Top

Mixin Network Suspends Services Amid $200 Million Hack

Policy & Regulation·September 25, 2023, 11:56 PM

On Monday, Mixin Network, a decentralized peer-to-peer network whose project team is based in Hong Kong, officially confirmed a substantial security breach that resulted in the loss of approximately $200 million in crypto assets from its mainnet.

Photo by GuerrillaBuzz on Unsplash

 

September 23 hack

This incident, disclosed via an X (formerly Twitter) post, prompted the immediate suspension of all deposit and withdrawal services on Mixin Network until further notice.

The project team outlined that the hack occurred on September 23, exposing vulnerabilities that allowed malicious actors to compromise the database of a third-party cloud service provider. Mixin Network has taken action to address the situation, enlisting the expertise of Singapore-headquartered blockchain security investigator SlowMist and the support of Google to conduct a thorough investigation and formulate a recovery plan.

At the time of the breach, Mixin Network’s holdings included $94.48 million in Ether, $23.55 million in Dai, and $23.3 million in Bitcoin, as reported in an independent investigation by PeckShield. The total value of assets affected amounted to $141.32 million.

Cyvers, an Israeli Web3 security firm, has also been looking into the matter on Monday. In a social media post, the firm stated:

”Our internal investigation has uncovered suspicious funding transactions involving @MixinKernel hacker addresses. Two of hacker addresses received 51 $ETH from 0x1795F0eBDa5A836aE63F28CE546E72de069A8bd2 who was interacted with @HuobiGlobal and @binance.”

The firm goes on to call on Binance and its CEO Changpeng Zhao (CZ) and Huobi to help identify the wallet address in question.

 

Halting withdrawals

In response to the security breach, Mixin Network has temporarily halted all deposits and withdrawals on its platform. These services will only resume once the vulnerabilities have been identified and fully resolved. On X, the project stated:

”Deposit and withdrawal services on Mixin Network have been temporarily suspended. After discussion and consensus among all nodes, these services will be reopened once the vulnerabilities are confirmed and fixed. During this period, transfers are not affected.”

Details regarding the plans to recover the lost assets for affected users have yet to be announced.

Despite initial promises that Mixin Network’s Founder, Feng Xiaodong, would address the incident in a public Mandarin live stream on September 25, links to the live stream were not provided on the official social media channels or the website mixin.network.

The incident has garnered criticism on the basis of a lack of decentralization. One commentator stated:

”Some of those blockchain protocols are so decentralized that when their cloud database is hacked, coins are also gone.”

 

Ongoing hacks

This security breach on Mixin Network is the latest in a series of high-profile crypto-related incidents. Ethereum Co-Founder Vitalik Buterin recently fell victim to a SIM swap attack, which resulted in the compromise of his X (formerly Twitter) account.

In a statement, Buterin revealed that the hackers had successfully executed a SIM swap, a type of attack that targets the victim’s mobile phone number to gain unauthorized access to various online accounts, including social media, banking, and cryptocurrency platforms.

The repercussions of the Mixin Network hack underscore the ongoing challenges faced by the crypto industry in ensuring the security and protection of digital assets. As investigations continue, affected users await further developments and the eventual resumption of deposit and withdrawal services.

More to Read
View All
Policy & Regulation·

Feb 15, 2024

Japan’s FSA requests crypto transaction measures with implications for P2P trading

Japan's Financial Services Agency (FSA), the nation's primary financial regulator, has recently proposed a series of measures aimed at safeguarding users against "unlawful transfers" to cryptocurrency exchanges. This move, however, may pose significant challenges to the peer-to-peer (P2P) transactions market. Bolstering user protection measuresCiting findings from the National Police Agency, which highlight that damages resulting from specialized fraud involving unlawful money transfers are predominantly facilitated through cryptocurrency, the FSA has urged financial institutions to bolster user protection measures. The agency emphasized the importance of assessing risks associated with transfers to crypto-asset exchange service providers. In a request published on Wednesday directed towards Japanese banks, the FSA underscored the persistently high incidence of fraudulent transactions in the country, facilitated through crypto. To address this concern, the FSA and the National Police Agency have proposed various initiatives. One such initiative entails directing banks to enhance monitoring of unlawful transfers to cryptocurrency exchange service providers.Photo by Jayjayli on UnsplashPeer-to-peer (P2P) market implicationsHowever, another proposal from the regulator may have a profound impact on the P2P market. The FSA suggests halting transfers to cryptocurrency exchange service providers if the sender's name differs from the account name. This recommendation, explained in the Japanese version of the press release using the term "reject," implies the suspension of such transfers from both individual and corporate accounts. For users of P2P platforms, where transactions often involve different names between the sender's and receiver's fiat and crypto accounts, this directive could significantly disrupt the market. Rejecting transactions from an individual's bank account to another individual’s crypto wallet could undermine the functionality of P2P transactions. Positive crypto developmentsDespite this potential issue needing to be clarified and resolved and the East Asian nation not having a comprehensive regulatory framework for cryptocurrencies in place, Japan is showing indications of gearing up for broader adoption. The Bank of Japan (BoJ) is preparing to pilot a Japanese central bank digital currency (CBDC) pegged to the Japanese yen.In June of last year, the country established a legal framework for stablecoins. Additionally, the FSA has proposed a legislative amendment to support the development of decentralized autonomous organizations (DAOs) in Japan. The proposed amendment aims to designate potential DAO tokens as "Limited Company Type DAO Employee Rights Tokens," granting holders legal rights akin to regular limited liability company (LLC) members. Last December the Japanese government considered and later acted on revising crypto tax policy to exempt unrealized crypto gains from being taxed. This proposal was originally put forward by the FSA earlier in 2023. In another development, authorities in the city of Kochi signed an agreement on Feb. 7 to virtualize the city on the Start Lands metaverse application, with plans to welcome online tourists later this summer. Despite these most recent recommendations from the FSA potentially signaling a less crypto-friendly stance, the Japanese authorities have otherwise demonstrated that they’re working towards creating workable conditions for the development of crypto and Web3 within the country.

