Top

North Korean Hackers Take Off With $100M Atomic Wallet Honeypot

Policy & Regulation·June 14, 2023, 11:44 PM

Having reported last week on a $35 million hack of Atomic Wallet users’ funds, an update on the matter reveals that the situation is much worse than originally thought, with losses now exceeding $100 million.

Photo by Kenny Eliason on Unsplash

 

5,500 wallets compromised

The attack has sent shockwaves throughout the crypto community, raising concerns about the security of decentralized wallets. Atomic Wallet, an Estonia-based project known for its non-custodial approach where users take full responsibility for storing their assets securely, has been hit hard by this unforeseen breach.

Elliptic, a crypto compliance analysis company, published an update on the situation on Tuesday. According to that blog article, it estimates that approximately 5,500 crypto wallets have been compromised, meaning that losses have risen to more than $100 million, highlighting the severity of the attack.

Despite the significant impact on users, Atomic Wallet has yet to provide an explanation regarding the root cause of these substantial losses. Users have taken to social media in frustration, demanding clarification from the company. Surprisingly, the company’s last direct update on Twitter dates back to June 7, leaving users feeling even more anxious.

 

User frustration

One user, Ezra Carlson, expressed frustration, questioning why Atomic Wallet didn’t warn users when they were aware of the ongoing hack. Carlson tweeted: “@AtomicWallet why won’t AM give me a straight answer about why they didn’t warn me, knowing full well that they were being hacked, that it was not safe to use AM last week before I made a transfer to my wallet that was then hacked.”

Another user, “Real Deal Crypto,” criticized Atomic Wallet’s lack of updates, stating: “Your last update was five days ago — SERIOUSLY?!?!”

Although Atomic Wallet acknowledged reports of compromised wallets on June 3, downplaying the impact by claiming that less than 1% of users were affected, the staggering sum of losses indicates a significant breach. Its last communication on the matter came on June 11 when, in responding to a user, the firm said that it continued to investigate and to await Twitter updates on the matter.

 

Hack tied to North Korea’s Lazarus Group

Elliptic has connected this heist to the notorious Lazarus Group, a cyber-criminal organization with ties to the North Korean regime, responsible for stealing over $2 billion in crypto assets through various thefts. This attribution marks the first time a significant crypto heist has been openly linked to the Lazarus Group since their $100 million exploit of Horizon Bridge in June 2022.

In response to the heist, Elliptic has been collaborating with international investigators and exchanges, mobilizing resources to recover the stolen assets. Their efforts have reportedly led to the freezing of over $1 million worth of funds. However, the thief has adapted its behavior in response to the freezing of assets, turning to the Russia-based Garantex exchange to launder the stolen assets, as noted by Elliptic.

This recent attack adds to a series of notable breaches in the crypto industry. Jimbos Protocol experienced an exploit resulting in a loss of $7.5 million, and Tornado Cash faced a malicious proposal that seized control of its governance in May. According to a report by Chainalysis, crypto hackers made off with an estimated $3.8 billion in 2022, with North Korea being responsible for a significant portion of the attacks.

