Top

Kaspersky Says Crypto Phishing on the Rise in the Philippines

Policy & Regulation·July 13, 2023, 12:55 AM

The Philippines witnessed a significant increase in detected cryptocurrency-related attacks last year while Vietnam recorded the highest level in Southeast Asia, according to cybersecurity firm Kaspersky.

Photo by Markus Spiske on Unsplash

 

Ease of crypto access

Vietnam topped the list with over 64,000 detections. Meanwhile, the Philippines recorded 24,737 cases of crypto-phishing attacks in 2022, up from 9,164 cases in 2021, making it the second-highest number in Southeast Asia.

Adrian Hia, Managing Director for Asia Pacific at Kaspersky, attributed the rise to the ease of accessing cryptocurrency in the Philippines. He explained that as users increasingly turn to mobile devices, they are inadvertently exposing themselves to potential breaches, as malware can be installed through various touch points.

Research published by Malaysian crypto data aggregator, CoinGecko, earlier this month, also points to the Philippines as having the second highest level of interest in crypto in Southeast Asia, after Singapore.

 

Targeting popular platforms

Cybercriminals commonly target accounts of popular online gaming platforms and crypto wallets using advanced stealers or “stalkerware” that allow them to spy on individuals through their mobile devices, Kaspersky stated. The firm’s monitoring data revealed that malware is spreading through legitimate channels such as official marketplaces and advertisements in popular apps.

Across Southeast Asia, the total number of crypto-phishing detections decreased to 147,649 in 2022 from 164,330 in 2021, according to Kaspersky. However, only Singapore (down 74%), Thailand (down 51%), and Vietnam (down 15%) observed declines in detections. Besides the Philippines, crypto-related attacks also increased in Indonesia (from 19,584 in 2021 to 24,642 in 2022) and Malaysia (from 16,071 to 16,767).

Kaspersky discovered an average of 400,003 new malicious files per day in 2022, representing an increase of 20,000 files per day compared to the previous year. Hia emphasized that scammers are relentless in their efforts to steal cryptocurrency due to its increasing popularity and adoption, particularly in Southeast Asia. He urged cryptocurrency adopters in the region to stay informed about the latest tricks used by crypto phishers to protect their digital assets.

 

Email-based attacks

Roman Dedenok, a spam analysis expert at Kaspersky, revealed that crypto phishers often employ email-based attacks to target crypto users. He explained that scammers entice victims with the prospect of participating in a cryptocurrency giveaway, offering popular digital assets such as Bitcoin, Ethereum, Litecoin, Tron, or Ripple.

The scammers provide a three-point guide to claim the free cryptocurrency along with a link to the “promotion” website. Clicking on the link leads users to a phishing site where they are prompted to specify the wallet to which they want the funds transferred.

In response to the growing cybersecurity concerns, Kaspersky is engaging in discussions with government institutions worldwide. In the Philippines, while the central bank does not directly regulate cryptocurrency, it has established guidelines for virtual asset service providers. The Chairman of the Securities and Exchange Commission (SEC) in the Philippines, Emilio Aquino, recently delayed publication of a regulatory framework for crypto, on the basis of having “to make sure people don’t get burned.”

Entities involved with virtual assets are required to obtain a license from the Bangko Sentral ng Pilipinas, the central bank of the Philippines, to comply with regulations.

More to Read
View All
Policy & Regulation·

May 17, 2023

Korean Blockchain Firm Proposes Fintech Collaboration in Cambodia

Korean Blockchain Firm Proposes Fintech Collaboration in CambodiaSouth Korean fintech and blockchain company KONDOR recently made an announcement through a press release regarding the establishment of a blockchain fintech advisory board in Cambodia. The firm has proposed a business agreement to the Securities and Exchange Regulator of Cambodia (SERC) with the aim of ensuring sustainable growth in the financial sector and capital markets.Photo by allPhoto Bangkok on PexelsFintech advisory boardThe advisory board comprises experts from various fields, including finance, economics, law, blockchain technology, fintech, and artificial intelligence. They will function independently, offering counsel on policy decisions.Sou Soucheat, Director General of SERC, highlighted that Cambodia is currently in the process of rebuilding and has a youth-driven economy and financial markets. He sees the collaboration with KONDOR as a valuable opportunity to develop a future-oriented financial system.The advisory board will see participation from KONDOR and other notable members, namely VEXK, a global digital asset exchange in Vietnam; Blue Contents, a Honolulu-based digital economy research center; and the Paññāsāstra University of Cambodia, a key player in the country’s educational field.KONDOR and VEXK have put forth a proposal for the joint establishment of a trust company and the pursuit of a custody license in alignment with Cambodia’s revised trust law of 2019.Procuring licensesFollowing the proposal’s approval, VEXK plans to procure a license as a digital asset exchange, as well as a license to establish a trust company. This would enable VEXK to effectively oversee clients’ digital and physical assets through accounts within the established trust company. The safety of these assets will be ensured through insurance coverage provided by reputable global insurers. Furthermore, VEXK will acquire the ability to facilitate USD trading and will retain the digital asset exchange license for five years.The license application will gain support from the SDG Impact Fund, a US-based organization managing $11 billion worth of assets, and the Estates & Infrastructure Exchange (EIX), a project bond exchange based in London.EIX CEO Mark Worrall said that active support from a securities regulator in the dynamic and expanding Web3 era would certainly contribute to Cambodia’s economic growth.

