Top

Telcoin makes users whole in exploit recovery

Web3 & Enterprise·January 13, 2024, 10:31 AM

Singapore-regulated Telcoin, a developer of financial applications for mobile users, has successfully restored user balances following an exploit that saw approximately $1.2 million worth of funds transferred from affected accounts.

https://asset.coinness.com/en/news/3c1766686bc03dc8348603085a3f1f51.webp
Photo by Martin Sanchez on Unsplash

Unauthorized withdrawal of assets

The incident, which occurred in late December, was attributed to an error in the interaction between Telcoin's digital wallet and a proxy contract on Polygon. In a blog post which was published on Wednesday, the company shared a full post-mortem analysis report which it commissioned Hong Kong-based blockchain security firm BlockSec to carry out, relative to the exploit.

 

The fault in the proxy contract's implementation caused a technical conflict that allowed for the unauthorized withdrawal of assets. Fortunately, no admin keys were compromised, ensuring that the broader Telcoin ecosystem remained unaffected.

 

In response to the security breach, Telcoin took action by immediately freezing the use of its application as a precautionary measure. The team initiated an investigation and committed to releasing updates promptly to address the issue and restore normalcy. The identified address associated with the exploit was 0x35d2775e5f95596509951b140d68fc5b9185ff98.

 

TEL token freefall

Despite the initial market turbulence, with the price of the Telcoin (TEL) token plummeting, the cryptocurrency has demonstrated resilience. On Dec. 25, TEL fell from a peak price of $0.00235146 to $0.00122535, representing a 48% decrease. At the time of writing, the price has slightly rebounded, trading at $0.001335. Nevertheless, it's still down 40% over the course of the past month's trading.

 

In a social media direct message to CoinDesk recently, Telcoin's founder and CEO, Paul Neuner, expressed pride in how his team responded to the issue, stating:

 

“Making the decision to preemptively restore affected user wallets from our company treasury was a no-brainer, and I’m proud of the team for making that happen in record time.”

 

Regulatory standing

Telcoin's regulatory standing played a crucial role in instilling confidence during this challenging time. Although headquartered in Tokyo, the company is regulated in Singapore as a Major Payment Institution (MPI) by the Monetary Authority of Singapore (MAS).

 

The firm is also registered and regulated in other global markets, including Canada and Australia. Telcoin maintains offices in Singapore, Tokyo, Dubai and Los Angeles. The company had been active in trying to shape regulation in the United States in 2023, with company executives having made repeated visits to Washington D.C. to meet with Financial Services Committee members and staffers on Capitol Hill.

 

In April of last year, the company extended its service offering to the European market, starting out initially in Lithuania.

It appears that the restoration of Telcoin's application services led to a significant boost in user confidence. The company reported a 400% increase in deposits compared to the previous month. Users responded favorably to Telcoin's swift resolution of the security breach, with a ratio of $3.60 being deposited for every $1 withdrawn in the first day since the service restoration.

 

Telcoin's measures, collaboration with security experts and the surge in user deposits appear to have resulted in a resilient recovery. The saga highlights the importance of prompt and transparent responses in maintaining trust in the face of crypto security issues.

 

 