More to Read
View All
Web3 & Enterprise·

Jun 28, 2023

Amberdata Expands into Asia-Pacific with New Hong Kong Office

Amberdata Expands into Asia-Pacific with New Hong Kong OfficeAmberdata, a provider of digital asset data and analytics for institutional customers, is making significant strides in expanding its presence with the announcement of a new office in Hong Kong, marking its entry into the Asia-Pacific (APAC) region.Photo by Pixabay on PexelsMarket data offeringThe company published a press release on Tuesday, providing details on the milestone. The strategically positioned Hong Kong office will provide local sales and support to APAC customers, granting them access to Amberdata’s suite of products. These offerings include extensive on-chain, DeFi, spot, and derivatives market data, along with valuable market intelligence.Tongtong Gong, the COO and Co-Founder of Amberdata of the US-based firm, will spearhead the company’s operations in the region. Gong, expressing her excitement about returning to her home country, shared her aspirations to contribute to the growth of Amberdata’s presence in Asia.She highlighted the burgeoning development of Web3 in Hong Kong, which benefits from a clear regulatory environment and strong government support, making it an exceptional location for the new office.Industry trends eastwardsThe expansion into APAC by Amberdata aligns with the global trend of accelerating institutional adoption of cryptocurrencies and digital assets. By addressing the increasing demand for institutional-grade data infrastructure and analytics, Amberdata is positioned to serve as a crucial partner to financial institutions.The company’s foray into APAC is yet another demonstration of a trend among US-based digital assets companies to establish themselves in the east, where the regulatory environment is developing in a much more progressive, forward thinking way by comparison with the United States.Shawn Douglass, the CEO of Amberdata, said that the move was with a view towards expanding its presence in Asia, “to deliver the highest quality digital asset data and analytics to institutional investors in the region.”Hong Kong’s crypto credentialsHe emphasized the growing prominence of Hong Kong as one of Asia’s leading crypto hubs and highlighted the city’s suitability as the location for their new office. The establishment of a local office enables the company to effect a more direct sales and support pipeline to both new and existing customers within APAC.Amberdata holds a paramount position as the leading provider of digital asset data. Their comprehensive insights into blockchain networks, crypto markets, and decentralized finance seek to empower financial institutions with invaluable data for research, trading, risk assessment, analytics, reporting, and compliance.Also on Tuesday, the company added new product features. Taking to Twitter, Amberdata outlined the addition of derivatives data relative to a well-known trading and futures options platform, the Chicago Mercantile Exchange (CME). Service users are also now being given complete visibility on externally owned accounts and wallets within lending and borrowing protocols.As financial institutions increasingly enter the digital asset class and participate in digital asset markets, Amberdata’s robust infrastructure is being positioned as a vital component, enabling them to make informed decisions and navigate the dynamic landscape effectively.

news
Policy & Regulation·

Oct 17, 2023

Former PBOC Governor: CBDC Development Must Focus on Security

Former PBOC Governor: CBDC Development Must Focus on SecurityZhou Xiaochuan, a former governor of the People’s Bank of China (PBOC), has issued a call for China to prioritize security and vigilance against potential misuse as it advances the development of its central bank digital currency (CBDC), known as the e-CNY.Photo by FLY:D on UnsplashSafeguarding the CBDC ecosystemXiaochuan made this appeal during the Digital Finance Forum, which was held in Beijing last week. He emphasized the necessity of safeguarding the CBDC ecosystem.The PBOC has been actively engaged in trials and innovations related to the e-CNY, even rolling out a pilot application in January 2022. The digital yuan’s journey, however, comes with significant responsibilities, particularly in terms of security and prevention of misuse.Thwarting potential abuseZhou acknowledged that in the realm of finance, security has always been a paramount concern, and this sentiment couldn’t be more accurate when applied to the realm of digital currency. He stressed that, as technology costs continue to decline and systems become more user-friendly, the risks associated with misuse also decrease. In this context, it becomes imperative for China to adopt stringent security measures and robust regulatory frameworks to thwart any potential abuse.Zhou underscored the illicit utilization of cryptocurrencies and stablecoins in facilitating various activities, including arms trafficking and drug trade. He pointed out that addressing these issues necessitates a concentrated effort, making it clear that a proactive approach to prevention is essential.The development of the e-CNY has seen impressive progress, with pilot projects initiated in 2019 and later expanded to 26 locations across 17 provincial-level cities and regions, including major metropolitan areas like Beijing, Shanghai, Shenzhen, and Suzhou.Last month another official from the PBOC spoke to the need to make the e-CNY accessible in all retail payment scenarios within China at a trade forum in Beijing. Digital yuan use is also being broadened to facilitate its availability in the special Chinese administrative area of Hong Kong.Proposing two-tier systemZhou advocated for a two-tier system in the operation of e-CNY, a structure already in place. The People’s Bank of China presides over the first tier, responsible for issuance and regulation, while the second tier comprises commercial institutions such as commercial banks, internet platforms, and telecommunications operators.This dual-layered design promotes dynamic evolution within the digital currency landscape, enhancing service quality and fostering innovation through healthy competition. Zhou stressed the importance of exploring cross-border transactions, an area that entails both technological advancements and policy orientation.Hong Kong has actively embraced e-CNY for cross-border payments, advancing into the second phase of technical testing and preparing to incorporate it into its predominantly local payment system.On a related note, Lu Lei, the deputy administrator of the State Administration of Foreign Exchange (SAFE), highlighted the programmable features of CBDCs as tools for enhancing monetary policy effectiveness.While current CBDCs are positioned as M0 currencies, strictly currency in circulation plus commercial bank reserve balances, he proposed that central banks could evolve them into M2 currencies. M2 is a measure of money supply that incorporates checking deposits and other forms of deposits that are readily convertible to cash, alongside cash itself.

