Top

CoinGecko security breach latest threat within crypto space

Web3 & Enterprise·January 12, 2024, 1:51 AM

The crypto space continues to suffer a disproportionate share of hacks and scams that were further exacerbated on Wednesday, with Malaysian crypto data aggregator the latest to succumb to a security breach.

 

Serving as yet another stark reminder of the persistent threats plaguing the sector, a phishing scam targeted CoinGecko's X account, leading to a brief compromise that raised concerns about the safety of user information.

https://asset.coinness.com/en/news/665e08d0b2b6f1b715f8ec42a31003c6.webp
Photo by GuerrillaBuzz on Unsplash

Phishing scam

During this incident, hackers posted a phishing link on CoinGecko's X account, falsely advertising a token airdrop for a cryptocurrency named GCKO. The deceptive post claimed that GCKO could be used for API services, including the cryptocurrency ANKR. Swift action by CoinGecko involved the removal of the fraudulent post and a public warning urging users to avoid interacting with any suspicious links or content.

 

In an X post, CoinGecko wrote:

”Our Twitter accounts @CoinGecko and @GeckoTerminal have been compromised. We're taking immediate steps to investigate the situation and secure our accounts. Please DO NOT click on any links or engage with suspicious content. Your security is our top priority.”

 

Employee error

The firm followed up with an update on Thursday, attributing the breach to a team member inadvertently clicking on a fraudulent Calendly link, granting unauthorized access to the hacker.

 

Despite having two-factor authentication (2FA) enabled and employing robust security measures, CoinGecko emphasized that the inadvertent click allowed unauthorized access. The compromised accounts were then exploited to disseminate misleading information and potentially engage in malicious activities.

 

CoinGecko expressed sincere apologies for any confusion or inconvenience caused by the incident. The company reiterated its commitment to platform security and continuous improvement of internal controls, assuring users that corrective measures were promptly implemented.

 

SEC incompetence

CoinGecko's security incident occurred within 24 hours of a similar occurrence involving the U.S. Securities and Exchange Commission (SEC). The SEC's X account was compromised, with scammers posting a false message from Chair Gary Gensler about the approval of spot bitcoin exchange-traded funds (ETFs).

 

While CoinGecko identified a vulnerability in its security regimen, the SEC later confirmed that the breach in its case was far more basic. It was not due to infrastructure attacks but rather the lack of 2-factor authentication (2FA) tied to the SEC's account, the most basic form of operations security.

 

Gensler and the SEC have come in for major criticism from the crypto community in the U.S. due to a policy of regulation by enforcement that has been pursued. With that, the Commission came in for swift and harsh criticism in the immediate aftermath of its X account hack.

 

Many pointed out the irony of Gensler advising consumers to secure their accounts back in October when the SEC itself had failed to do so. Others queried who would be responsible for what some interpreted as an episode of market manipulation, something that the SEC has perennially associated the crypto markets with. During the time that the account was compromised, millions of dollars of value were liquidated in short and long trading positions.

 

CoinGecko's quick response serves as a valuable lesson in the importance of vigilance and proactive security measures amid the growing threats facing the cryptocurrency community.

More to Read
View All
Markets·

Jan 03, 2024

Matrixport forecasts SEC bitcoin ETF rejection

In a recent report, Singaporean digital asset financial services firm Matrixport has made a bold forecast regarding the future of bitcoin prices and the potential rejection of spot bitcoin ETFs by the Securities and Exchange Commission (SEC) in the United States.Photo by André François McKenzie on UnsplashMinority viewWhile most ETF and crypto industry analysts in recent weeks have been suggesting a greater than 90% chance of the imminent approval of a spot bitcoin ETF coming from the SEC, Matrixport has had its say, speculating that the regulator will once again reject all such applications. In a note published to its website on Wednesday, the firm stated:”The current five-person voting Commissioners leadership critical for the ETF approval of the SEC is dominated by Democrats. SEC Chair Gensler is not embracing crypto in the U.S., and it might even be a very long shot to expect that he would vote to approve bitcoin spot ETFs.” The report emphasizes the dominant influence of Democratic leadership within the SEC, particularly Chairman Gary Gensler's cautious approach to crypto regulation. The Democrat-led administration in the United States has been decidedly anti-crypto in its policies throughout the ongoing term of U.S. President Joe Biden. Matrixport also suggests a potential delay in ETF approvals until Q2 2024, dampening hopes of an imminent market boost. Potential bitcoin price slumpShould the company be right in that speculation, it extrapolates that this turn of events will potentially lead to a substantial decline in bitcoin's value, with the bitcoin unit price possibly dropping to as low as $36,000. This revelation has sent shock waves through the market, prompting Matrixport to advise investors to take protective measures. The recommended strategies include purchasing put options or engaging in direct shorting of bitcoin to mitigate potential losses. With an ominous Jan. 5, 2024 deadline looming, traders could decide to hedge their long exposure by purchasing $40,000 strike put options expiring at the end of January or opting for outright short positions through options. Matrixport's report challenges the previously optimistic expectations surrounding bitcoin's future, highlighting the SEC's likely rejection of spot ETFs as a significant factor. Despite the platform's earlier bullish stance, it now expresses skepticism about the SEC's willingness to embrace cryptocurrencies. The firm contends that the current influx of funds into crypto, driven by expectations of ETF approval, could result in significant liquidations if the SEC denies the proposals. The report estimates that about $10 billion of the $14 billion additional investments might be linked to optimistic ETF prospects. Notably, Matrixport foresees a rapid 20% decline in bitcoin's price, reverting to a range of around $36,000 to $38,000 should the SEC reject the ETFs. Positive long-term outlookDespite the potential setback with the SEC, Matrixport maintains a positive long-term outlook for bitcoin, expecting the BTC price to end 2024 above the $42,000 mark, where it started the year. The analysis also considers historical trends in U.S. election years and bitcoin mining cycles for the potential rally. At the time of writing, the bitcoin unit price is down 4.75% over the course of the past 24 hours, now standing at $42,838. Investors are closely monitoring the upcoming SEC decision and may well be heeding Matrixport's advice to navigate potential market volatility.  

