Top

Beosin Report: Crypto Rug Pulls Surpass DeFi Exploits in May

Markets·June 03, 2023, 6:32 AM

According to a recent report by blockchain security firm Beosin, losses from “rug pulls” or “exit scams” in the cryptocurrency space exceeded the amount stolen from decentralized finance (DeFi) projects during the month of May.

The report, published on June 1 by Beosin Blockchain Security, revealed that rug pulls and scams resulted in losses of over $45 million across six incidents during the month. Beosin is headquartered in Chengdu, in China’s Sichuan province. The firm uses formal verification methods to secure smart contracts.

In general there were 22 security incidents in the digital assets space over the course of the month. That overall figure accounts for losses totaling $20 million, and represents a vast improvement on the previous month.

Three of the incidents were accounted for by security issues related to hardware wallets such as the Trezor and imKey wallets. Six were rug pulls/crypto scams, two were crypto crime incidents while another implicated a critical vulnerability relative to zero-knowledge proof technology.

Photo by Tara Winstead on Pexels

 

DeFi protocol attacks

In contrast, there were 10 attacks on DeFi protocols, amounting to $19.7 million in stolen funds. This figure represents a significant decrease of nearly 80% compared to April, and the losses from these types of exploits had been declining for two consecutive months, as per Beosin’s findings.

The largest rug pull incident in May involved the alleged disappearance of $32 million associated with the crypto project Fintoch on May 24. Meanwhile, the largest attack on a DeFi platform was a $7.5 million breach targeting Jimbos protocol, according to Beosin’s report.

 

Shifting hacker strategy

Beosin noted a shift in the targeting strategy of hackers and scammers, who are now increasingly focusing their attacks on ordinary users rather than various project parties. To mitigate risks, the report recommended that crypto users enhance their anti-fraud awareness, conduct thorough due diligence before investing in projects, and learn how to improve the security of their digital assets.

The report also issued a warning against using shared or public charging devices for mobile phones. Beosin highlighted the potential risks associated with these devices, as they could be manipulated to inject malicious programs that compromise private keys. This caution aligns with a similar advisory issued by the United States Federal Bureau of Investigation (FBI) in April.

The FBI’s Denver office cautioned against using public USB ports, including those found at airports, due to the potential introduction of malware and monitoring software onto devices. Instead, they suggested carrying a personal charger and USB cord for use with electrical outlets.

As the cryptocurrency landscape continues to evolve, it is crucial for users to remain vigilant and proactive in safeguarding their investments. With the rise of rug pulls and the ongoing threats in the DeFi space, staying informed, exercising caution, and adopting robust security measures are essential for protecting one’s digital assets in this rapidly changing industry.

More to Read
View All
Web3 & Enterprise·

Sep 05, 2023

OKX Enters Final Stages of Securing VASP License in Hong Kong

OKX Enters Final Stages of Securing VASP License in Hong KongSeychelles-headquartered cryptocurrency exchange OKX is on the verge of securing its virtual asset service provider (VASP) license in Hong Kong, with approval expected as early as June 2024.That’s according to Li Zhikai, OKX’s Global Chief Commercial Officer, who, in a recent interview with Infocast, shed light on the exchange’s preparations, including collaborations with banks and other related technological integrations.Photo by Simon Zhu on UnsplashThe Road to a VASP LicenseObtaining a VASP license in Hong Kong is no easy feat. Regulatory requirements impose a 30% cap on investors’ crypto investments, ensuring they do not risk more than one-third of their net income.Furthermore, the Hong Kong regulator has implemented stringent crypto asset storage protocols, mandating that crypto exchanges securely store 98% of their crypto assets in cold wallets. Additionally, they must provide insurance and compensation arrangements to protect clients’ interests.Cost has been another issue. In June it emerged that Web3 businesses have been shelling out anywhere between 20 million and 200 million Hong Kong dollars ($2.55 million and $25.5 million) in order to see out the licensing application process.Alongside these licensing difficulties, Hong Kong’s Securities and Futures Commission (SFC) issued a warning last month aimed at unregistered crypto businesses engaging in “improper practices” within the Chinese autonomous territory.OKX’s remarkable growthWith OKX having reported growth within the Hong Kong market earlier this year, pointing to the onboarding of over 10,000 new users in just one month, it’s likely that licensing is both worthwhile and necessary for the firm despite the difficulties in obtaining it. In March the exchange established OKX Hong Kong, a local entity, with the primary objective of securing a VASP license and operating as a virtual asset trading platform within the city.Hong Kong’s decision to open its doors to retail investors as of June 1 generated significant interest, with more than 80 foreign and Mainland China-based crypto companies expressing their intent to establish a presence in Hong Kong and obtain local licenses. Among these firms are Gate.io, Huobi, CoinEx, and Interactive Brokers.Expanding global reachNotably, OKX has been actively acquiring licenses in various jurisdictions worldwide as part of its strategic expansion plan. The exchange secured a Minimal Viable Product (MVP) license from the Dubai Virtual Assets Regulatory Authority (VARA) in June. This licensing milestone followed the establishment of a new office at the Dubai World Trade Center by OKX.Before venturing into the Middle East, OKX took steps to obtain a French digital asset service provider (DASP) license in May, aiming to position France as its regional hub in Europe. To facilitate this, OKX established a local subsidiary, OKX France. The application and registration process with the French regulator is expected to enable OKX to operate in full compliance with European regulations.Hong Kong embarked on its journey to become a crypto-friendly jurisdiction over the course of the past 12 months, but particularly so when it unveiled its licensing framework for cryptocurrency exchanges catering to retail customers earlier this year. However, only a handful of platforms, such as HashKey and OSL, managed to secure licenses for offering retail crypto trading services. Others, including Huobi and Gate.io, are still awaiting that regulatory nod.

