Top

Singapore police suggest hardware wallets to combat malware

Policy & Regulation·February 02, 2024, 3:12 AM

The Singapore Police Force (SPF) and the Cyber Security Agency of Singapore (CSA) have jointly issued an advisory to raise awareness about the escalating use of cryptocurrency drainers in cyberattacks.

 

The advisory aims to inform citizens about the threat and provide recommendations to protect against such attacks, with a specific emphasis on utilizing hardware wallets for enhanced security. Cryptocurrency drainers represent a form of malware that specifically targets crypto wallets. These malicious tools are often employed in phishing attacks to illicitly extract funds from users' wallets without proper authorization.

https://asset.coinness.com/en/news/38365430f808a1c538e2831346c3e8d0.webp
Photo by Junrui Wu on Unsplash

Drainer-as-a-service threat

Of particular concern are commercial crypto draining kits, which empower less experienced cyber-criminals with sophisticated malware at no upfront costs. Operating on a drainer-as-a-service (DaaS) model, attackers share a predetermined percentage of the stolen funds with the service provider.

 

The SPF and CSA underscored that crypto-drainer-related attacks typically originate from phishing campaigns. These campaigns commonly involve infiltrating verified social media accounts or dispatching fraudulent emails to users from compromised databases of major service providers.

 

Unsuspecting victims who click on phishing links are redirected to counterfeit trading websites that prompt them to connect their Web3 wallets. Subsequently, a malicious smart contract is injected into the victim's system, enabling hackers to withdraw funds without additional authorization.

 

MS Drainer and Inferno Drainer

While no such attacks have been reported in Singapore to date specifically, the advisory acknowledges the rising recognition of this threat among hackers. Notably, an off-the-shelf crypto drainer called MS Drainer contributed to hackers stealing $59 million worth of cryptocurrency in 2023.

 

Last month, Singapore-based cyber security firm Group-IB produced a report concerning the Inferno Drainer operation. According to the company’s research, the malware operation led to the theft of $80 million in digital assets globally, until the developers behind it shut it down last November.

 

In December, the Pink Drainer hacking group notched up another victim, to the tune of $4.4 million in LINK tokens. Last week blockchain security firm Scam Sniffer reported that $10 million in digital assets had been stolen in phishing-related incidents over the course of just five days.

 

Hardware wallets

To counteract these threats, Singapore authorities recommend the use of hardware wallets as a security measure against wallet drainer attacks. Additionally, the advisory instructs crypto investors to conduct thorough research before engaging with cryptocurrency services or platforms. Singaporeans are encouraged to report any suspicious incidents related to crypto drainers or phishing attacks to both relevant authorities and crypto service providers.

 

In the event of a security breach, victims are urged to revoke any suspicious token approvals and promptly transfer their remaining funds to a different, secure wallet address to prevent further losses. This proactive approach aims to empower individuals with the knowledge and tools needed to navigate the risks associated with crypto drainers and foster cybersecurity awareness within the cryptocurrency ecosystem.

 

As the threat landscape evolves relative to digital assets, this advisory serves as a valuable resource to educate citizens about the risks posed by crypto drainers.

 

 

More to Read
View All
Web3 & Enterprise·

Nov 29, 2023

Seoul Auction Blue seeks to register security tokens with the FSS for Andy Warhol’s artwork

Seoul Auction Blue seeks to register security tokens with the FSS for Andy Warhol’s artworkSeoul Auction Blue, the operator of fractional artwork investment platform Sotwo, recently submitted an application to the South Korean Financial Supervisory Service (FSS), local news outlet Seoul Economic Daily reported on Wednesday (local time). Its aim is to register security tokens linked to artworks with the financial authority, marking it the third entity in the country to pursue this innovative financial venture.Photo by Guido Coppa on UnsplashAndy Warhol’s ‘Dollar Sign’The artwork investment app plans to issue security tokens based on Andy Warhol’s “Dollar Sign,” a piece measuring 51.0 cm in height and 40.5 cm in length. This artwork was purchased by Seoul Auction Blue at an auction for KRW 626.2 million (approximately $485,000). The total value of the security tokens, inclusive of issuance costs, is approximately KRW 700 million. The firm will issue a total of 7,000 tokens, each valued at KRW 100,000. Upon receiving regulatory approval, Seoul Auction Blue is set to open for subscription requests from Dec. 20 to 26.In its endeavor to issue digital investment contract securities, Seoul Auction Blue has meticulously prepared its documentation in line with the FSS’s guidelines. The selection of the artwork of Andy Warhol, the renowned and iconic 20th-century artist, aligns with the FSS’s recommendation to choose a significant piece by an internationally acclaimed artist. This strategic choice reflects the company’s commitment to compliance and the recognition of Warhol’s global stature in the art world.Preventing conflicts of interestThe registration application submitted by Seoul Auction Blue includes specific restrictions aimed at preventing conflicts of interest with its affiliates related to security tokens. As per these rules, the company is barred from buying idle assets of affiliates to back its security tokens. Instead, Seoul Auction Blue is permitted to acquire them only through public methods like participating in an open bid or a post-sale bid process. Notably, the token issuer is in principle prohibited from purchasing these assets via intermediaries in private sales or any other non-transparent settings.The acquisition of underlying assets requires approval from the compliance monitoring committee. Furthermore, this regulation strips Seoul Auction Blue of the capacity to determine the final trading prices or conditions for these transactions.In addition, the company is collaborating with a couple of securities firms to safeguard investors’ funds, creating a buffer against any potential bankruptcy of the issuer. The funds raised from subscriptions for the security tokens will be managed in accounts overseen by KB Securities. Additionally, an investor protection fund is being set up, which will be handled as a trust fund by Shinhan Securities. This fund acts as an extra layer of security, offering investors enhanced protection for their investments.

