurred on September 23, exposing vulnerabilities that allowed malicious actors to compromise the database of a third-party cloud service provider. Mixin Network has taken action to address the situation, enlisting the expertise of Singapore-headquartered blockchain security investigator SlowMist and the support of Google to conduct a thorough investigation and formulate a recovery plan.

At the time of the breach, Mixin Network’s holdings included $94.48 million in Ether, $23.55 million in Dai, and $23.3 million in Bitcoin, as reported in an independent investigation by PeckShield. The total value of assets affected amounted to $141.32 million.

Cyvers, an Israeli Web3 security firm, has also been looking into the matter on Monday. In a social media post, the firm stated:

”Our internal investigation has uncovered suspicious funding transactions involving @MixinKernel hacker addresses. Two of hacker addresses received 51 $ETH from 0x1795F0eBDa5A836aE63F28CE546E72de069A8bd2 who was interacted with @HuobiGlobal and @binance.”

The firm goes on to call on Binance and its CEO Changpeng Zhao (CZ) and Huobi to help identify the wallet address in question.

 

Halting withdrawals

In response to the security breach, Mixin Network has temporarily halted all deposits and withdrawals on its platform. These services will only resume once the vulnerabilities have been identified and fully resolved. On X, the project stated:

”Deposit and withdrawal services on Mixin Network have been temporarily suspended. After discussion and consensus among all nodes, these services will be reopened once the vulnerabilities are confirmed and fixed. During this period, transfers are not affected.”

Details regarding the plans to recover the lost assets for affected users have yet to be announced.

Despite initial promises that Mixin Network’s Founder, Feng Xiaodong, would address the incident in a public Mandarin live stream on September 25, links to the live stream were not provided on the official social media channels or the website mixin.network.

The incident has garnered criticism on the basis of a lack of decentralization. One commentator stated:

”Some of those blockchain protocols are so decentralized that when their cloud database is hacked, coins are also gone.”

 

Ongoing hacks

This security breach on Mixin Network is the latest in a series of high-profile crypto-related incidents. Ethereum Co-Founder Vitalik Buterin recently fell victim to a SIM swap attack, which resulted in the compromise of his X (formerly Twitter) account.

In a statement, Buterin revealed that the hackers had successfully executed a SIM swap, a type of attack that targets the victim’s mobile phone number to gain unauthorized access to various online accounts, including social media, banking, and cryptocurrency platforms.

The repercussions of the Mixin Network hack underscore the ongoing challenges faced by the crypto industry in ensuring the security and protection of digital assets. As investigations continue, affected users await further developments and the eventual resumption of deposit and withdrawal services.

More to Read
View All
Policy & Regulation·

Sep 19, 2023

JPEX Exchange Scandal Sees Crypto Regulation Under Scrutiny in Hong Kong

JPEX Exchange Scandal Sees Crypto Regulation Under Scrutiny in Hong KongWhile Hong Kong has been developing steadily as a crypto sector hub, the focus in the Chinese autonomous territory has turned towards regulation after a recent scandal involving an unlicensed cryptocurrency exchange.Photo by Ihor Saveliev on UnsplashOngoing investigationYesterday we reported on some arrests relative to problems experienced at crypto exchange JPEX. The fallout continues on Tuesday, with the Hong Kong police now understood to have arrested eight individuals, including social media influencers who promoted the exchange and JPEX employees, on allegations of fraud. This illicit activity in and around the JPEX exchange has affected over 1,600 investors, implicating more than $150 million in assets.JPEX, in response to mounting pressure, announced the suspension of trading on its platform. In a statement, the exchange mentioned ongoing negotiations with third-party market makers to address liquidity shortages. However, JPEX also accused an unidentified third-party market maker of maliciously freezing funds, further complicating the situation.Politicians and regulators speak outResponding to the incident via a press conference on Tuesday, Hong Kong’s Chief Executive, John Lee, emphasized the significance of investing in virtual assets through licensed platforms. Lee stated:“This incident highlights the importance that when investors want to invest in virtual assets, then they must invest on platforms that are licensed.” He also pledged that the Securities and Futures Commission (SFC) would closely monitor the situation to ensure investor protection.Elizabeth Wong, the Head of the SFC’s fintech unit, revealed that an investigation was underway to determine whether JPEX had violated anti-money laundering laws. The SFC had already declared JPEX unlicensed, prompting numerous complaints from investors who were unable to withdraw their virtual assets or experienced unexplained reductions in their balances.Assets frozenHong Kong authorities have taken decisive action against those involved in the scandal. They have frozen bank accounts valued at 15 million Hong Kong dollars ($1 million) and seized three properties valued at 44 million Hong Kong dollars. The police have reported receiving 1,641 complaints related to JPEX, involving a staggering $1.2 billion Hong Kong dollars. By last Wednesday, the SFC had received in excess of 1,000 complaints and at that point, they notified the general public.The JPEX scandal has drawn attention to the need for stronger cryptocurrency regulations in Hong Kong, a region that has become attractive to cryptocurrency firms since mainland China banned cryptocurrency transactions in 2021. In mainland China, trading cryptocurrencies on foreign exchanges from within the country remains illegal.Hong Kong’s response to cryptocurrency regulation has evolved. Beginning on June 1, the SFC started accepting applications from cryptocurrency exchanges, allowing licensed operators to serve retail investors, provided they understand the associated risks. Previously, only professional investors had access to such exchanges. Currently, only two exchanges in Hong Kong, OSL Exchange and Hashkey Exchange, have received approval to operate.As Hong Kong reevaluates its approach to cryptocurrency regulation, the crypto sector will hope that it strikes a balance between fostering innovation and protecting investors from fraud and market manipulation.

