Top

Mixin Network Suspends Services Amid $200 Million Hack

Policy & Regulation·September 25, 2023, 11:56 PM

On Monday, Mixin Network, a decentralized peer-to-peer network whose project team is based in Hong Kong, officially confirmed a substantial security breach that resulted in the loss of approximately $200 million in crypto assets from its mainnet.

Photo by GuerrillaBuzz on Unsplash

 

September 23 hack

This incident, disclosed via an X (formerly Twitter) post, prompted the immediate suspension of all deposit and withdrawal services on Mixin Network until further notice.

The project team outlined that the hack occurred on September 23, exposing vulnerabilities that allowed malicious actors to compromise the database of a third-party cloud service provider. Mixin Network has taken action to address the situation, enlisting the expertise of Singapore-headquartered blockchain security investigator SlowMist and the support of Google to conduct a thorough investigation and formulate a recovery plan.

At the time of the breach, Mixin Network’s holdings included $94.48 million in Ether, $23.55 million in Dai, and $23.3 million in Bitcoin, as reported in an independent investigation by PeckShield. The total value of assets affected amounted to $141.32 million.

Cyvers, an Israeli Web3 security firm, has also been looking into the matter on Monday. In a social media post, the firm stated:

”Our internal investigation has uncovered suspicious funding transactions involving @MixinKernel hacker addresses. Two of hacker addresses received 51 $ETH from 0x1795F0eBDa5A836aE63F28CE546E72de069A8bd2 who was interacted with @HuobiGlobal and @binance.”

The firm goes on to call on Binance and its CEO Changpeng Zhao (CZ) and Huobi to help identify the wallet address in question.

 

Halting withdrawals

In response to the security breach, Mixin Network has temporarily halted all deposits and withdrawals on its platform. These services will only resume once the vulnerabilities have been identified and fully resolved. On X, the project stated:

”Deposit and withdrawal services on Mixin Network have been temporarily suspended. After discussion and consensus among all nodes, these services will be reopened once the vulnerabilities are confirmed and fixed. During this period, transfers are not affected.”

Details regarding the plans to recover the lost assets for affected users have yet to be announced.

Despite initial promises that Mixin Network’s Founder, Feng Xiaodong, would address the incident in a public Mandarin live stream on September 25, links to the live stream were not provided on the official social media channels or the website mixin.network.

The incident has garnered criticism on the basis of a lack of decentralization. One commentator stated:

”Some of those blockchain protocols are so decentralized that when their cloud database is hacked, coins are also gone.”

 

Ongoing hacks

This security breach on Mixin Network is the latest in a series of high-profile crypto-related incidents. Ethereum Co-Founder Vitalik Buterin recently fell victim to a SIM swap attack, which resulted in the compromise of his X (formerly Twitter) account.

In a statement, Buterin revealed that the hackers had successfully executed a SIM swap, a type of attack that targets the victim’s mobile phone number to gain unauthorized access to various online accounts, including social media, banking, and cryptocurrency platforms.

The repercussions of the Mixin Network hack underscore the ongoing challenges faced by the crypto industry in ensuring the security and protection of digital assets. As investigations continue, affected users await further developments and the eventual resumption of deposit and withdrawal services.

