Top

Hot Wallet Exploit Results in $23M Bitrue Loss

Web3 & Enterprise·April 19, 2023, 3:34 AM

Bitrue, a Singapore-based crypto exchange, has fallen prey to a $23 million hack due to a hot wallet exploit. The exchange has been forced to suspend all withdrawals until April 18, to provide an opportunity to conduct a thorough security review.

wallet with 20 USD bills in cash
©Pexels/Karolina Grabowska

 

Hot wallet vulnerability

Hot wallets are used by exchanges to store small amounts of cryptocurrencies for easy access. These wallets are connected to the internet and are therefore more vulnerable to attacks compared to cold wallets, which are stored offline. In the case of Bitrue, hackers were able to exploit the hot wallet and steal cryptocurrencies worth $23 million.

In a series of Twitter posts, the exchange outlined that the exploit occurred at 07:18 (UTC) on Friday. “We were able to address the matter quickly and prevented the further exploit of funds”, it went on to state.

The stolen digital assets include ETH, QNT, GALA, SHIB, HOT and MATIC. Bitrue outlined that the hot wallet funds account for only 5% of overall funds and that the rest of its wallets remain secure and have not been compromised.

Blockchain security firm PeckShield outlined how the funds were swapped and drained. A wallet it has labeled as “Bitrue drainer” swapped 173,000 QNT, 22.55 billion SHIB tokens, 46.4 million GALA and 310,000 MATIC for 8,540 ETH. The ether is now being held within the following address:

0x1819EDe3B8411EbC613F3603813Bf42aE09bA5A5

 

Reimbursing users

In response to the hack, Bitrue has promised to reimburse all affected users. However, the process could take some time.

The incident underscores the importance of taking precautions when storing cryptocurrencies on exchanges. Users should only keep a minimal amount of cryptocurrencies on an exchange and should not store more than they can afford to lose. Ongoing exploits, hacks and frauds exemplify the need for users to only use reputable platforms with a proven track record of security.

 

Doubling down on security

Bitrue has promised to improve its security measures to prevent similar incidents from occurring in the future. The exchange’s response to the hack has been lauded by many in the cryptocurrency community, who have praised the company’s transparency and commitment to reimbursing affected users.

The cryptocurrency community has been vocal in its criticism of exchanges that fail to prioritize security. The Bitrue hack is just the latest in a series of incidents that have highlighted the importance of maintaining security in the world of cryptocurrency.

It’s not the first security breach that the exchange has encountered. In 2019 Bitrue suffered a $4.7 million loss, with quantities of both XRP and Cardano (ADA) having been stolen. On that occasion, the exchange released tracking details relative to the stolen funds. Thanks to collaboration with Huobi, Bittrex and ChangeNOW, the funds and associated accounts were frozen.

According to data from CoinGecko, Bitrue trades an average of $1 billion in digital assets daily, with bitcoin and ether trading pairs accounting for a large proportion of that trading volume. The Bitrue hack has been a wake-up call for the cryptocurrency community and serves as a reminder of the ongoing risks associated with storing cryptocurrencies on exchanges.

More to Read
View All
Web3 & Enterprise·

Aug 21, 2023

NFT Artists Coming to Seoul in September for The Gateway: Korea

NFT Artists Coming to Seoul in September for The Gateway: KoreaThe Gateway: Korea, the world-renowned annual Web3 event held to celebrate the NFT community and digital artists, is set to take place next month as part of the sixth annual Korea Blockchain Week 2023. It will be held on September 7 to 8 at SFactory, a culture and arts hub in Seongsu-dong, Seoul.The Gateway has been organized by the Web3 digital media platform nft now since 2021. This year, it will be co-hosted by the blockchain community FactBlock, which is also the co-host of Korea Blockchain Week.Bringing realms togetherCentered around the theme of convergence — specifically, the convergence of man and machine, East and West, and URL and IRL — The Gateway: Korea aims to connect Web3 technology and Korean culture. It will feature activities such as interactive experiences and immersive galleries.Photo by fabio on UnsplashExploring digital art and visionary voicesThe event will also include various programs, including keynote speeches and fireside chats. Most notably, there will be an exhibition of works by famous digital artists like Beeple, who famously sold his NFT art piece titled “Everydays — The First 5000 Days” for a record-breaking $69 million two years ago at an online auction held by auction house Christie’s.Other invited artists include DeeKay, Emonee LaRussa, and Krista Kim, among others.“I am delighted that we are able to achieve global expansion through the September event in Seoul,” said Matt Medved, Co-Founder, CEO, and Editor-in-Chief of nft now.“Korea is experiencing an unprecedented moment where cultures from around the world intersect. This event will welcome leading creators and innovators in the Web3 field.”

