Top

CoinGecko security breach latest threat within crypto space

Web3 & Enterprise·January 12, 2024, 1:51 AM

The crypto space continues to suffer a disproportionate share of hacks and scams that were further exacerbated on Wednesday, with Malaysian crypto data aggregator the latest to succumb to a security breach.

 

Serving as yet another stark reminder of the persistent threats plaguing the sector, a phishing scam targeted CoinGecko's X account, leading to a brief compromise that raised concerns about the safety of user information.

https://asset.coinness.com/en/news/665e08d0b2b6f1b715f8ec42a31003c6.webp
Photo by GuerrillaBuzz on Unsplash

Phishing scam

During this incident, hackers posted a phishing link on CoinGecko's X account, falsely advertising a token airdrop for a cryptocurrency named GCKO. The deceptive post claimed that GCKO could be used for API services, including the cryptocurrency ANKR. Swift action by CoinGecko involved the removal of the fraudulent post and a public warning urging users to avoid interacting with any suspicious links or content.

 

In an X post, CoinGecko wrote:

”Our Twitter accounts @CoinGecko and @GeckoTerminal have been compromised. We're taking immediate steps to investigate the situation and secure our accounts. Please DO NOT click on any links or engage with suspicious content. Your security is our top priority.”

 

Employee error

The firm followed up with an update on Thursday, attributing the breach to a team member inadvertently clicking on a fraudulent Calendly link, granting unauthorized access to the hacker.

 

Despite having two-factor authentication (2FA) enabled and employing robust security measures, CoinGecko emphasized that the inadvertent click allowed unauthorized access. The compromised accounts were then exploited to disseminate misleading information and potentially engage in malicious activities.

 

CoinGecko expressed sincere apologies for any confusion or inconvenience caused by the incident. The company reiterated its commitment to platform security and continuous improvement of internal controls, assuring users that corrective measures were promptly implemented.

 

SEC incompetence

CoinGecko's security incident occurred within 24 hours of a similar occurrence involving the U.S. Securities and Exchange Commission (SEC). The SEC's X account was compromised, with scammers posting a false message from Chair Gary Gensler about the approval of spot bitcoin exchange-traded funds (ETFs).

 

While CoinGecko identified a vulnerability in its security regimen, the SEC later confirmed that the breach in its case was far more basic. It was not due to infrastructure attacks but rather the lack of 2-factor authentication (2FA) tied to the SEC's account, the most basic form of operations security.

 

Gensler and the SEC have come in for major criticism from the crypto community in the U.S. due to a policy of regulation by enforcement that has been pursued. With that, the Commission came in for swift and harsh criticism in the immediate aftermath of its X account hack.

 

Many pointed out the irony of Gensler advising consumers to secure their accounts back in October when the SEC itself had failed to do so. Others queried who would be responsible for what some interpreted as an episode of market manipulation, something that the SEC has perennially associated the crypto markets with. During the time that the account was compromised, millions of dollars of value were liquidated in short and long trading positions.

 

CoinGecko's quick response serves as a valuable lesson in the importance of vigilance and proactive security measures amid the growing threats facing the cryptocurrency community.

More to Read
View All
Web3 & Enterprise·

Aug 04, 2023

Nomura’s Laser Ventures Invests in Singapore’s Solv Protocol

Nomura’s Laser Ventures Invests in Singapore’s Solv ProtocolSolv Protocol, a Singapore-based DeFi startup, has revealed a significant stride forward with a $6 million funding round, drawing support from Laser Digital, the digital asset subsidiary of Japanese global financial services conglomerate Nomura.The project team provided details on the funding round via a blog post published to its website earlier this week. Accompanying Laser Digital in the funding round, Singapore’s UOB Venture Management also participated, alongside investors such as Matrix Partners, Bing Ventures, Mirana Ventures, Apollo Capital, Bytetrade Labs, and others.Photo by Towfiqu barbhuiya on Unsplash$14 million cumulative fundingThis injection raises its cumulative funding to an impressive $14 million. The innovative Solv Protocol has been developed to facilitate on-chain fund management within the realm of public blockchains.Delving into the intricacies of the Solv asset management protocol, Olivier Dang, COO of Nomura Securities’ wholesale digital office, expanded on its transformative potential, stating: “Solv has built a trustless institutional DeFi platform integrating brokers, underwriters, market makers, and custodians to create the first fund infrastructure on the blockchain to bridge DeFi, CeFi, and TradFi liquidity.”$100 million in trading volumeSolv Protocol is a DeFi infrastructure project that enables users to create and trade financial NFTs. The protocol concerns itself largely with ERC-3525, an Ethereum standard for semi-fungible tokens, the characteristics of which lend themselves well for financial use cases.At the heart of Solv’s business model lies a unique mechanism. Any fund utilizing its solution inherently allocates a portion of its assets under management. Inaugurated in the second quarter of this year, Solv has already facilitated over $100 million in trading volume.Semi-fungible token innovationThe origins of Solv are rooted in the pursuit of an optimal Ethereum token standard for effective fund management. Dissatisfied with existing standards, the founders, primarily Chinese technologists, forged an innovative path. Traditional ERC-20 fungible tokens weren’t deemed suitable due to the need for a new smart contract token for every customization. Similarly, non-fungible tokens (NFTs) posed limitations, being intrinsically designed as individual units not readily divisible, which is essential for issuing shares in a fund. The security token standard, ERC-1400, didn’t quite align either.Thus, Solv birthed the semi-fungible token through the development of ERC-3525, a groundbreaking solution to its unique challenge.While larger asset managers like Franklin Templeton and Ondo Finance have adhered to fungible tokens, a growing trend is emerging in the traditional asset management sector — a movement toward blockchain integration. UK-based Abrdn recently introduced a fund on the Hedera DLT network, while industry giant Schroders is exploring blockchain tokenization under Singapore’s Project Guardian initiative.It’s been an eventful week for Nomura’s Laser Digital. Alongside news of this investment, the company also announced its recent acquisition of a license from Dubai’s Virtual Asset Regulatory Authority (VARA). This regulatory green light bolsters its presence in the global digital asset sector.Nomura’s Laser Digital is amplifying its presence within the blockchain and digital asset domain, marking its sixth such investment within this year alone. Meanwhile, projects like Solv Protocol are pushing the boundaries of innovation through the development of semi-fungible tokens, extending the use cases of blockchain technology as it does so.

