Top

South Korea’s GDAC Suffers $13M hack

Web3 & Enterprise·April 12, 2023, 3:41 AM

South Korean cryptocurrency exchange, GDAC, has suffered a significant hacking incident that has resulted in the loss of approximately 23% of its custodial digital assets.

code
©Pexels/Pixabay

The hack occurred on Sunday when some of the exchange’s hot wallets were breached, and the stolen assets were transferred to an unidentified wallet. GDAC reported the incident on Monday and disclosed that the exchange lost over $13.1 million in Bitcoin, Ether, Wemix, and USDT, with more than $10 million in Wemix.

According to blockchain analytics firm Arkham Intelligence, the hacker has since swapped the USDT for ETH, sending 461 ETH to cryptocurrency tumbler, Tornado Cash. The hacker used three separate wallets to take funds from two of the exchange’s hot wallets. Arkham has labeled the wallets as follows:

GDAC Hacker 1: 0x244615D99684175d31369332039b2D84ce925EC5GDAC Hacker 2: 0x62B5eb2cb925Ce2898f9327B235b3228e7Cac1C2GDAC Hacker 3: 0x87597bDB421482190e223aCa0A4DEAd75AB0a98D

 

GDAC deposits/withdrawals suspended

GDAC has suspended its withdrawal and deposit services and reported the incident to the Korea Internet and Security Agency and the Financial Intelligence Unit. The exchange has also requested other cryptocurrency exchanges to block incoming transactions from suspicious addresses.

In a notice posted on its website, GDAC CEO Seunghwan Han apologized for the suspension of deposits/withdrawals and concern relative to the hack, adding that the firm will be working towards investor protection and safe withdrawal of funds in due course. GDAC also posted the breakdown of the digital asset quantities lost in the hack, with the hacker stealing 60.80 BTC, 350.5 ETH, 10,000 WEMIX and 220,000 USDT.

 

Crypto hacks increasing

This hacking incident comes at a time when cryptocurrency hacks have been on the rise. According to blockchain analytics firm Chainalysis, illicit actors stole $3.8 billion worth of assets last year, the largest one-year loss in crypto’s history. In addition, other crypto platforms have also suffered notable hacks and exploits in the past 15 to 18 months. Axie Infinity’s Ronin bridge, for example, suffered a $625 million hack last year, and decentralized-finance protocol Sushi was exploited for $3.3 million on Sunday.

GDAC is not the only South Korean cryptocurrency exchange to suffer a significant hacking incident. In 2018, Coinrail was hacked, resulting in the loss of approximately $40 million worth of assets, and in 2021, Upbit suffered a $50 million hack.

In response to these incidents, South Korea has taken steps to tighten regulations around cryptocurrency exchanges. In March 2021, the country’s Financial Services Commission issued a revised regulation that requires cryptocurrency exchanges to maintain stricter anti-money laundering measures and report suspicious transactions.

The GDAC hack is a stark reminder of the risks associated with cryptocurrency investing and the importance of implementing robust security measures. Investors and cryptocurrency exchanges should take note of this incident and ensure that they have adequate security measures in place to protect against potential hacks and exploits.

