Top

CoinGecko security breach latest threat within crypto space

Web3 & Enterprise·January 12, 2024, 1:51 AM

The crypto space continues to suffer a disproportionate share of hacks and scams that were further exacerbated on Wednesday, with Malaysian crypto data aggregator the latest to succumb to a security breach.

 

Serving as yet another stark reminder of the persistent threats plaguing the sector, a phishing scam targeted CoinGecko's X account, leading to a brief compromise that raised concerns about the safety of user information.

https://asset.coinness.com/en/news/665e08d0b2b6f1b715f8ec42a31003c6.webp
Photo by GuerrillaBuzz on Unsplash

Phishing scam

During this incident, hackers posted a phishing link on CoinGecko's X account, falsely advertising a token airdrop for a cryptocurrency named GCKO. The deceptive post claimed that GCKO could be used for API services, including the cryptocurrency ANKR. Swift action by CoinGecko involved the removal of the fraudulent post and a public warning urging users to avoid interacting with any suspicious links or content.

 

In an X post, CoinGecko wrote:

”Our Twitter accounts @CoinGecko and @GeckoTerminal have been compromised. We're taking immediate steps to investigate the situation and secure our accounts. Please DO NOT click on any links or engage with suspicious content. Your security is our top priority.”

 

Employee error

The firm followed up with an update on Thursday, attributing the breach to a team member inadvertently clicking on a fraudulent Calendly link, granting unauthorized access to the hacker.

 

Despite having two-factor authentication (2FA) enabled and employing robust security measures, CoinGecko emphasized that the inadvertent click allowed unauthorized access. The compromised accounts were then exploited to disseminate misleading information and potentially engage in malicious activities.

 

CoinGecko expressed sincere apologies for any confusion or inconvenience caused by the incident. The company reiterated its commitment to platform security and continuous improvement of internal controls, assuring users that corrective measures were promptly implemented.

 

SEC incompetence

CoinGecko's security incident occurred within 24 hours of a similar occurrence involving the U.S. Securities and Exchange Commission (SEC). The SEC's X account was compromised, with scammers posting a false message from Chair Gary Gensler about the approval of spot bitcoin exchange-traded funds (ETFs).

 

While CoinGecko identified a vulnerability in its security regimen, the SEC later confirmed that the breach in its case was far more basic. It was not due to infrastructure attacks but rather the lack of 2-factor authentication (2FA) tied to the SEC's account, the most basic form of operations security.

 

Gensler and the SEC have come in for major criticism from the crypto community in the U.S. due to a policy of regulation by enforcement that has been pursued. With that, the Commission came in for swift and harsh criticism in the immediate aftermath of its X account hack.

 

Many pointed out the irony of Gensler advising consumers to secure their accounts back in October when the SEC itself had failed to do so. Others queried who would be responsible for what some interpreted as an episode of market manipulation, something that the SEC has perennially associated the crypto markets with. During the time that the account was compromised, millions of dollars of value were liquidated in short and long trading positions.

 

CoinGecko's quick response serves as a valuable lesson in the importance of vigilance and proactive security measures amid the growing threats facing the cryptocurrency community.