news
Policy & Regulation·

Jun 14, 2023

North Korean Hackers Take Off With $100M Atomic Wallet Honeypot

North Korean Hackers Take Off With $100M Atomic Wallet HoneypotHaving reported last week on a $35 million hack of Atomic Wallet users’ funds, an update on the matter reveals that the situation is much worse than originally thought, with losses now exceeding $100 million.Photo by Kenny Eliason on Unsplash5,500 wallets compromisedThe attack has sent shockwaves throughout the crypto community, raising concerns about the security of decentralized wallets. Atomic Wallet, an Estonia-based project known for its non-custodial approach where users take full responsibility for storing their assets securely, has been hit hard by this unforeseen breach.Elliptic, a crypto compliance analysis company, published an update on the situation on Tuesday. According to that blog article, it estimates that approximately 5,500 crypto wallets have been compromised, meaning that losses have risen to more than $100 million, highlighting the severity of the attack.Despite the significant impact on users, Atomic Wallet has yet to provide an explanation regarding the root cause of these substantial losses. Users have taken to social media in frustration, demanding clarification from the company. Surprisingly, the company’s last direct update on Twitter dates back to June 7, leaving users feeling even more anxious.User frustrationOne user, Ezra Carlson, expressed frustration, questioning why Atomic Wallet didn’t warn users when they were aware of the ongoing hack. Carlson tweeted: “@AtomicWallet why won’t AM give me a straight answer about why they didn’t warn me, knowing full well that they were being hacked, that it was not safe to use AM last week before I made a transfer to my wallet that was then hacked.”Another user, “Real Deal Crypto,” criticized Atomic Wallet’s lack of updates, stating: “Your last update was five days ago — SERIOUSLY?!?!”Although Atomic Wallet acknowledged reports of compromised wallets on June 3, downplaying the impact by claiming that less than 1% of users were affected, the staggering sum of losses indicates a significant breach. Its last communication on the matter came on June 11 when, in responding to a user, the firm said that it continued to investigate and to await Twitter updates on the matter.Hack tied to North Korea’s Lazarus GroupElliptic has connected this heist to the notorious Lazarus Group, a cyber-criminal organization with ties to the North Korean regime, responsible for stealing over $2 billion in crypto assets through various thefts. This attribution marks the first time a significant crypto heist has been openly linked to the Lazarus Group since their $100 million exploit of Horizon Bridge in June 2022.In response to the heist, Elliptic has been collaborating with international investigators and exchanges, mobilizing resources to recover the stolen assets. Their efforts have reportedly led to the freezing of over $1 million worth of funds. However, the thief has adapted its behavior in response to the freezing of assets, turning to the Russia-based Garantex exchange to launder the stolen assets, as noted by Elliptic.This recent attack adds to a series of notable breaches in the crypto industry. Jimbos Protocol experienced an exploit resulting in a loss of $7.5 million, and Tornado Cash faced a malicious proposal that seized control of its governance in May. According to a report by Chainalysis, crypto hackers made off with an estimated $3.8 billion in 2022, with North Korea being responsible for a significant portion of the attacks.

news
Web3 & Enterprise·

Apr 19, 2023

Korean Game Developers to Benefit from Higher NFT Trading Volume

Korean Game Developers to Benefit from Higher NFT Trading VolumeKorean game companies preparing to launch web 3.0 games are expected to benefit from the higher non-fungible token (NFT) trading volume, according to Korean news outlet Financial News.©Pexels/Tony LitvyakA report from decentralized app analytics platform DappRadar states that the NFT trading volume reached $4.7 billion in the first quarter this year, up 137.04% from the previous quarter. This volume is the highest since the second quarter of 2022.This year’s strong NFT market so far is good news for Korean game developers, which were negatively affected by a slowdown in the crypto industry last year due to various factors, including the Terra USD collapse and the bankruptcy of crypto exchange FTX.In fact, many game and content companies are expanding their ecosystems by tokenizing their game items and intellectual property (IP) rights.NexonOne such example is Nexon, the developer of the massively multiplayer online role-playing game MapleStory. Based on its IP rights, Nexon is creating the MapleStory Universe, an NFT-based blockchain ecosystem. The MapleStory Universe will enable trading of NFTs, which users can obtain while hunting or accomplishing quests. Its first major project, a personal computer game named “MapleStory N,” will be launched to attract gamers worldwide.NetmarbleNetmarble, another Korean game company, will launch Modoo Marble 2: Metaworld on Wednesday for global gamers. The popular mobile board game will be rolled out on the MBX ecosystem operated by Netmarble’s blockchain subsidiary Marblex. Participation in the board game and involvement in the Metaworld would allow users to earn Meta Cash as rewards, which can then be swapped for different virtual assets. The trade of buildings and land within the game would likely be facilitated through the use of NFTs.Com2uS HoldingsCultural content company Com2uS Holdings is also making its own efforts to expand its blockchain ecosystem. Its subsidiary Com2uS Platform recently forged a partnership with animation firm Daewon Media to strengthen its NFT business based on Daewon’s popular IP rights.A game industry official said NFT trading can address issues that caused concerns for gamers who doubted the legitimacy and price of items they traded. The official further elaborated that incorporating elements like NFTs and the metaverse would enhance the gaming experience and excitement for gaming enthusiasts.

news
Loading