Top

CoinGecko security breach latest threat within crypto space

Web3 & Enterprise·January 12, 2024, 1:51 AM

The crypto space continues to suffer a disproportionate share of hacks and scams that were further exacerbated on Wednesday, with Malaysian crypto data aggregator the latest to succumb to a security breach.

 

Serving as yet another stark reminder of the persistent threats plaguing the sector, a phishing scam targeted CoinGecko's X account, leading to a brief compromise that raised concerns about the safety of user information.

https://asset.coinness.com/en/news/665e08d0b2b6f1b715f8ec42a31003c6.webp
Photo by GuerrillaBuzz on Unsplash

Phishing scam

During this incident, hackers posted a phishing link on CoinGecko's X account, falsely advertising a token airdrop for a cryptocurrency named GCKO. The deceptive post claimed that GCKO could be used for API services, including the cryptocurrency ANKR. Swift action by CoinGecko involved the removal of the fraudulent post and a public warning urging users to avoid interacting with any suspicious links or content.

 

In an X post, CoinGecko wrote:

”Our Twitter accounts @CoinGecko and @GeckoTerminal have been compromised. We're taking immediate steps to investigate the situation and secure our accounts. Please DO NOT click on any links or engage with suspicious content. Your security is our top priority.”

 

Employee error

The firm followed up with an update on Thursday, attributing the breach to a team member inadvertently clicking on a fraudulent Calendly link, granting unauthorized access to the hacker.

 

Despite having two-factor authentication (2FA) enabled and employing robust security measures, CoinGecko emphasized that the inadvertent click allowed unauthorized access. The compromised accounts were then exploited to disseminate misleading information and potentially engage in malicious activities.

 

CoinGecko expressed sincere apologies for any confusion or inconvenience caused by the incident. The company reiterated its commitment to platform security and continuous improvement of internal controls, assuring users that corrective measures were promptly implemented.

 

SEC incompetence

CoinGecko's security incident occurred within 24 hours of a similar occurrence involving the U.S. Securities and Exchange Commission (SEC). The SEC's X account was compromised, with scammers posting a false message from Chair Gary Gensler about the approval of spot bitcoin exchange-traded funds (ETFs).

 

While CoinGecko identified a vulnerability in its security regimen, the SEC later confirmed that the breach in its case was far more basic. It was not due to infrastructure attacks but rather the lack of 2-factor authentication (2FA) tied to the SEC's account, the most basic form of operations security.

 

Gensler and the SEC have come in for major criticism from the crypto community in the U.S. due to a policy of regulation by enforcement that has been pursued. With that, the Commission came in for swift and harsh criticism in the immediate aftermath of its X account hack.

 

Many pointed out the irony of Gensler advising consumers to secure their accounts back in October when the SEC itself had failed to do so. Others queried who would be responsible for what some interpreted as an episode of market manipulation, something that the SEC has perennially associated the crypto markets with. During the time that the account was compromised, millions of dollars of value were liquidated in short and long trading positions.

 

CoinGecko's quick response serves as a valuable lesson in the importance of vigilance and proactive security measures amid the growing threats facing the cryptocurrency community.