More to Read
View All
Policy & Regulation·

May 20, 2024

Hong Kong digital yuan pilot lacks P2P capabilities

Hong Kong has launched a pilot program for the digital yuan, marking the People’s Bank of China's (PBoC) central bank digital currency’s (CBDC) first major deployment outside mainland China.  This initiative, facilitated by the Hong Kong Monetary Authority (HKMA), represents another step forward in the integration of the digital yuan into Hong Kong's financial ecosystem.Photo by bady abbas on UnsplashCross-border transactions rather than P2PAccording to a press release, the HKMA and PBoC are working together to enable Hong Kong users to set up personal e-CNY wallets using just their Hong Kong mobile phone numbers. The faster payment system (FPS) will support these e-CNY wallets, allowing users to top up their wallets through 17 retail banks in the Chinese autonomous territory. However, the e-CNY wallets are primarily designed for cross-border payments between Hong Kong and the mainland, and currently do not support person-to-person transfers within Hong Kong. This pilot aims to facilitate transactions for Hong Kong residents using their digital yuan wallets, marking the first integration of a CBDC through a major central bank. The Digital Currency Institute (DCI) is managing the interoperability infrastructure between the FPS and the digital yuan, with a focus on enhancing cross-border payments, a key objective on the G20 countries' roadmap. More functionality promisedLike blockchain protocols, the digital yuan pilot offers 24/7 payment capabilities. Eddie Yue, the chief executive of the HKMA, stated that the e-CNY application and wallet would gradually gain more functionality as the HKMA and PBoC work to encourage more retail merchants to adopt the system. Yue stated: “By expanding the e-CNY pilot in Hong Kong and leveraging the 24x7 operating hours and real-time transfer advantages of the FPS, users may now top up their e-CNY wallets anytime, anywhere without having to open a Mainland bank account, thereby facilitating merchant payments in the Mainland by Hong Kong residents.” The HKMA and DCI are planning upgrades to the e-CNY wallets through real-name verification, aiming to enable corporate use cases for cross-border trade settlements in the future. Adoption strugglesWith at least 140 countries exploring CBDC pilots, China's digital yuan is among the most advanced. China has been actively promoting its CBDC, even paying monthly salaries in e-CNY to government workers and employees of state-owned enterprises. However, as reported by the South China Morning Post, many recipients are hesitant to use the digital yuan due to privacy concerns and other limitations. China's central bank aims to increase the use of the yuan in Hong Kong, especially in tourist areas. Last June, digital yuan ATMs were installed in the resort city of Sanya in an attempt to target use of the currency by tourists. Although the city of Jinan embarked upon an initiative last year to enable digital yuan payments on its bus system, the currency is not yet widely accepted for public transportation across China.  Meanwhile, Hong Kong is in the second phase of its own CBDC pilot, the e-HKD, and has launched a regulatory sandbox for stablecoins to foster communication between regulators and issuers of fiat-pegged stablecoins in the region. 

news
Markets·

Dec 07, 2023

Market speculates on Qatari investment driving bitcoin price surge

Market speculates on Qatari investment driving bitcoin price surgeRumors are circulating within the cryptocurrency space that Qatar’s sovereign wealth fund may have dabbled in investing in bitcoin, leading to the recent surge in the bitcoin unit price.Such a move, while still an unconfirmed speculation, would be indicative of the increasing recognition of Bitcoin as a mainstream asset class. At the time of writing, bitcoin stands at $44,000. That represents a 16% increase over the space of the past week and a 166% increase since the beginning of the year.Photo by Yiğit Ali Atasoy on UnsplashKeiser’s claimAccording to outspoken Bitcoin advocate Max Keiser, Qatar’s sovereign wealth fund (QSWF), responsible for managing the nation’s significant oil and gas-generated wealth, is considering allocating up to $500 billion to the leading cryptocurrency.To provide context, this investment would eclipse the publicly disclosed bitcoin holdings of MicroStrategy, founded by Michael Saylor, by an astonishing 671 times. MicroStrategy currently holds the position of the largest corporate holder of Bitcoin, with 174,530 BTC acquired in November.Keiser speculates that the QSWF’s monumental investment could propel bitcoin’s price to new highs, reaching $100,000. Keiser tweeted:“The God Candle, a $100,000 uptick in #Bitcoin is in play. It will shift the global axis of wealth and power in 1 tick.”Custodia Bank Founder and CEO Caitlin Long shared a similar view on the X social media platform on Wednesday, pointing out that in September the Emir of Qatar had visited El Salvador and met with President Nayib Bukele. The inference is that it would have been an interest in bitcoin that may have provided the motivation for that visit, given that Bukele and El Salvador have adopted bitcoin as a sovereign currency.However, not everyone is on board with this theory. Some have pointed out that the assertion that the QSWF will invest $500 billion into bitcoin is impossible, given that the fund has $475 billion under management.Bitcoin advocate Luke Broyles weighed in on the rumor, emphasizing the crucial interplay between bitcoin’s supply and demand. Broyles highlighted the $76 billion worth of BTC still available on crypto exchanges, underscoring the fundamental principle of bitcoin’s fixed supply. According to Broyles, any substantial investment would inevitably drive prices higher.However, Broyles remains skeptical of the Qatar news, deeming it a rumor, and expressed shock if it proves remotely true. That view has led many back to the original speculation in relation to this most recent price action, the illusive bitcoin spot exchange-traded fund (ETF) approval in the United States.Some activity in recent days has suggested that BlackRock, the world’s largest fund manager, has been doing preparatory work for the launch of its iShares Bitcoin Trust ETF. Not everyone was positive on the topic of Bitcoin on Wednesday, however. Jamie Dimon, the CEO of JPMorgan Chase, testified before the U.S. Congress on Wednesday, stating “If I were the government I’d close [Bitcoin] down.”

