Top

Mixin Network Suspends Services Amid $200 Million Hack

Policy & Regulation·September 25, 2023, 11:56 PM

On Monday, Mixin Network, a decentralized peer-to-peer network whose project team is based in Hong Kong, officially confirmed a substantial security breach that resulted in the loss of approximately $200 million in crypto assets from its mainnet.

Photo by GuerrillaBuzz on Unsplash

 

September 23 hack

This incident, disclosed via an X (formerly Twitter) post, prompted the immediate suspension of all deposit and withdrawal services on Mixin Network until further notice.

The project team outlined that the hack occurred on September 23, exposing vulnerabilities that allowed malicious actors to compromise the database of a third-party cloud service provider. Mixin Network has taken action to address the situation, enlisting the expertise of Singapore-headquartered blockchain security investigator SlowMist and the support of Google to conduct a thorough investigation and formulate a recovery plan.

At the time of the breach, Mixin Network’s holdings included $94.48 million in Ether, $23.55 million in Dai, and $23.3 million in Bitcoin, as reported in an independent investigation by PeckShield. The total value of assets affected amounted to $141.32 million.

Cyvers, an Israeli Web3 security firm, has also been looking into the matter on Monday. In a social media post, the firm stated:

”Our internal investigation has uncovered suspicious funding transactions involving @MixinKernel hacker addresses. Two of hacker addresses received 51 $ETH from 0x1795F0eBDa5A836aE63F28CE546E72de069A8bd2 who was interacted with @HuobiGlobal and @binance.”

The firm goes on to call on Binance and its CEO Changpeng Zhao (CZ) and Huobi to help identify the wallet address in question.

 

Halting withdrawals

In response to the security breach, Mixin Network has temporarily halted all deposits and withdrawals on its platform. These services will only resume once the vulnerabilities have been identified and fully resolved. On X, the project stated:

”Deposit and withdrawal services on Mixin Network have been temporarily suspended. After discussion and consensus among all nodes, these services will be reopened once the vulnerabilities are confirmed and fixed. During this period, transfers are not affected.”

Details regarding the plans to recover the lost assets for affected users have yet to be announced.

Despite initial promises that Mixin Network’s Founder, Feng Xiaodong, would address the incident in a public Mandarin live stream on September 25, links to the live stream were not provided on the official social media channels or the website mixin.network.

The incident has garnered criticism on the basis of a lack of decentralization. One commentator stated:

”Some of those blockchain protocols are so decentralized that when their cloud database is hacked, coins are also gone.”

 

Ongoing hacks

This security breach on Mixin Network is the latest in a series of high-profile crypto-related incidents. Ethereum Co-Founder Vitalik Buterin recently fell victim to a SIM swap attack, which resulted in the compromise of his X (formerly Twitter) account.

In a statement, Buterin revealed that the hackers had successfully executed a SIM swap, a type of attack that targets the victim’s mobile phone number to gain unauthorized access to various online accounts, including social media, banking, and cryptocurrency platforms.

The repercussions of the Mixin Network hack underscore the ongoing challenges faced by the crypto industry in ensuring the security and protection of digital assets. As investigations continue, affected users await further developments and the eventual resumption of deposit and withdrawal services.

More to Read
View All
Web3 & Enterprise·

Dec 01, 2023

Solomon Islands partners with Soramitsu on CBDC pilot

Solomon Islands partners with Soramitsu on CBDC pilotCentral bank digital currency (CBDC) development has been ongoing globally at a brisk pace in 2023 and smaller nations, like the Solomon Islands with a population of over 700,000, are no exception when it comes to that process with the introduction of Bokolo Cash.Photo by Gilly Tanabose on UnsplashIntroducing Bokolo CashSolomon Islands Central Bank (CBSI) has officially unveiled the proof-of-concept for its CBDC named Bokolo Cash, with support from Japanese blockchain firm Soramitsu. Bokolo Cash is pegged to the value of one Solomon Islands dollar.The proof-of-concept pilot was launched on Tuesday by way of a keynote speech given by Manasseh Sogavare, the prime minister of the archipelago. In that speech, Sogavare highlighted that the CBDC would lead to reduced transaction costs for citizens and businesses. Users can rely on transactions to be both secure and transparent, given that the network will be blockchain-based.The prime minister also articulated that the CBDC pilot project would be a catalyst for financial inclusion relative to the Island nation’s remotest communities.Pilot scheme use casesParticipants in the project will have the opportunity to use it in various scenarios. From retail transactions in the capital city, Honiara, to person-to-person transfers, the CBDC aims to demonstrate its versatility. The proof-of-concept will also assess wholesale transfers between commercial banks, simulate cross-border payments and examine remittances. To ensure security and compliance, users will undergo a “two-step” Know Your Customer (KYC) verification process, as outlined by Soramitsu.Operating on a customized blockchain based on Hyperledger’s Iroha, Bokolo Cash is designed for local use. However, it will also integrate with Soramitsu’s public Sora blockchain. This connectivity will enable users to engage in transfers using QR codes and the self-custody Fearless Wallet, a creation of Soramitsu.Legislative changeAlthough the project commenced at the beginning of November, the official announcement was made earlier this week. The legislation required to enable the CBSI to issue the CBDC — CBSI (Amendment) Act 2023 — was enacted on Nov. 3.The Solomon Islands, a collection of over 900 islands situated west of Papua New Guinea, now joins a group of island nations, including the Marshall Islands and Mauritius, actively experimenting with CBDC. Palau collaborated with Ripple Labs back in July to introduce the Palau Stablecoin (PSC). Interestingly, Tonga has contemplated adopting Bitcoin as legal tender, while Vanuatu hosts Satoshi Island, known for its Bitcoin-friendly environment. Meanwhile, Eastern Caribbean countries have already implemented an official CBDC called DCash.Soramitsu has been active in collaborating with central banks relative to the introduction of CBDCs, particularly in Asia. It has played a key role in facilitating the issuance of the Cambodian Bakong and the Lao DLak in Laos. Furthermore, it has initiated a project for regional cross-border payments using the Bakong and a stablecoin.In 2022, Soramitsu completed CBDC-related feasibility studies in conjunction with the relevant authorities in Vietnam and the Philippines. The Japanese fintech company has also participated with the Asian Development Bank and Tokyo-based global information technology solutions firm Fujitsu on a Web3 development project.