More to Read
View All
Markets·

Dec 30, 2023

OKX delisting sparks privacy coin price slump

In a move announced on Friday, OKX, the Seychelles-headquartered cryptocurrency exchange, declared its decision to delist 20 trading pairs by Jan. 5, triggering a notable price fall for major privacy coins such as Monero, Dash and ZCash. The exchange cited that the affected pairs did not align with its listing criteria, though specific details were not disclosed.Photo by Khara Woods on UnsplashPrivacy coin delisting trendWhile OKX did not explicitly articulate the rationale behind this move, industry observers are speculating that it could be part of the exchange’s broader efforts to comply with evolving regulatory measures. Privacy coins have increasingly drawn regulatory scrutiny due to concerns about potential illicit activities within the crypto space. Earlier in the year, Binance had also announced the delisting of several privacy coins to ensure compliance with local laws and regulations. The broader context of regulatory pressures on privacy-focused cryptocurrencies seems to be impacting major exchanges’ decisions. In 2022, Huobi cited regulatory pressures when it took the decision to delist Monero and other privacy coins. Kraken was further ahead of the curve still, delisting Monero for UK customers in November 2021. Downward price actionFollowing OKX’s announcement on Friday, the prices of privacy-focused cryptocurrencies, notably Zcash (ZEC) and Monero (XMR), experienced a decline. The entire sector of “privacy cryptos” has witnessed a 7.1% decrease in overall market capitalization, according to an index of such coins compiled by Malaysian crypto indexing firm CoinGecko. During this period, Monero and Zcash have seen unit price declines of 4.5% and 10.7%, respectively. Other tokens set for delisting, including Dash, Powerpool and Horizen, have recorded declines of up to 14%. OKX has provided guidance to users, advising them to cancel orders related to the affected trading pairs before the delisting date to avoid automatic cancellation, a process that may take 1–3 working days. Concurrently, the exchange has halted deposits for the impacted cryptocurrencies and plans to cease withdrawals by Mar. 5, 2024, affording holders sufficient time to withdraw their assets. However, once the delisting is complete, trading these digital assets on OKX will become impossible. Interestingly, certain privacy coins like MINA continue to be listed on the exchange, experiencing a 7.5% increase following the delisting announcement. It’s crucial to note that OKX’s delisting is not exclusive to privacy tokens, as it also includes other trading pairs associated with digital assets such as Kusama, Flow, Kyber Network and Aragon. The fight for privacySome crypto community members have voiced their concerns on social media, with many fearing that the innovation may be ‘captured’ by the various state authorities over time. However, ex-Monero developer Ricardo Spagni (AKA “Fluffypony”) was nonchalant about the whole thing, judging by his comments. In a post on social media platform X, he wrote: ”Monero users and contributors literally couldn’t care less about delistings at this point.” As the regulatory landscape evolves, cryptocurrency exchanges are navigating these challenges, impacting the availability and value of specific tokens on their platforms. Investors and privacy advocates alike will be closely watching how such regulatory compliance measures continue to shape the crypto market and crypto use.  

news
Web3 & Enterprise·

Jan 04, 2024

BRC-20 token standard architect objects to proposed fork

Disagreement has emerged within the Bitcoin blockchain community, revolving around the BRC-20 token standard. Domo, the pseudonymous developer behind the creation of the token standard, has publicly expressed his opposition to an upcoming upgrade proposed by the Hong Kong headquartered project, UniSat Wallet.Photo by Kanchanara on UnsplashDue diligence concernsOn Tuesday Domo took to the X social media platform (previously Twitter) to articulate his concerns. He voiced apprehensions about hastily implementing updates in BRC-20, asserting that such a rush could potentially harm the broader BRC-20 user community. Domo's resistance is rooted in his belief that UniSat Wallet's proposed updates lack due diligence and are being introduced precipitously without considering potential repercussions. He wrote:”Recognizing the serious implications and valuations involved, I believe rushing these updates in BRC20 is reckless, disregards their peer indexers, and could potentially harm the broader community of BRC20 users.” ‘Split’ rather than ‘fork’Conversely, UniSat Wallet has declared its intention to “follow the Ordinals Jubilee upgrade, to confirm that BRC-20 is still on Ordinals without splitting into an isolated protocol." Described as a "split" rather than a "fork," UniSat Wallet's approach adapts to the Ordinals Jubilee upgrade, a transformative change in how the Bitcoin blockchain manages tokenized assets. In mapping the way forward its proposing to take, UniSat outlined that it would publish a whitepaper on Jan. 31, describing it as “the most significant present we are able to deliver” for BRC-20, Ordinals and Bitcoin. The crux of the matter lies in the method and pace of implementing these changes. Domo's concerns reflect a broader sentiment within the crypto community, where the rapid pace of advancements often collides with the need for stability and thorough vetting. UniSat Wallet's proposed changes, though innovative, may be viewed as potentially destabilizing by certain community members, especially those deeply entrenched in the current BRC-20 standard. Striking a balanceThis development is pivotal, highlighting the dynamic and occasionally contentious nature of blockchain technology and cryptocurrency standards. Web3 project incubator and investor TrustlessLabs summed up the matter in a social media post on Wednesday, drawing the following conclusions:”This situation encapsulates a critical challenge in blockchain protocol development: finding the right balance between preserving stability and embracing technological advancements.” As technology evolves, divergent opinions on the trajectory of these advancements are inevitable. The ongoing debate between Domo and UniSat Wallet serves as a microcosm of the larger conversations transpiring in the crypto space about how to strike the right balance between progress and stability. The BRC-20 token standard, an experimental fungible token standard on Bitcoin, draws inspiration from Ethereum's ERC-20 standard. It allows the creation of fungible tokens using Bitcoin’s Ordinals protocol, constituting a significant breakthrough in cryptocurrency by enabling novel forms of tokenization on the Bitcoin blockchain. This disagreement not only spotlights a critical debate in the crypto realm but also emphasizes the delicate equilibrium between innovation and stability.  