news
Web3 & Enterprise·

Apr 17, 2025

OKX relaunches in the United States

Global crypto exchange platform OKX has announced that it has relaunched its exchange services and Web3 wallet within the U.S. market. In a press release published on April 15, the company said that customers can now access the platform in the United States, “with existing customers migrating seamlessly and new customers gradually gaining access ahead of a full nationwide launch.”Photo by Danny Burke on UnsplashOnboarding OKCoin usersIn terms of existing customers, the company is referring to users of OKCoin, the former name of OKX, who will now be onboarded onto the newly launched OKX exchange service. The Seychelles-based company, which was originally founded and operated in China, has established its U.S. headquarters in San Jose, California. The company has appointed Roshan Robert, formerly an executive at Morgan Stanley and Barclays, as its U.S. CEO. Commenting on the U.S. market relaunch, Robert stated: "With the US advancing crypto regulatory clarity, we see tremendous opportunities to build trust and deliver secure, compliant digital asset solutions.” Inflection pointIn a blog post published to the firm’s website, Robert said that he had been watching the development of the industry since its earliest days, but that he thinks that the crypto sector has now reached “a critical inflection point.” He added that more so than ever before, the crypto sector is currently interacting more directly with traditional finance and capital markets.  Referring directly to what platform users can expect from the relaunched service in the U.S., the OKX U.S. CEO said that the firm plans on rolling out new features throughout the year as part of its vision to build a crypto super app. Rollout of the platform’s services in the U.S. will be carried out on a phased basis. The firm also intends to offer integrations with local banks, together with full support for major assets such as Bitcoin, Ethereum, USDC and USDT.The OKX Wallet will be made available to U.S. users, supporting a range of digital assets across 130 blockchain networks. The wallet will enable users to access a number of Web3 dApps, facilitate the movement of digital assets between blockchain networks and include a number of tools to assist platform users with their trading activities. Entering a ‘new era’It’s likely that a change towards a more positive outlook where the crypto sector is concerned at government and regulatory levels in the U.S., together with a settlement reached with the U.S. Department of Justice (DOJ), has influenced OKX in relaunching its service stateside.  The DOJ had opened an investigation into the company on the basis of allegations that it was operating a money-transmitting business on an unlicensed basis. In its settlement, the company paid fines and penalties totaling $500 million. With that settlement behind it and a more enlightened climate for digital assets having emerged in the U.S., OKX described the service relaunch as “a new era for OKX in the U.S.”Yves La Rose, CEO of Web3 banking project, the Vaulta Foundation, said that OKX’s U.S. expansion is a signal, indicating that “a new era of compliant, wallet-led Web3 innovation is underway.” Diana Pires, an executive at crypto payments firm Beam, expressed a similar take, stating on X that OKX was relaunching “because the world’s largest economy is finally ready for crypto,” adding that “the floodgates are now open for international crypto companies.”

news
Web3 & Enterprise·

Aug 06, 2024

Amber Group calls for crypto project transparency & accountability

At the end of last month, social derivatives trading platform ZKX, a protocol that runs on the Ethereum-centric Starknet layer-2 network, shut down blindsiding the project’s stakeholders. That event has led to Singapore-headquartered digital assets firm Amber Group speaking out, calling for cryptocurrency projects to be more accountable and transparent going forward. Not economically viableNews of the project shutdown emerged when ZKX founder Eduard Jubany Tur took to X on July 30 to outline the discontinuation of the protocol. Tur claimed that the project was “unable to find an economically viable path for the protocol.” In a long-form post, the ZKX founder outlined that user engagement had been minimal, resulting in disappointing trading volumes. By extension, Tur claimed that revenues didn’t come anywhere close to covering cloud server expenses. “The market is undervaluing the work done and infrastructure built by appchains and dApps coming from ecosystems like ours,” Tur added. Pseudonymous blockchain sleuth ZachXBT had a different take on the matter, claiming that the shutdown represented a rug pull. Amber Group chimed in on the subject on X on Aug. 3. Amber suggested that it wouldn’t break any contractual non-disclosure obligations it had with regard to ZKX but that aside, the firm took the opportunity to share its perspective more broadly in an effort to promote transparency.Photo by Markus Spiske on PexelsAmber Group criticismAmber Group criticized the ZKX team on the basis of a lack of transparency. It stated: “The last update we received was on July 30, when the project announced the cessation of operations. This decision was made without prior communication, highlighting the importance of transparency in our industry.” Staying with that theme, it claimed that clear communication and transparency are essential for fostering trust and collaboration within the crypto community, and that such principles would guide future projects. Amber Group had acted as a market maker relative to the ZKX project. It borrowed and purchased ZKX tokens in support of the launch of the token and in an effort to support token liquidity post-launch. It had secured two million ZKX tokens from the open market, with its overall holding totaling three million ZKX tokens. Project investor HashKey Capital also took to the X social media platform on the subject. Like Amber Group it too criticized the ZKX project for its lack of accountability and transparency. It described the project’s reluctance to communicate as “disappointing,” while it asserted that Tur’s handling of the situation had been “regrettable.” Ye Su, founding partner at ArkStream Capital, expressed a similar complaint, stating on X that “when ZKX shut down, as investors, we got zero heads-up.” He also singled out Tur, claiming that “Edward took the money from early supporters without any communication, showing no moral standards and losing his right to future entrepreneurship in the industry.”

news
Loading