news
Web3 & Enterprise·

Nov 10, 2023

Shinhan Bank to issue NFTs at 2023 Blockchain Grand Week in Seoul

Shinhan Bank to issue NFTs at 2023 Blockchain Grand Week in SeoulShinhan Bank, one of South Korea’s leading financial institutions, is set to issue non-fungible tokens (NFTs) and operate a promotional booth in celebration of its participation in the upcoming 2023 Blockchain Grand Week, scheduled for next Wednesday, according to a report by local news outlet Newspim.The Blockchain Grand Week, an annual event since 2018, is hosted by the Ministry of Science and ICT and organized by the Korea Internet and Security Agency (KISA), the National IT Industry Promotion Agency (NIPA) and the Institute of Information and Communications Technology Planning and Evaluation (IITP). Its objectives are to increase public awareness of blockchain technology and to facilitate the broader adoption of its ecosystem.Photo by Pete Linforth on PixabayNFTs to first 2,000 visitorsThe event is set to take place at the Convention and Exhibition Center, better known as COEX, in Seoul over two days. It will feature a conference centered around the theme “Adding Trust to Digital Platforms” and will include several academic seminars. Various blockchain companies will also be showcasing their products and services at their respective booths. For this event, Shinhan Bank is collaborating with Hexlant and Vircle to introduce their NFT project. They also plan to offer NFTs to the first 2,000 visitors to their booth.The NFTs will be distributed through Shinhan Bank’s NFT wallet, SOL Wallet, and will come with practical perks such as tickets for events at the booth and coffee coupons. Furthermore, these NFTs will be transferable to others.A representative from Shinhan Bank expressed hope that visitors will have the opportunity to experience the bank’s NFTs and gather diverse information related to blockchain technology. The official also emphasized the bank’s commitment to continually developing and introducing blockchain services that can be integrated into customers’ daily lives.Shinhan Bank’s endeavors in blockchainShinhan Bank’s efforts in the blockchain sector have been marked by various accomplishments in recent years. In 2021, the bank received the Ecosystem Transformation Award at the Enterprise Blockchain Awards, now known as the Web3 and Blockchain Transformation Awards (W3B Awards). This January, Shinhan integrated the SOL Wallet service into its financial services application. The bank remains dedicated to spearheading client-centric blockchain initiatives, one such effort being the development of NFT technology in collaboration with Hexlant and Vircle for corporate marketing purposes.Prohibition on discussing virtual assetsMeanwhile, there has been some dissatisfaction among industry insiders regarding the event’s restrictions. Those operating booths are prohibited from mentioning virtual assets in their projects. The application form for booth holders explicitly stated that exhibitions related to virtual assets are not allowed. This cautious approach is believed to be a response to recent cryptocurrency scandals, such as the $40 billion Terra-LUNA crash and the controversy surrounding a Korean lawmaker’s crypto holdings.

news
Policy & Regulation·

Feb 05, 2024

Korean banks to bolster AML measures for cryptocurrency exchanges

South Korean banks will soon have to be prepared with adequate anti-money laundering (AML) measures when issuing real-name bank accounts to cryptocurrency exchanges, according to a report by local media outlet News1. This requirement is part of the proposed amendment to the enforcement decree of the Financial Transaction Reports Act, with the Korean Financial Services Commission (FSC) issuing a legislative notice about it today. The FSC will be gathering feedback until March 4, prior to the implementation.Photo by Tuan P. on UnsplashAdequate staff and physical facilitiesThe new amendment requires banks supporting virtual asset service providers (VASPs) to employ adequate staff and establish and uphold physical infrastructure to combat money laundering and terrorist financing. Through this revised legislation, the FSC aims for banks to be equipped with the necessary resources to manage risks linked to the provision of real-name bank accounts to VASPs. With the issuance of real-name bank accounts, banks will face ongoing cautionary duties. The FSC plans to offer clearer guidelines to help banks decide whether to continue providing such accounts to VASPs. In its 2024 agenda, the FSC stated its plans to evaluate VASPs' readiness for their responsibilities ahead of the Virtual Asset User Protection Act, set to be implemented in July. Additionally, the regulatory body will develop infrastructure to improve its monitoring of the cryptocurrency market.Intelligence platform focused on financial securityMoreover, the FSC plans to create a specialized intelligence platform focused on financial security. This platform is aimed at enabling proactive responses to cyberattacks and supporting financial institutions in the agile management of risks associated with emerging technologies.

news
Loading