More to Read
View All
Web3 & Enterprise·

Nov 18, 2023

Leading Chinese gaming company lines up $100M crypto investment

Leading Chinese gaming company lines up $100M crypto investmentAs yet another indicator of the rising trend of institutional crypto investments, China’s premier board and card game company, Boyaa Interactive, has unveiled plans to invest up to $100 million in cryptocurrency assets, with a focus on Bitcoin (BTC) and Ethereum (ETH).News of Boyaa’s plans emerged following a disclosure from the Hong Kong Exchanges and Clearing Limited, which stated that the company will distribute notices regarding its crypto investment plans during an extraordinary general meeting (EGM). The relevant details are expected to have been supplied to shareholders on or before Nov. 30. The company has emphasized its intention to ensure transparency while adhering to listing rules throughout this process.Photo by Traxer on UnsplashDigital asset acquisition over a 12-month periodThe decision to delve into the world of cryptocurrencies aligns with Boyaa Interactive’s commitment to strengthening its presence in the evolving Web3 landscape, as highlighted by the company’s board of directors. The proposal outlines a comprehensive strategy to acquire the assets over a 12-month period, pending approval at the upcoming EGM.The planned acquisition involves allocating approximately $90 million equally between Ethereum and Bitcoin. The remaining $10 million is earmarked for stablecoins Tether (USDT) and USD Coin (USDC). Boyaa Interactive asserts that the actual acquisitions will depend on open market conditions, with a commitment not to pay premiums exceeding 10% of prevailing market prices. Funding for this initiative will be sourced from the company’s existing cash reserves.The board will play a crucial role in determining the specific cryptocurrencies to acquire, their allocation ratios and the optimal timing for purchase. The emphasis is on prudent risk management, aligning with Boyaa’s business development strategies.Diversification strategyThe company justifies its choice of Bitcoin and Ethereum by citing their alignment with its long-term development goals. In the document, Boyaa Interactive highlights the importance of investing in cryptocurrencies with robust market liquidity and substantial market values. Bitcoin, Ethereum, USDC, and USDT, chosen for their high market liquidity, align seamlessly with Boyaa’s strategic vision.In its stock exchange filing, it justifies these plans on the basis of a desire to diversify its holdings. The document reads:”[The] purchase of cryptocurrencies is also an important arrangement for the Group’s asset allocation, as allocating part of the Group’s idle reserve funds in cryptocurrencies can serve as a diversification to holding cash in treasury management, and a measure to balance investment risks and returns.”Growing asset acceptanceThe move into the cryptocurrency market comes at a time when institutional investors are increasingly flocking to major assets like BTC and ETH. Reports indicate significant inflows of institutional funds into these cryptocurrencies, setting the stage for what appears to be an extended bull market.Boyaa first showed an interest in holding crypto on its balance sheet back in August when it proposed allocating $5 million towards cryptocurrency investment. The company following up with a $100 million investment serves as a testament to the growing acceptance and integration of cryptocurrencies within mainstream business strategies.

news
Policy & Regulation·

May 31, 2023

Bank of Japan Publishes Results of CBDC PoC

Bank of Japan Publishes Results of CBDC PoCThe Bank of Japan (BoJ) recently concluded the second phase of its central bank digital currency (CBDC) proof of concept (PoC) project, which began in April. The results of this phase were published on Monday, and they shed light on key aspects such as the comparison between account-based and token-based CBDCs and the management of holding limits for users with multiple accounts.Photo by Manuel Cosentino on UnsplashToken-based CBDCsThe experiments conducted by the central bank covered a wide range of topics. Among the most intriguing findings were the advantages and disadvantages of token-based CBDCs and how to effectively impose holding limits for users with multiple CBDC balances.Token-based CBDCs have garnered interest from various central banks, with some adopting the UTXO token model used by Bitcoin without the use of a distributed ledger. A UTXO or unspent transaction output, defines where a blockchain transaction starts and finishes. The Bank of Japan explored this model and analyzed its pros and cons.In the initial proof of concept, both account-based and token-based CBDCs were examined, considering scenarios where the central bank managed the ledger or shared it with intermediaries like banks. In the token-based model, fixed token denominations were used, similar to physical cash in countries like India, and a centralized ledger was employed. However, in the recent phase, the central bank utilized flexible value tokens similar to UTXO and shared ledger functions with intermediaries.The Bank of Japan favored the flexible value token model due to its ability to handle multiple requests simultaneously. However, it acknowledged that this model may require more technical resources compared to the account-based approach. Challenges may arise when implementing additional functions, such as holding limits, while maintaining optimal performance. The European Central Bank (ECB) also noted in a recent report that most payment providers are accustomed to account-based payments and would incur costs to adapt to token-based systems.Another significant aspect explored by the BoJ was how to impose holding limits when users have multiple CBDC balances through different intermediaries. The challenge lies in determining if the overall holding limit has been breached without compromising user privacy.Homomorphic encryptionOne possible solution discussed in the report is the use of homomorphic encryption, which enables computations to be performed on encrypted data without it first needing to be decrypted. That allows for the necessary checks without intermediaries accessing the specific data being checked. Although this solution may slightly increase processing time, it could introduce a higher risk of data inconsistencies.Alternatively, a simpler approach proposed by the central bank is to establish a per-account holding limit and a limit on the number of accounts a single user can hold, rather than imposing global limits. Ideally, users with multiple accounts would have a higher per-account holding limit compared to those with fewer accounts.Phase 3 underwayWith the next pilot phase already underway, the BoJ aims to test the end-to-end process flow and identify challenges related to integrating with external systems. Additionally, they are creating a CBDC Forum to gather input from the private sector, ensuring a collaborative approach to CBDC development.While investigation and research into CBDCs continues, the BoJ has said that it will make a final decision on CBDC implementation by 2026.