More to Read
View All
Policy & Regulation·

Oct 07, 2023

Taiwan Crypto Trader Strikes it Lucky in Tax Receipt Lottery

Taiwan Crypto Trader Strikes it Lucky in Tax Receipt LotteryA trader on Taiwan’s MaiCoin Max crypto exchange has struck it rich in an unexpected way, winning a grand prize of 10 million NTD (approximately $310,000) in the country’s monthly national tax receipt lottery.Photo by Nick Fewings on UnsplashFrom 6 cents to $300KWhat makes this story, which was reported by CoinDesk on Friday, even more surprising is that the trader had paid a mere 2 NTD (equivalent to $0.06) in fees on the exchange as they engaged in relatively small trades.The lucky individual, who chose to remain anonymous, didn’t earn this windfall through traditional trading profits or by accumulating tokens. Instead, their fortune came from Taiwan’s unique approach to tax compliance.For crypto exchanges like MaiCoin, every trade conducted on their platform technically counts as a taxable event. This means that active traders can amass numerous virtual “lottery tickets” each month through their trading activities and transaction fees.Uniform invoice lotteryTaiwan introduced its tax receipt lottery system, known as the uniform invoice lottery, back in the 1950s as an innovative method to encourage tax compliance among consumers. While tax authorities worldwide struggle to capture revenue from cryptocurrency holders, Taiwan’s approach allows them to indirectly benefit from the earnings generated on crypto exchanges.For every transaction made by an individual, whether that should occur on a crypto exchange or elsewhere, the individual is issued with a tax receipt. An electronic copy is also registered with Taiwan’s tax authority. Essentially, every receipt then becomes a lottery ticket as the tax authority then runs a draw on an ongoing basis where taxpayers can earn cash prizes.This particular win involving a Taiwanese crypto trader has drawn attention from the broader public. Paul Huang, a Research Fellow at the Taiwanese Public Opinion Foundation, took to X (formerly Twitter) on the subject, stating:”Who says retail users can’t profit from trading cryptos? Taiwan’s largest crypto exchange @MAX_exch announced some user made a tiny trade that paid $2 NTD ($0.06 USD) in fee on platform, the tax receipt ended up winning 10mil ($310k USD) in Taiwan govt’s invoice lottery!”The recent $310,000 jackpot represents the largest prize ever won by a crypto trader through this lottery. Nevertheless, Taiwan’s tax receipt lottery typically produces smaller windfalls, with the country collecting over $7 billion in sales tax revenue in 2021, and a significant proportion paid out in lottery winnings.Critics argue that this system may not be the most efficient way to boost tax compliance, but Taiwan maintains one of the world’s most effective tax regimes, consistently generating impressive revenue relative to its GDP. Additionally, stories of remarkable lottery jackpots serve as excellent public relations for the scheme.There’s little doubt that cryptocurrencies have brought about significant challenges for tax authorities worldwide. In this particular instance, Taiwan’s tax receipt lottery stands as a unique and intriguing approach to fostering compliance while occasionally making crypto traders unexpectedly wealthy.

news
Policy & Regulation·

Sep 03, 2024

Qatar’s QFC launches digital assets framework

The Qatar Financial Centre (QFC), a business and financial center located in the Qatari capital, Doha, has announced that the Qatar Financial Centre Authority (QFCA) and the Qatar Financial Centre Regulatory Authority (QFCRA) have launched the QFC digital assets framework. In a press release published to the QFC website on Sept. 1, the project set out details of its QFC Digital Assets Framework 2024.Photo by 拜耳 闫 on UnsplashIndependent economic zoneThe QFCA and the QFCRA both act in a regulatory capacity relative to the financial center. The QFC is an economic zone, which operates independently from the rest of the country. With that, it has its own legal, tax, regulatory and business framework. The initiative is similar in this respect to projects located within its Middle Eastern neighbors, the United Arab Emirates (UAE), such as RAK DAO in Ras al Khaimah and Abu Dhabi’s international financial center, the Abu Dhabi Global Market (ADGM). The QFC incentivizes international startups to base themselves within the economic zone by allowing full foreign ownership and 100% repatriation of any profits made by the established entity, with a low rate of 10% taxation applied to those profits. In its press release, the QFC claimed that the framework establishes the legal and regulatory foundation for digital assets, including the process of tokenization, legal recognition of property rights in tokens and their underlying assets, custody arrangements, transfer and exchange.  Providing for a transparent ecosystemAdditionally, the framework provides for the legal recognition of smart contracts. The QFC claims that the framework will ensure a “secure and transparent digital asset ecosystem,” in accordance with international standards and best practices.  The financial center established its Digital Assets Lab in October 2023. Since then, it has welcomed in more than 20 startups, with those entities at various stages in terms of developing, testing and commercializing their products and services. The project outlined that the digital assets framework was developed simultaneously, alongside the operation of the QFC Digital Assets Lab, with industry engagement and collaboration arising as a consequence, having played a role in the framework’s development. His Excellency, Sheikh Bandar bin Mohammed bin Saoud Al Thani, the Qatari Central Bank governor, commented on the development, stating: “Launching the 2024 Digital Assets Regulations marks a significant milestone in our journey towards realising the Third Financial Sector Strategy.” The central bank governor added that the project was aligned with Qatar’s endeavor to achieve specific digital transformation goals. Sovereign wealth fund rumorsRumors had emerged in December 2023 that Qatar’s sovereign wealth fund was driving a Bitcoin price surge. While those rumors weren’t substantiated subsequently, this latest development has once again led to some market commentators considering the prospect of one of the world’s largest sovereign wealth funds investing in Bitcoin. Pseudonymous crypto influencer “MartyParty,” who has over 110,000 followers on X, commented on the development, adding that “[The Qatar Investment Authority (QIA) has] been very interested in #Bitcoin and other digital assets and are huge investors in technology.” Back in 2021, QIA CEO Mansoor Bin Ebrahim Al Mahmoud stated at the Qatar Economic Forum that crypto needed to mature before the $500 billion wealth fund would establish a view about investing in the space.

