Top

Singaporean authorities alert businesses to Bitcoin ransomware risk

Policy & Regulation·June 11, 2024, 6:07 AM

Akira ransomware, responsible for stealing $42 million from over 250 organizations across North America, Europe and Australia in just a year, is now targeting businesses in Singapore. In response, Singaporean authorities have issued a joint advisory warning local businesses about the increasing threat posed by a variant of this ransomware.

https://asset.coinness.com/en/news/2a60ac3f2278d1ab842181ec0c178bfb.webp
Photo by Mike Enerio on Unsplash

Alert follows complaints

The alert follows multiple complaints from victims, prompting agencies like the Cyber Security Agency of Singapore (CSA), the Singapore Police Force (SPF) and the Personal Data Protection Commission (PDPC) to take action. These agencies emphasize the urgency of recognizing and combating this threat.

 

How Akira operates

Akira affiliates employ various techniques to infiltrate a victim's network. These include exploiting known vulernabilities. For example, that could mean the targeting of services like Cisco virtual private networks (VPNs) that have been configured without multi-factor authentication (MFA).

 

Another approach that the ransomware incorporates is attacking external-facing services such as the Remote Desktop Protocol (RDP) via brute force. Social engineering is another tool within its repertoire. This involves tricking victims into downloading malicious software or entering credentials on phishing websites.

 

There is a marketplace for compromised credentials in the dark web. Akira also relies on such data, acquiring it from access brokers who sell network access. 

 

Once inside a network, Akira affiliates often create new domain accounts to maintain persistent access, even after reboots. They use numerous tools to steal user credentials, escalate privileges and spread throughout the network.

 

Detection and prevention measures

The Singaporean advisory outlines several strategies for detecting, deterring and neutralizing Akira attacks. Authorities strongly advise against paying ransoms, on the basis that doing so does not guarantee data recovery or prevent future attacks.

 

Authorities also warn that paying ransoms can encourage further attacks. The FBI has noted that Akira operators do not contact victims. Instead, they expect victims to initiate contact.

 

Payment in Bitcoin

The advisory outlines how Bitcoin is implicated in the ransomware scam. It states:

”Ransom payments are requested in Bitcoin, which are directed to cryptocurrency wallet addresses specified by the affiliates. The TOR site (.onion) where victims contact the affiliates, contains stolen information and a list of the affected organisations.”

 

It’s not the first time that Singaporean authorities have issued warnings that have implicated Bitcoin and crypto. In January, the CSA and SPF, in a joint advisory, suggested that people should use hardware wallets in an effort to guard against crypto-related malware and phishing attacks.

 

A number of weeks prior to that, Singapore’s former Prime Minister, Lee Hsien Loong, took to Facebook to issue a warning with regard to a crypto scam that involved the use of deceptive content generated using artificial intelligence (AI).

 

Mitigation techniques

Businesses are being urged by the authorities to adopt best practices to mitigate the Akira ransomware threat. They suggest the implementation of a recovery plan alongside the use of multi-factor authentication (MFA) in order to secure data and the access to that data. 

 

They also suggest filtering network traffic as it helps in identifying and blocking malicious activities. Meanwhile, disabling unused ports and hyperlinks curbs the risk further as it reduces the attack surface. Lastly, the authorities suggested the use of system-wide encryption to protect data even if it is accessed by unauthorized entities.

More to Read
View All
Web3 & Enterprise·

Sep 18, 2023

XPLA Forms Strategic Partnership with Nefta for Gaming Infrastructure Development

XPLA Forms Strategic Partnership with Nefta for Gaming Infrastructure DevelopmentSouth Korean gaming company Com2uS Group’s blockchain mainnet XPLA announced on Monday that it has entered into a strategic partnership with Web3 infrastructure firm Nefta.Photo by Jack B on UnsplashStreamlining Web3 game developmentXPLA stated that Nefta’s Toolbox service, which aids in Web3-based game development for maximum retention and monetization, will be connected to the XPLA mainnet, creating an environment that is optimized for seamless development processes.The Nefta Toolbox provides one-stop support for integrating blockchain technology into clients’ services. It not only serves clients in the gaming industry but also those in music and entertainment, providing them with cutting-edge technology and products like a digital wallet and a customizable marketplace.Future-oriented partnership“We are delighted to partner with Nefta due to their unparalleled infrastructure technology and deep insights into Web3 gaming that they gained from working with major global Web3 gaming companies. With this partnership, we will expand and lead the industry,” said Paul Kim, Team Leader at XPLA. Nefta has previously partnered with game developers such as Medieval Empires and MYSTiC Games.Geeshan Willink, CEO of Nefta, highlighted the alignment of Nefta’s blockchain tools and technology with XPLA’s vision for advancing Web3 philosophy. He also expressed the firm’s commitment to developing the partnership to provide noteworthy benefits to both developers and gamers.The new partnership is expected to strengthen XPLA’s position in the Web3 gaming industry by leveraging Nefta’s expertise in infrastructure technology and blockchain tools.