news
Web3 & Enterprise·

Sep 01, 2023

Woori Bank Joins Forces with Samsung Securities and SK Securities to Pioneer Security Token Market

Woori Bank Joins Forces with Samsung Securities and SK Securities to Pioneer Security Token MarketWoori Bank has recently forged a memorandum of understanding (MOU) with Samsung Securities and SK Securities, aiming to swiftly venture into the security token market in anticipation of the forthcoming institutionalization of security tokens in South Korea, according to local news outlet Dailian.Photo by Anna Evlanova on UnsplashKorea’s regulatory pathway for security tokensIn February, the Financial Services Commission unveiled guidelines for regulating the issuance and distribution of security tokens. This initiative aligns with the South Korean government’s broader goal of driving innovation in digital finance. Following this, the National Assembly conducted a public hearing on the proposed legislation. Additionally, the Financial Supervisory Service organized an informative session discussing the updated application procedure for investment contract securities and the corresponding examination protocols. As a result, the outlines of the regulatory framework are beginning to take on a more defined form.Compliance with regulatory frameworkWoori Bank President Byung-Kyu Cho, Samsung Securities President Chang Seok-hoon, and SK Securities CEO Kim Shin were present at the signing ceremony. During this event, the three financial institutions agreed to embark on their collaborative efforts to explore business models for security tokens in compliance with the regulatory framework. Their aims include constructing the infrastructure for security tokens and validating distributed ledgers, as well as forming Finance 3.0 Partners (F3P), a collaborative consortium dedicated to formulating investor protection measures.Three entities’ individual endeavorsWoori Bank has undertaken extensive preparations to make its foray into the security token market. In an effort to swiftly adapt to the changing legal dynamics surrounding security tokens, the bank has established a dedicated division and is operating a task force responsible for devising strategic approaches, with participation from Woori Financial Group’s affiliates. By partnering closely with the securities firms, Woori aims to leverage its wealth of corporate finance expertise to identify innovative business models.Samsung Securities has successfully concluded its own functional verification of the security token platform. Furthermore, the company has secured the technology necessary to connect blockchain wallets and securities accounts. These efforts will contribute to providing stable services. Samsung is also anticipating the utilization of security tokens as a fresh avenue for financing, collaborating with various enterprises to discover their practical applications. Through these endeavors, the company intends to offer attractive and stable investment products to its clientele.SK Securities stands out as the sole Korean securities firm to have established an account management system for security tokens, with the intention of seeking designation as an innovative financial service by the Financial Services Commission. Initiatives chosen as innovative financial services are granted regulatory exemptions. SK Securities has partnered with a variety of fractional investment firms to spearhead the research and development of security token issuance and distribution systems. It also plans to collaborate with experts in the domains of finance, technology, and content. This joint effort aims to build the infrastructure necessary to create a financial ecosystem that welcomes diverse participants and creates new value.An F3P official highlighted that this tripartite partnership would facilitate the alignment of their members’ security token products with regulatory guidelines. The person also mentioned their commitment to swiftly establishing a top-notch platform and ecosystem that will help position them as market leaders.

news
Loading