news
Web3 & Enterprise·

May 10, 2024

Tiger Brokers brings online crypto trading to Hong Kong

Tiger Brokers (Hong Kong) is gearing up to bring its virtual asset trading platform to professional investors in Hong Kong, with plans to extend the service to retail-level investors in the short to medium term. Unified solution for equities and digital assetsTiger Brokers is an online broker, headquartered in Beijing, with an office and operations in Hong Kong. Additionally, the company has been listed (TIGR) on the Nasdaq stock exchange in the United States since 2019. With this latest plan which it outlined in an announcement shared with Cointelegraph, the company will offer professional investors a single solution for the trading and portfolio management of both securities and digital assets.  In merging traditional securities and crypto assets, the firm has partnered with Hong Kong’s HashKey Exchange, allowing access to 18 digital assets. That offering will include Bitcoin and Ethereum. Alongside these digital assets, the company will offer investors traditional financial products such as equities, options, futures and U.S. Treasury bonds. Integrating traditional and digital assets within the one platform eliminates certain complexities that come with managing multiple accounts across distinct brokers and platforms. As a consequence, investors are being extended greater convenience and flexibility in terms of global asset allocation.Photo by Ansel Lee on PexelsExtending service to retailInvestors with a preference for exposure to the recently approved spot Bitcoin exchange-traded fund (ETF) products will be enabled to purchase those ETFs through the platform.  Tiger will become the first technology-led brokerage in Hong Kong to offer an all-encompassing service supporting both traditional securities and virtual assets. The firm has incorporated competitive rates and a 24/7 trading ability into the offering in an effort to gain traction. Additionally, it has waived digital asset custody fees.  Through the Tiger Trade platform, professional investors will be given access to this array of investment options. Initially, availability of the facility will be confined to professional investors in Hong Kong. Hong Kong residents with an investment portfolio valued above 8 million Hong Kong dollars ($1 million) and corporate entities with assets in excess of 40 million Hong Kong dollars ($5 million) qualify within the definition of accredited investors. Once it gains the relevant regulatory approval, Tiger Brokers intends to extend the service to retail investors. The company also outlined that it is considering adding cryptocurrency spot withdrawals and deposits as features within the new service offering. Zeng Qingfei, Chief Financial Officer of Tiger International, expressed the company's pride in leading the charge in virtual asset trading services. He emphasized Tiger Brokers' commitment to meeting the evolving needs of investors by expanding its product portfolio to include diversified investment opportunities. Through this strategic expansion, the company is aiming to equip investors with the tools they need to navigate dynamic market conditions effectively. The company hasn’t confined its efforts to achieve further growth to Hong Kong. In recent days, it has also enabled 24-hour trading of U.S. stocks and exchange-traded funds (ETFs) in New Zealand. Through extended trading hours, Kiwi investors will have greater opportunity than ever to participate in the market. 

news
Loading