news
Web3 & Enterprise·

Jul 09, 2025

Metaplanet aspires to acquisition of digital bank

The CEO of Japanese hotel operator turned Bitcoin treasury company, Metaplanet, has suggested that the firm may consider acquiring a digital bank in the future. Simon Gerovich, the firm’s CEO and a former Goldman Sachs banker, told the Financial Times that part of the second stage of its overall strategy may involve “acquiring a digital bank in Japan and providing digital banking services that are superior to the services which retail now is getting.”Photo by Kanchanara on UnsplashBitcoin gold rushGerovich explained that phase one of Metaplanet’s plan involves participating in what he considers to be “a bitcoin gold rush.” He added: “We need to accumulate as much bitcoin as we can . . . to get to a point where we’ve reached escape velocity and it just makes it very difficult for others to catch up.” Other firms are jumping on the bandwagon, as within a very short timeframe, 140 companies around the world have adopted a Bitcoin treasury strategy. Metaplanet currently weighs in as the fifth-largest corporate holder of Bitcoin globally. Right now, the company holds 15,555 BTC. Its target is a holding of 210,000 BTC, which equates to around 1% of the total Bitcoin supply. Based on current pricing, such a holding would be worth in the region of $23 billion. Acquiring cash-generating businessesOnce the company has accomplished its Bitcoin accumulation goals, it plans to move on to phase two, acquiring cash-generating businesses while leveraging its Bitcoin holdings in order to do so. Using Bitcoin as collateral, Gerovich said that Metaplanet will “get cash that we can use to buy profitable businesses.”  While inroads are being made with regard to the acceptance of Bitcoin as a corporate reserve asset, it is earlier days still for its acceptance as collateral. Last month, the Federal Housing Finance Agency (FHFA) in the United States, ordered Fannie Mae and Freddie Mac, key government-sponsored players in the American mortgage market, to explore the treatment of Bitcoin as eligible collateral for mortgages. Standard Chartered and crypto exchange OKX launched a pilot program earlier this year geared towards the use of crypto for collateral purposes. Gerovich talks in terms of Metaplanet’s phase two plan playing out at a time “when bitcoin, like securities or government bonds, can be deposited with banks and then they’ll provide very attractive financing against that asset.” The Metaplanet CEO stated that he expects the Bitcoin accumulation phase of the plan to play out over a period of between four and six years. The Tokyo-listed firm started accumulating Bitcoin in 2024. Some market participants are backing Metaplanet’s strategy with their own money. Global investment management firm Capital Group recently became Metaplanet’s second-largest investor. Bitcoin treasury criticsHowever, the emergence of Bitcoin treasury firms has also drawn quite a few detractors. Some critics point out that many of these companies have a negative operating income. Market analyst Caleb Franzen asserted that even after buying Bitcoin, they’re still junk companies. Others point out that too many firms have jumped on the Bitcoin treasury bandwagon, making the prospect no longer attractive. Fakhul Miah, managing director of GoMining Institutional, is also concerned about copycats. He told Cointelegraph that ”if these smaller firms crash, we could see a ripple effect that hurts Bitcoin’s image.”

news
Loading