news
Policy & Regulation·

Aug 04, 2023

Hong Kong Lawmaker Explores Digital Asset Links With Mainland

Hong Kong Lawmaker Explores Digital Asset Links With MainlandIn a move aimed at bolstering its position as a rising global Web3 hub, Hong Kong Legislative Council member Johnny Ng has expressed his aspiration to foster greater collaboration between digital asset platforms in Hong Kong and a Shanghai-based exchange.Photo by Simon Zhu on UnsplashDigital asset exchange interconnectivityAs Hong Kong continues to position itself as a key player in the emerging Web3 landscape, Ng envisions a future where licensed virtual asset exchanges in Hong Kong could be interconnected with their counterparts in Shanghai.Ng’s remarks came during an interview with Chinese media outlet The Paper. Drawing a parallel with the established Shanghai-Hong Kong Stock Connect program that seamlessly connects the stock markets of both cities, Ng raised the question of whether a similar connection could be established for licensed digital asset exchanges. Ng’s idea hinges on the potential to bridge appropriate platforms in Shanghai with those licensed in Hong Kong for virtual asset trading.Interconnected talent poolThe lawmaker’s enthusiasm for interconnectivity also extends to the talent pool. He expressed his desire for more Web3 talent exchanges between Hong Kong and the mainland, recognizing Shanghai’s status as a financial hub boasting numerous exceptional financial enterprises.Hong Kong’s approach to the Web3 landscape stands in contrast to mainland China’s stringent cryptocurrency regulations. While China banned cryptocurrency transactions in 2021, Hong Kong has embraced crypto firms, even encouraging partnerships between these firms and local banks.This year, Hong Kong authorities unveiled a series of cryptocurrency-related policy statements, aimed at fortifying its stature as a global financial center. A significant step followed in December, when the Hong Kong Legislative Council passed an amendment introducing a comprehensive licensing framework for virtual asset service providers (VASPs).In a recent development underscoring Hong Kong’s pro-crypto stance, HashKey and OSL have become the pioneering recipients of licenses for retail trading under the new regulatory regime, which commenced on June 1.Differing policy approachesPeople following developments in crypto and Web3 in China and East Asia have been speculating if the strategic positive shift in Hong Kong towards developing as a regional hub relative to the sector is indicative of a softening in the approach of mainland China towards the industry. It appears that Hong Kong’s pursuit of crypto business has been sanctioned by Beijing.Commentators have been monitoring the emergence of further encouraging signals. In May, Chinese state television featured a segment that covered cryptocurrency and in particular Bitcoin. Binance CEO Changpeng Zhao (CZ) was sufficiently encouraged by the development to suggest that it was “a big deal,” although the clip was later removed from the broadcaster’s website.Ng’s proposal aligns with the broader narrative of Hong Kong’s ambitious push into the Web3 landscape, capitalizing on its favorable regulatory environment to attract crypto-related ventures. As discussions evolve around the potential interconnectivity between Hong Kong and Shanghai’s digital asset exchanges, the global cryptocurrency community watches with interest to see if there are any emerging signs that Beijing will reciprocate positively.

news
Loading