More to Read
View All
Web3 & Enterprise·

Jan 30, 2024

OKX Ventures broadens portfolio to include Orbiter Finance

OKX Ventures, the investment arm of the well-known crypto exchange and Web3 technology company OKX, has recently disclosed a strategic investment in Singapore’s Orbiter Finance. Developing ZK-proof technologyThe investment marks a significant step forward in advancing the evolution of blockchain infrastructure, given that Orbiter Finance has achieved recognition for its innovation in the process of developing its zero-knowledge (ZK) technology-based omni-chain rollup on the Ethereum network. This initiative goes beyond Orbiter Finance's initial role as an asset cross-rollup bridge. Over the last two years, Orbiter has processed over 12 million transactions with a total transaction volume surpassing $7.8 billion. The protocol has amassed a user base of over three million and cultivated a community exceeding 700,000 users and enthusiasts.Photo by Shubham Dhage on UnsplashOrbiter Rollup announcementAccording to a series of posts on the X social media platform over the course of the weekend, the project is gearing up to launch a ZK-tech-based instant omni-chain rollup on Ethereum. A standout feature of the protocol is the integration of ZK Simplified Payment Verification (SPV) to authenticate Layer 2 transactions on the mainnet and combat fraudulent re-layers via the Ethereum Virtual Machine (EVM).  This development introduces a secure, efficient, low-cost and rapid communication mechanism for Ethereum, with the added security benefits of ZK-SPV enabling Orbiter Finance to grant complete access to the "Maker" role. This marks a significant milestone in achieving decentralization within blockchain infrastructure. Dora Yue, founder of OKX Ventures, expressed enthusiasm about spearheading the strategic investment in Orbiter Finance. She highlighted the protocol's ability to overcome traditional bridge limitations, specifically in terms of speed, and its crucial role in enhancing the efficiency of cross-chaining between various Layer 2s and the Ethereum mainnet. Other investors in the project include Redpoint China, Hash Global and Skyland Ventures. Supporting 19 networksCurrently supporting over 19 Layer 2 rollups and a multitude of native Ethereum assets, Orbiter Finance is positioning itself as a vital infrastructure component for the Layer 2 ecosystem. Yue commended the team's ongoing commitment to product upgrades and their dedication to ensuring a more decentralized and trustless foundation for the Layer 2 ecosystem's growth in 2024. With an initial capital commitment of $100 million, OKX Ventures is focused on exploring and supporting the best global blockchain projects, fostering cutting-edge technology innovation, and investing in projects that provide long-term structural value. The venture aims to nurture innovative companies by offering global resources and leveraging historical experience in the blockchain industry. Orbiter Finance also maintains an openness to incorporating additional networks. It has established strategic partnerships with key players such as Arbitrum, Optimism, Polygon, Linea, zkSync, Base, Starknet, Scroll, Manta Network and others. In this manner, it has solidified its position in the ecosystem. Notably, the protocol announced a collaborative strategic partnership with Ingonyama earlier this month, taking a step forward in advancing ZKP acceleration. Ingonyama is a next-generation semiconductor company specializing in ZK-proof technology. With that, it is actively exploring the integration of ICICLE, a GPU library for zero-knowledge acceleration, into Orbiter's ZKP system through multiple meetings and code-sharing initiatives.  