news
Web3 & Enterprise·

Sep 23, 2023

Japan’s GMO Coin Announces Special SGB Airdrop for XRP Holders

Japan’s GMO Coin Announces Special SGB Airdrop for XRP HoldersGMO Coin, a prominent cryptocurrency exchange operating as part of the Japanese IT conglomerate GMO Internet Group, has unveiled a unique opportunity for XRP holders. Eligible GMO Coin clients who have previously invested in XRP will receive an exclusive airdrop of Songbird (SGB) tokens.Photo by Kanchanara on UnsplashSGB token distributionThe distribution of these SGB tokens is slated for completion by September 29, offering a promising opportunity for XRP enthusiasts. To qualify for this airdrop, customers must have held XRP in their GMO Coin accounts at 09:00 on December 12, 2020. The airdrop is also being extended to those utilizing crypto asset lending services on the platform.To take advantage of the opportunity, eligible clients will need to provide a snapshot of their XRP holdings. While the exact pricing mechanism for the distribution remains undisclosed, it will be revealed at a later date. Presently, SGB is trading at approximately $0.0045, according to Malaysian cryptocurrency data aggregator CoinGecko.GMO Coin has assured its clients that they are free to manage their XRP holdings as they see fit after submitting the necessary proof. The distributions will ultimately be converted into Japanese yen and made available to clients by the end of the month.Ripple’s mixed fortunesThis development comes in the wake of a roller-coaster year for XRP holders. Ripple’s native token experienced substantial price fluctuations in response to various developments and events.One noteworthy instance occurred in mid-July when XRP surged by more than 70%. This surge followed a favorable ruling in a legal dispute between Ripple and the United States Securities and Exchange Commission (SEC).While regulatory pushback has featured strongly in the US, Ripple has sought to expand its business elsewhere with the Asian region featuring within that strategy. In June, the blockchain-based payments firm obtained in-principle approval from the Monetary Authority of Singapore (MAS) to offer its services within the city-state.Earlier this month, Ripple struck a deal with SBI Remit Co., a subsidiary of Japanese financial services conglomerate SBI Group, to enable the remittance company to utilize Ripple’s XRP cryptocurrency as a bridge currency, connecting bank accounts in the Philippines, Vietnam, and Indonesia.Songbird networkThe Songbird network serves as a canary blockchain on the Flare layer one network. Essentially, the blockchain plays a crucial role in allowing the facility to enable network architecture testing on the Flare network, including the Flare Time Series Oracle, F-Asset systems, and StateConnector.GMO Financial Holdings, the parent company behind GMO Coin, bought a 10% stake in AWR Capital, a multi-strategy crypto hedge fund, in April. Following that investment, AWR became a market maker at GMO Coin. The Japanese exchange business is ranked ninth on Forbes Digital Assets’ list of the world’s largest crypto exchanges.As GMO Coin prepares to distribute SGB tokens to eligible XRP holders, this airdrop marks a great opportunity for relevant stakeholders. It showcases the platform’s willingness to reward its customers and foster engagement within the crypto community.

news
Web3 & Enterprise·

Aug 21, 2023

KT and Iron Mountain Forge Alliance to Propel Blockchain-Powered E-Document Ecosystem

KT and Iron Mountain Forge Alliance to Propel Blockchain-Powered E-Document EcosystemSouth Korean telecommunications giant KT has entered into a strategic partnership with global information management company Iron Mountain to leverage blockchain technology in expanding the certified electronic document ecosystem.Photo by ron dyar on UnsplashFrom paper to digitalUnder this collaboration, KT and Iron Mountain will utilize the Korean telecom firm’s blockchain-based electronic document platform to digitize Iron Mountain’s physical documents. The partnership extends beyond digitization, with plans to explore diverse business prospects across various markets. It’s worth noting that Iron Mountain has an extensive global presence, operating across 54 countries.KT has been operating the Paperless platform since 2020, providing services such as contract writing, registered document delivery, and document storage. This initiative has been particularly beneficial for small and medium-sized enterprises, as well as sole proprietorship businesses, eliminating the need to establish individual systems.Asia-Pacific market as a priorityBoth companies are united in their objective to capture the Asia-Pacific market, a region where conventional paper documentation remains deeply ingrained. Given the extensive usage of paper documents in this market, the anticipated demand for digital transformation is substantial.Song Jae-ho, Vice President of KT’s AI/DX Convergence Business Division, emphasized the promising prospects of combining KT’s technological expertise with Iron Mountain’s global business capabilities. He highlighted the potential for a significant positive impact that their collaboration could bring to the global document market. Song expects the partnership will help KT position as a leader in driving digital transformation within the document management sector.Joyce Housien, Vice President of Commercial at Iron Mountain, echoed these sentiments, underlining the broader scope of their collaboration. She noted that their joint efforts are not only focused on achieving digital transformation within South Korea but also on generating new value within the wider Asian digital industry landscape.

news
Loading