news
Web3 & Enterprise·

Nov 17, 2023

Elliptic and CODE join forces to propel crypto compliance in Korea

Elliptic and CODE join forces to propel crypto compliance in KoreaElliptic, a global blockchain analytics and crypto compliance solutions provider, has partnered with CODE, a Seoul-based Travel Rule solution provider, as part of efforts to expand its operations into the Korean market. Under this agreement, the two companies aim to actively support virtual asset service providers (VASPs) in South Korea in their attempts to adapt to the evolving international regulatory landscape for anti-money laundering (AML) and the crypto Travel Rule.Photo by NordWood Themes on UnsplashCrypto Travel RuleThe Travel Rule refers to the Financial Action Task Force’s (FATF) Recommendation #16, which outlines that VASPs must share certain personal information about customers — including names and account numbers — when facilitating crypto transactions that exceed a certain amount.Empowering VASPs through risk mitigationElliptic and CODE will work together on comprehensive regulatory technology-based (RegTech) solutions to enable VASPs to identify AML and Counter Financing of Terrorism (CFT) risks among virtual asset transactions, ultimately leading the sustainable growth of the crypto asset industry. In particular, CODE will be able to leverage Elliptic’s services to ensure compliance with Travel Rule regulations. Elliptic offers solutions like wallet screening, transaction monitoring, crypto investigations and VASP screening for big names like Coinbase, Binance and BitGo, as well as law enforcement agencies.“This partnership with Elliptic allows us to expand our compliance services beyond Travel Rule-related solutions for VASPs. Elliptic’s advanced technology and expertise will help our corporate members achieve regulatory compliance more efficiently, contributing greatly to enhancing transparency and security throughout the larger virtual asset industry,” said CODE CEO Lee Sung-mi.

news
Web3 & Enterprise·

Jan 12, 2024

Korea ST Exchange joined by various firms to bring security tokens to agriculture industry

Korea ST Exchange has committed to conducting a demonstrative experiment involving security tokens to help advance the domestic agriculture and livestock industry along with six other companies, including Korea Venture Agriculture Association, Maeil Business Agtech Innovation Center, MAM TECH, XR Touch, Jangbogo Asset and Crowdy. Representatives from all seven firms participated in an agreement signing ceremony held at the Maekyung Media Center on Thursday, according to local news site Financial News.Photo by Dan Meyers on Unsplash"Smart farms are an industry in South Korea with great potential for growth that is gaining a  competitive edge in the global market," said Cho Won-dong, CEO of Korea ST Trading. "With this agreement, our council plans to strengthen the smart farm security tokens ecosystem to increase the profits of domestic agricultural producers and strengthen global competitiveness." Fostering agricultural innovationThe experiment aims to promote the innovative trading system of smart farms for the development of the agriculture and livestock industry and discover stable underlying assets that will serve as a bridge for integration with innovative finance such as digital assets and security tokens. With this agreement, the parties will cooperate on issuing and distributing tokenized real assets, commodity tokens and security tokens, building infrastructure to support and encourage the trading of security tokens, exchanging information and sharing collaborative networks to build each participating firm’s business. They also plan to issue security tokens in the form of investment contract securities that attribute profits and losses according to the results of joint business ventures by creating a device to tokenize contracts for harvesting agricultural products. Korea ST Trading’s comprehensive roleBased on the platform, Korea ST Trading will provide support for all services such as security token distribution, trading, management, dividends, liquidation and investment information to help expand the smart farm ecosystem and attract private investments.

news
Loading