news
Web3 & Enterprise·

Sep 15, 2023

Circle and Grab Partner to Pilot Web3 App Integration

Circle and Grab Partner to Pilot Web3 App IntegrationUSDC stablecoin issuer Circle is embarking on a strategic partnership with Grab, Southeast Asia’s multifaceted super app for transportation, deliveries, and payments relative to Web3.Announced via a press release published to Circle’s website on Thursday, the collaboration marks yet another step forward in realizing the promise of Web3 technology in Singapore.Photo by Jason Miraples on UnsplashCircle’s foray into Web3Circle’s latest offering, a Web3 services platform, is set to be seamlessly integrated into the Grab app. The objective of that integration is to enhance Grab user experiences through blockchain-enabled solutions. In that way, the partnership will broaden the horizons of Grab’s already extensive service portfolio, which includes ride-hailing, food delivery, package delivery, ticket bookings, and insurance. Grab hopes that the move will propel the Singaporean super app further into the world of blockchain technology.Grab Web3 WalletNews that Grab was on the road towards rolling out a Web3-related product offering leaked out last week when Chinese crypto reporter Colin Wu tweeted out details related to a Web3 wallet. This official announcement qualifies those initial reports, as one of the key aspects of this collaboration is the introduction of the ‘Grab Web3 Wallet.’The feature, accessible to Singaporean users, enables the easy setup of a blockchain-enabled wallet. Users will have the opportunity to earn rewards in the form of digital collectibles and utilize non-fungible token (NFT) vouchers, thereby immersing themselves in the dynamic world of digital assets.To kickstart this venture, Circle’s Web3 Services will initially support the SG Pitstop Pack NFT vouchers. These vouchers can be redeemed at popular Singapore-based stores in advance of the upcoming F1 Singapore Grand Prix. Jeremy Allaire, Co-Founder and CEO of Circle, expressed his enthusiasm for the company’s efforts in collaborating with what he termed “global-scale consumer internet brands to bring everyday utility to users.” Allaire maintains that the partnership with Grab aligns perfectly with that mission.While bringing Web3 technology into everyday use in Singapore, the partnership also lends support to the Monetary Authority of Singapore’s (MAS) Project Orchid initiative. This initiative seeks to demonstrate the real-world application of Purpose Bound Money. Circle’s Chief Strategy Officer and Head of Global Policy, Dante Disparte, expressed the company’s enthusiasm for accelerating blockchain-powered innovation alongside Grab while aligning with Singapore’s vision to be a leading global hub for responsible digital asset innovation.Circle has been steadily establishing its presence in Singapore, with notable achievements including acquiring a Major Payment Institution (MPI) license from the MAS in June and opening its official office in May.In February, Circle joined forces with Tribe, the first government-supported blockchain ecosystem builder, to launch a unique training and support program aimed at nurturing and upskilling the region’s Web3 developer talent pool.Founded in 2012 in Malaysia as a ride-hailing app, Grab initially entered the scene as a competitor to Uber in the region. Over the years, it has evolved into a true “super app,” offering a myriad of services, including GrabPay (payment services), package delivery, ticket bookings, and insurance. Its user-friendly interface and comprehensive services have made it the go-to app for more than 25 million users in Southeast Asia every month.

news
Web3 & Enterprise·

Aug 17, 2023

Uzbekistan’s New Private Bank Joins National Crypto Card Initiative

Uzbekistan’s New Private Bank Joins National Crypto Card InitiativeIn a step towards enhancing its cryptocurrency ecosystem, the Republic of Uzbekistan has given the green light to include another private bank in its ongoing national crypto card project. The development was announced through an official press release earlier this week by the National Agency of Perspective Projects (NAPP), the country’s regulatory authority for digital assets.Photo by engin akyurt on UnsplashBuilding upon a crypto frameworkUnder the provisions outlined by the Uzbekistan Ministry of Justice on December 30 of last year, the Special Regulatory Sandbox Regime was established. This unique framework empowers specific entities within Uzbekistan’s crypto sphere to provide specialized services. JSV Ravnaq Bank has now been registered as a member of this regime, enabling its active participation in the pilot phase of the nation’s crypto card project.Virtual bank cardThis initiative is poised to introduce a virtual bank card named “CRYPTO CARD — UzNEX.” The card’s standout feature is its ability to facilitate automatic fund addition to users’ primary accounts. This is achieved by swiftly converting crypto assets from a digital wallet on a partner crypto exchange platform.A vital aspect of the crypto card’s development lies in its compatibility testing with various financial systems, including the widely used Mastercard payment platform. According to NAPP’s statement, the participant bank within the special regulatory regime will be rigorously testing the integration of the automated banking system, crypto-exchange information system, bank processing center, and the MasterCard international payment system.December launchNotably, the addition of Ravnaq Bank marks the second entrant into the project, with Kapital Bank being the first participant approved in May. While Kapital Bank’s testing phase commenced at the end of June 2023, Ravnaq Bank is set to initiate its test launch by the end of October 2023. Both banks are expected to launch the full project by late December, in accordance with NAPP’s timeline.Beyond these private banks, the Special Regulatory Sandbox Regime also includes UZINFOCOM, a company authorized to develop NFT certificates based on distributed data registry technology.

news
Loading