news
Policy & Regulation·

Jun 22, 2023

Singaporean Regulator Proposes Framework for Digital Money Use

Singaporean Regulator Proposes Framework for Digital Money UseThe Monetary Authority of Singapore (MAS) has released a White Paper that outlines proposed standards for the use of digital assets. The aim is to establish a common protocol and conditions for the utilization of these assets.While the paper identifies the potential digital assets bring in streamlining transactions and promoting financial inclusion, it also outlines challenges that need to be addressed before digital money can be successfully implemented.Photo by Pixabay on PexelsPurpose Bound Money (PBM)MAS’s White Paper, which was published on Wednesday, provides requirements to protect the use of digital assets as a medium of exchange and offers a technical overview of Purpose Bound Money (PBM). PBM allows the sender of digital money to specify certain conditions such as validity periods or how the money can be spent.The covered digital monies include central bank digital currencies (CBDCs), tokenized bank deposits, and potentially well-regulated stablecoins, excluding digital assets that it considers volatile such as Bitcoin. These digital monies are generally pegged to real-world currencies, commodities, or financial institutions, making them more stable.MAS highlights that PBMs utilize a common protocol compatible with different ledger technologies and forms of money. This protocol enables money to be directed toward a specific purpose without requiring the money itself to be programmed. It functions as a secure two-layered delivery vehicle, with funds held as collateral in a “wrapper” until specific conditions are met for its release.Standardized formatThe standardized format outlined in the White Paper will allow users to access digital money using their preferred wallet provider. By establishing these standards, the prospects for digital money to become a significant component of the future financial and payments landscape are enhanced. Standardization and regulated use of PBMs can unlock economic value, facilitate efficient and inclusive digital transactions, and provide additional consumer protection.One notable application of PBMs is in protecting online payments, such as e-commerce transactions and prepaid packages. With PBMs, advance payments can be securely held until the service is fulfilled, ensuring that the product or service is delivered before funds are released. This benefits both consumers and merchants, assuring consumers of product delivery and allowing merchants to verify payment before delivering.PBMs can also aid businesses in mitigating risks associated with international trade transactions, ensuring secure and efficient payments while reducing the potential for fraud or non-payment.InteroperabilityTo ensure the safety and usability of digital monies, MAS highlights considerations that will impact PBM implementation. Interoperability across different platforms is crucial to avoid fragmentation and excessive fees. The choice of underlying digital currencies also affects usability and value, with CBDCs, tokenized bank liabilities, and stablecoins offering varying levels of guarantees and regulatory oversight. Additionally, privacy, digital readiness, and the impact on users need to be carefully assessed.MAS acknowledges that the regulatory landscape for digital monies is still evolving globally, which may lead to varying regulatory treatment of PBMs across jurisdictions. It believes that policy considerations should be thought through when designing PBM-based solutions, including decisions regarding issuance, distribution, and conditions for use.

news
Web3 & Enterprise·

Dec 04, 2023

Web3 chatting app Beoble launches beta version with 50,000 users

Web3 chatting app Beoble launches beta version with 50,000 usersWeb3 social messaging app Beoble has secured over 50,000 users in just one day since the beta version of the app was released on Saturday (KST), according to a post on its official X account. This comes after pre-registration applications closed on Nov. 30, which saw over 100,000 sign-ups.Photo by Andrej Lišakov on UnsplashEmpowering Web3 connectivityBeoble is a Web3-based social messenger platform that employs a decentralized encryption network called the Communication Delivery Graph. It allows users to engage in end-to-end encrypted chatting between their digital wallets and offers a communication toolkit for integrating decentralized applications (dApps). The app currently supports all EVM-compatible blockchains like Ethereum and Polygon and plans to add others like Solana, Aptos and Sui in the future.“Beoble is essentially the first Web3 messaging app with the complete user experience,” said Cho Sung-min, CEO of Beoble.In particular, Beoble has gained attention for having a low barrier to entry due to its user-friendly user interface and experience (UI/UX). Notably, the platform facilitates direct communication between Web3 wallet owners and allows them to conduct non-fungible token (NFT) and peer-to-peer (P2P) transactions.Incentivizing community engagementThe Beoble team explained that the ongoing beta test will be an opportunity to incorporate user feedback and improve services. It will also be a period during which users can receive rewards based on their chat room engagement.“The more active users are in the community, the higher their rewards. Rewards can be obtained through activities like completing quests, following others, reacting to messages and logging in,” the firm explained. The Beoble rewards system distributes “cat points” to users based on their participation and contribution to the ecosystem, which are then used to determine their eligibility for rewards like token airdrops.Beoble also previously raised $2 million in pre-seed funding, backed by investors like Digital Currency Group, HashKey Capital and Genesis Blockchain Ventures. The platform’s public launch is scheduled for Q1 2024.

news
Loading