news
Policy & Regulation·

Dec 02, 2023

Binance’s U.S. legal woes may have repercussions for its expansion in Thailand

Binance’s U.S. legal woes may have repercussions for its expansion in ThailandWhile Binance, the world’s largest cryptocurrency exchange, is gearing up for a new trading venture in Thailand, the recent guilty plea by the firm in the United States and the hefty $4.3 billion penalties for anti-money laundering and sanctions violations have raised concerns about the feasibility of its Thai market venture.That’s a consideration that has been raised by a recent report by Bloomberg. Earlier this month, it emerged that Binance had entered the beta testing phase of its Binance.th platform in Thailand. The venture is a collaboration with the local company, Gulf Energy Development Pcl, led by billionaire Sarath Ratanavadi.Photo by Peter Borter on UnsplashCasting a shadow over expansion plansFollowing Founder Changpeng Zhao’s (CZ) departure from the CEO role in the wake of the US criminal probe resolution, Singaporean Richard Teng, a regulator-turned-crypto executive, has taken the helm at Binance. In its report, Bloomberg suggests that these recent issues in the U.S. have “cast a shadow over the planned domestic digital-asset platform” in Thailand.The new Binance CEO has emphasized Binance’s commitment to compliance overhaul and increased corporate transparency. In an interview Ratanavadi expressed confidence in Binance, noting that the company was not accused of crimes such as fraud or misuse of customer funds in the U.S. settlement. He stated:“Binance grew extremely fast and so probably crossed paths with some regulations.”Despite the regulatory storm, Ratanavadi chose Binance due to its market-leading position. The stringent scrutiny by Thailand’s Securities and Exchange Commission and the approval process, including inquiries about Binance, reflect the regulator’s cautious approach. The Gulf Binance Co. platform is set to launch fully in January, with Gulf Energy holding a 51% stake and Binance the remaining share.Challenges in other Asian marketsThe company may also face additional challenges in other Asian markets as a consequence of its regulatory troubles in the United States. While it remains to be seen if this was an unrelated development, it emerged earlier this week that regulators in the Philippines were moving to block access to the Binance platform and curtail the exchange’s ability to target Filipinos through advertising.In South Korea, Binance’s activities in the country have come under renewed scrutiny within the crypto community in the wake of the regulatory penalties Binance has experienced in the U.S. Binance is active in that market through its acquisition of fiat-to-crypto exchange GOPAX. While GOPAX management are unfazed by these events, others have suggested that there may be consequences in terms of the ability of GOPAX to achieve full regulatory approval.Demand reductionAnother challenge for the Thai venture includes a reduction in demand for crypto trading services in the Southeast Asian country. Official data reveals a significant drop in monthly trading volume at licensed digital-asset operators in Thailand, falling from over 250 billion baht in November 2021 to 17 billion baht ($490 million) in September 2023. The number of active trading accounts has plummeted by 87% from the peak in 2021.Ratanavadi, whose net worth is estimated at $11 billion, believes that tighter regulatory oversight will restore investor confidence. Gulf Binance’s technology partner, Advanced Info Service Pcl, with its retail outlets, is expected to contribute to the joint venture’s marketing efforts.

news
Web3 & Enterprise·

Jun 14, 2023

Next Month’s Web3 Event in Tokyo to Bridge Web3 and Traditional Industries

Next Month’s Web3 Event in Tokyo to Bridge Web3 and Traditional IndustriesCoinpost, Japan’s cryptocurrency and blockchain media outlet, is gearing up to organize WebX, an annual international Web3 conference, in Tokyo from July 25 to 26, according to a press release. Hosted by the WebX Executive Committee, the event aims to bring together a wide array of participants, including Web3 startups, established companies, and sponsors spanning various industries such as artificial intelligence and the metaverse.With this conference, Coinpost seeks to underpin the Japanese government’s Web3 initiatives and foster collaboration between the Web3 sector and traditional industries. Notably, Japanese Prime Minister Fumio Kishida is scheduled to deliver a video address during the conference.Photo by Jaison Lin on UnsplashDiverse programs and speakersWebX offers diverse programs for attendees, including presentations by esteemed Web3 projects and founders, networking opportunities, workshops, a Web3 hackathon, project exhibitions, and a GameFi event.The WebX website presents a lineup of more than 100 speakers hailing from diverse domains, including crypto exchanges, blockchain data analytics firms, gaming companies, cloud service providers, news outlets, and a political party. Binance, CoinDesk, and Square Enix are just a few examples of them.Wemade’s sponsorshipMeanwhile, South Korean gaming developer Wemade recently announced its sponsorship of the conference in a press release. At the event, Wemade CEO Jang Hyun-kook will deliver a talk titled “The Blockchain Games: Breaking Down the Boundaries of the Games.” Moreover, the Korean gaming company plans to host a networking event to promote its ecosystem among influential figures and major companies in the blockchain industry.

news
Loading