news
Web3 & Enterprise·

Dec 06, 2023

Bithumb celebrates 10th anniversary with a commitment to change

Bithumb celebrates 10th anniversary with a commitment to changeBithumb, South Korea’s major fiat-to-cryptocurrency exchange, celebrated its 10th anniversary on Wednesday (local time), as per a report by local news agency Newsis.Photo by Adi Goldstein on UnsplashFoundation for the marginalizedTo celebrate this occasion, the platform has set up a foundation with a budget of KRW 10 billion (approximately $7.6 million). The foundation is dedicated to addressing the challenges faced by marginalized individuals in the community.Bithumb has also introduced a new slogan, “Deep change for customers,” reflecting the exchange’s commitment to transformation, its top core value.Demonstrating such efforts, the platform has implemented a zero-trading fee policy for all supported cryptocurrencies since October. This policy will remain in effect until further notice. In response to this competitive move, other players in the market followed suit. Later in the same month, Korbit introduced fee-free trading for all types of tokens, and Gopax removed trading fees for four major cryptocurrencies: BTC, ETH, XRP and USDC.IPO planned in 2025Furthermore, Bithumb is striving to go public on the Korean stock market, a move partly driven by criticisms of inadequate governance transparency. The virtual asset service provider aims to conduct an initial public offering (IPO) in the second half of 2025. Through this IPO, Bithumb intends to demonstrate its corporate transparency and strengthen its position as a trustworthy exchange.Identifying and fostering young entrepreneurs is another initiative Bithumb is spearheading. The crypto exchange is processing applications from aspiring business owners for its support program. These applicants will be assessed based on their creativity and the feasibility of their business models without any restriction on the type of business area they are involved in. For this purpose, Bithumb has allocated KRW 30 billion to support startups that have been operational for less than three years.User engagement eventsA customer engagement event called the “10 Bitcoin 1/N challenge” is also underway for Bithumb users. Participants in this event will have the opportunity to equally share a total of 10 BTC. To join, customers need to send the message “Happy 10th birthday, Bithumb” to Bithumb’s KakaoTalk channel. Upon successfully sending this message, customers will receive a coupon code. After receiving a coupon code, they must apply it on the Bithumb app. The distribution of rewards is set for Dec. 11.In addition, Bithumb is set to airdrop cryptocurrencies worth up to KRW 1 million to users who have been inactive for an extended period. To participate, these users simply need to log into the Bithumb app and enter the MISS-YOU coupon code. This promotional event will last from Dec. 6 to 12, with the airdrop occurring on Dec. 18.Lee Jae-won, CEO of Bithumb, remarked that Bithumb’s 10-year journey mirrors the rapid growth and evolution of the cryptocurrency market. He emphasized that the exchange believes growth stems from embracing new challenges and transformative efforts. Lee added that Bithumb is determined to implement authentic changes to better serve its customers.

news
Policy & Regulation·

Aug 10, 2023

$120M Crypto Ponzi Scheme Exposed in India

$120M Crypto Ponzi Scheme Exposed in IndiaIn a recent crackdown, local authorities in the state of Odisha in India, have dismantled a massive $120 million cryptocurrency Ponzi scheme.That’s according to a report by local news agency ANI earlier this week. The operation led by the Economic Offences Wing (EOW) of the state police has resulted in the arrest of key individuals orchestrating the fraudulent endeavor. This latest development underscores the growing concerns around cryptocurrency scams and their detrimental impact on investors.Photo by Ayiman Mohanty on UnsplashSTA crypto tokenThe mastermind behind the Ponzi scheme had adeptly evaded capture by frequently changing locations. The scheme, operating across India, revolved around the STA crypto token, a digital asset at the heart of the fraudulent activities.Similar to the infamous OneCoin scandal, where billions were swindled from unsuspecting investors, the STA token scheme exploited victims who had invested in the token and then recruited others under the guise of a multi-level marketing initiative. Promised bonuses and extravagant returns were used as bait to lure individuals into the scheme, which eventually unraveled, leaving numerous investors financially devastated.Unregulated token offeringReports highlight that the STA token was not authorized by any regulatory body. This glaring absence of oversight enabled the scammers to continue their operations unchecked. The nature of the scheme involved recruiting victims in various Indian states who were promised substantial returns. These victims, in turn, were enticed to bring in new investors, creating a vicious cycle of recruitment and investment.The investigation into the scheme revealed that the STA token offering attracted individuals through aggressive promotional strategies. This allowed the scheme to establish a vast network across India, involving approximately 200,000 individuals. The victims were led to believe that their investments would yield significant bonuses and returns, a tactic that echoes the tactics used by OneCoin promoters.False claimsThe STA token was introduced in September 2021 and rapidly established a presence on social media platforms, presenting itself as a legitimate cryptocurrency. It falsely claimed to be a blockchain-based platform connecting users with local farmers. This facade lent an air of legitimacy to the scheme, effectively deceiving unsuspecting investors.The scheme’s audacity was further highlighted by a grand event hosted by STA criminal promoters in a luxurious hotel in Goa. This extravagant affair aimed to further legitimize the project and attract more victims.This incident adds to a series of cryptocurrency-related scams that have plagued India. The GainBitcoin scam, which came to light last year, led to the loss of over $1.25 billion for around 100,000 victims. The Indian authorities have responded by issuing public advisories warning citizens against falling victim to such schemes that promise quick wealth through cryptocurrency investments.In a recent parliamentary session, Minister of State for Finance Pankaj Chaudhary revealed that the Enforcement Directorate (ED) is actively investigating multiple instances of cryptocurrency-related fraud. These investigations have uncovered proceeds of crime amounting to over $130 million.

news
Loading