news
Web3 & Enterprise·

Jun 22, 2023

Crypto Exchange Bithumb’s Operator Closing Businesses

Crypto Exchange Bithumb’s Operator Closing BusinessesBithumb Korea, the operator of a major South Korean cryptocurrency exchange, has been streamlining its businesses in response to its ongoing struggle to generate profits.Photo by Tim Mossholder on PexelsAccording to a report by local news outlet Business Watch, Bithumb Systems, a tech solution subsidiary of Bithumb Korea, has recently ceased operations. Bithumb System was launched in March of last year with the aim of advancing blockchain and exchange technology. However, due to the decline in the crypto industry and challenges in profitability, the company had to undergo liquidation.An official from Bithumb Korea explained that the decision to close its tech solution arm was made in order to prioritize improving the competence of the exchange amidst the changing landscape of domestic and foreign markets.Other affiliates of Bithumb Korea are also facing difficulties. For instance, Bithumb Live, an e-commerce platform jointly established by Bithumb Korea and content production firm Bucket Studio, has been on hiatus since October last year. The platform incurred a net loss of 10 billion KRW ($7.75 million). Bithumb Korea, holding 37.5% of Bithumb Live’s shares, invested 6 billion KRW ($4.65 million) into the platform in 2021. Bithumb Korea recognizes these investment losses using the equity method.Additionally, Bithumb META, despite raising the highest amount of funds among its sister affiliates, has encountered challenges in making much progress since its establishment last year. Its NFT marketplace, Naemo Market, is still without a mobile application, and the introduction of its metaverse platform is still pending. Although Bithumb META managed to attract 9 billion KRW in investments last March from esteemed companies such as LG CNS, CJ OliveNetworks, and SK Square, it incurred a loss of 7 billion KRW ($5.4 million) in 2022.Furthermore, earlier this month, it was reported that the exchange closed its research center due to a decline in trading volume, despite its importance in assisting investors to make better-informed decisions.A representative from Bithumb stated that the company is actively seeking new sources of revenue through its mobile Wallet platform operator, Rotonda, and Bithumb META. However, given the market slowdown, Bithumb is now compelled to prioritize enhancing the competence of the exchange.

news
Web3 & Enterprise·

Jul 22, 2023

McDonald’s Enters the Metaverse with McNuggets Land

McDonald’s Enters the Metaverse with McNuggets LandMcDonald’s, the global fast food giant, has ventured into the metaverse realm to commemorate the 40th anniversary of its beloved Chicken McNuggets, with McDonald’s Hong Kong spearheading the immersive experience.McNuggets Land, a virtual world situated within the metaverse platform The Sandbox, now welcomes enthusiastic players to embark on a quirky adventure filled with pixelated McNugget characters like “Coach McNugget” and his trusty sidekick, “Assistant Coach McNugget.” The project team behind The Sandbox laid out the details of the initiative via a blog post published on Medium on Thursday.In this novel virtual landscape, players are tasked with the mission of locating four McDonald’s signs, sparking excitement for the rewards that await. Among the enticing incentives are a shared prize pool of 100,000 SAND (approximately $44,000) and enigmatic “mystery boxes.” SAND is the native token of The Sandbox virtual world.Photo by Jas Rolyn on UnsplashCustomer engagement challengesThe CEO of The Sandbox, Sebastien Borget, expressed enthusiasm for collaborating with global brands like McDonald’s to drive mass adoption of the metaverse. The Sandbox has already witnessed the presence of several prominent brands like Adidas, Atari, and Gucci within its virtual world. Comparatively, it might be challenging for McNuggets Land to carve out a distinctive niche to capture enduring user engagement.Numerous brands have attempted whimsical activations within metaverses over the years, from Snapple’s virtual bodega to Taco Bell’s metaverse wedding. However, the fundamental question arises when virtual food or drink experiences are introduced — what’s the point when you can’t taste or smell in the metaverse?Bear market & regulatory setbacksMoreover, the timing of brands entering the Web3 space may be subject to scrutiny. With venture capital money flowing toward AI and Disney closing its metaverse ventures, the Web3 landscape faces a more challenging environment in 2023. The ongoing crypto winter and Securities and Exchange Commission (SEC) crackdowns have somewhat dampened the allure of these activations, making it imperative for brands like McDonald’s to offer a compelling “why” for their Web3 endeavors.Starbucks has been experimenting with its Web3 loyalty program called “Odyssey,” which ties in seamlessly with its customers’ real-world coffee purchases. This strategic approach aligns virtual rewards and digital collectibles with existing behaviors, giving added value to their regular activities. In doing so, Starbucks fosters a sense of community and gains valuable feedback for future improvements, ensuring a more sustainable and purposeful presence in the Web3 space.Formative developmentWhile McDonald’s McNuggets Land in the metaverse may excite some players with its whimsical charm, the bigger question remains: What value does it truly bring to the participants, and how does it ensure a lasting impact? In a rapidly evolving Web3 landscape, success lies in offering meaningful experiences that align with users’ existing behaviors and aspirations, fostering genuine engagement and community-building.We are still at a stage where consideration of the metaverse in terms of what it is, what it represents, and what experience users can or should glean from it is still formative. It remains to be seen as to the extent to which Mcdonald's will be successful in this instance, but it is encouraging that they’re brave enough to get involved with the innovation.

news
Loading