news
Web3 & Enterprise·

May 17, 2023

OKX Wallet to Support BRC-20 Tokens and Bitcoin Ordinals

OKX Wallet to Support BRC-20 Tokens and Bitcoin OrdinalsIn a press release published on Tuesday, Seychelles-based cryptocurrency spot and derivatives exchange OKX announced that it is in the process of enabling an Ordinals marketplace on the OKX Wallet, which will enable customers to mint and trade BRC-20 tokens.Photo by Karolina Grabowska on PexelsRising BRC-20 market capThe move will also enable users to inscribe non-fungible token (NFT)-based digital content on the Bitcoin blockchain by way of ordinal inscriptions. The market capitalization of BRC-20 tokens has been rising exponentially over the course of the past few weeks despite only being in existence since March.BRC-20 is an experimental token standard which was created by an anonymous developer with the handle “Domo” and username ‘@domodata’ on Twitter. A token standard governs how and where a cryptocurrency can be used. The approach has been pioneered by developers on the Ethereum blockchain who created the ERC-20 standard a number of years ago, relative to the Ethereum network.OKX has clearly identified a rising trend and wants to be an early adopter in benefiting from it. In their short existence, BRC-20 tokens have mainly implicated meme tokens but as more experimentation follows, use cases that rely on the token standard are likely to expand.Binance has signaled a similar intent, having stated last week that before the month is out, Bitcoin Ordinals will be added to its NFT marketplace. Ordinals preceded the development of the BRC-20 standard by a couple of months, with over five million of the inscriptions having been generated since they emerged. It’s believed that the minting of those Ordinals has generated fees to the value of around 1,000 BTC (or $27 million as per the BTC/USD price at the time of publication).Growing painsWhile the emergence of the BRC-20 standard and Bitcoin Ordinals brings quite a lot of excitement to a bitcoin blockchain that many found to be boring and lacking diversity in terms of potential use cases, it’s not been without its problems. On the one hand, these tokens and inscriptions make use of unused block space on the network.They also offer a solution to the longer term issue of a reduction in fees. The bitcoin blockchain in-built subsidy to miners is halved every four years, meaning that there will be a need for fees to sustain the incentive to miners to continue to secure the network.The downside to these recent developments is that the new tokens are going beyond using up unused block space. Instead, they’ve been responsible for driving Bitcoin transaction fees up to uncomfortable levels over the course of the past two weeks. It’s still early days in terms of this development, so there is every hope that developers can find solutions to the issue.Last week, Singapore-based project OmniBOLT announced that it will support BRC-20 tokens on Lightning Network. Taking some of this activity away from the bitcoin mainnet will serve to dampen excessive transaction costs and transaction delays due to an excessively long queue of transactions within the bitcoin mempool.The recent transaction cost difficulty relative to Bitcoin has prompted Binance to respond by stating its intention to add support for Lightning Network transactions in the not too distant future. OKX already supports Lightning transactions but not from within its wallet. As part of this announcement, the company stated that Lightning support will be coming to its wallet in the near future.

news
Loading