news
Policy & Regulation·

Dec 21, 2023

Crypto fund manager secures capital markets license in Singapore

Crypto fund manager secures capital markets license in SingaporeDigital asset fund manager HashKey Capital Singapore celebrated a significant milestone on Tuesday as it secured a regulatory license from the local regulator and central bank, the Monetary Authority of Singapore (MAS).Photo by Mike Enerio on Unsplash‘Pivotal development’HashKey announced its regulatory success by way of a press release published to its website. This achievement, described by the company as a “pivotal development,” positions the firm to offer regulated fund management services primarily in connection with capital markets products from its Singapore base.Deng Chao, Chief Executive of HashKey Capital Singapore and Head of HashKey Singapore, expressed the company’s commitment to the local blockchain community, stating:“As a licensed fund management company, we are committed to contributing to the local blockchain community and playing our part in shaping its future.”Enabling product launchHaving initiated the licensing process in late 2021, HashKey Capital Singapore now plans to leverage its new status to launch a regulated fund and provide capital market products to local customers. The company envisions connecting blockchain experts and global capital to the local market, contributing to the advancement of the blockchain community in the region.Chao emphasized the company’s excitement about propelling blockchain-related capital markets products and investments further into the mainstream. This move is expected to open new possibilities for institutional and accredited investors in Singapore.Hong Kong presenceHashKey Capital falls under the overarching umbrella of Hong Kong-headquartered parent company HashKey Group. Company colleagues in Hong Kong have been busy in 2023, with a number of milestones having been achieved during the year.HashKey and OSL became the first digital asset exchange platforms to be licensed by the Hong Kong Securities and Futures Commission (SFC) as part of a new regulatory approach that allowed such platforms to offer their services to retail investors from June 1 onwards.A few months on from that and the company has been working towards increasing platform liquidity and trading volumes through a token rewards program and partnerships with market makers.At the end of October, the firm launched an exchange app, having received approval for the product from the local regulator. The firm has also bolstered customer deposit protection by way of a deal struck with fintech firm OneDegree to provide insurance cover for digital assets held on the platform.In April, a separate entity, HashKey Wealth, was formed, offering a wealth management service to both institutional and individual investors looking for exposure to digital assets.HashKey Singapore, inclusive of HashKey Capital Singapore, boasts a team of approximately 40 professionals covering various areas such as venture capital investment, fund management and over-the-counter trading of digital assets. The development follows HashKey Capital’s successful conclusion of a $500 million funding round, reinforcing its position as one of the largest crypto asset managers.Founded in 2015, HashKey Capital has played a pioneering role as an institutional investor in Ethereum, managing over $1 billion in client assets and making investments in more than 500 projects across infrastructure, tools and applications.During a funding round which the HashKey Group pursued earlier this year, it emerged that the company was being valued at $1 billion.

news
Policy & Regulation·

May 23, 2025

Pakistan establishes authority to regulate crypto

Pakistan’s Ministry of Finance has signed off on the establishment of the Pakistan Digital Assets Authority (PDAA), a body which will be responsible for the implementation of regulations governing blockchain and the digital assets sector. In a report published by Pakistani English-language newspaper Dawn, the media outlet outlined that the Ministry of Finance has taken this step in an effort to embrace future innovation in the finance sector.  The new agency will be responsible for monitoring the operations of digital wallet service providers, stablecoin issuers, the development firms behind decentralized finance (DeFi) protocols, crypto custodians and crypto exchange platforms. Photo by Hamid Roshaan on UnsplashFrom crypto ban to crypto regulationIn October 2022, Pakistan was removed by the Financial Action Task Force (FATF), a global money laundering and terrorist financing watchdog, from its grey list. The following year, Pakistan’s Minister of State for Finance and Revenue, Aisha Ghaus Pasha outlined that banning cryptocurrency was a condition of the country’s removal from the FATF grey list. Accordingly, the South Asian country proceeded to ban digital assets, with Ghaus Pasha declaring that crypto would “never be legalized in Pakistan.”Despite the adverse position taken previously by the authorities in Pakistan where digital assets were concerned, in 2024 a survey carried out by Chainalysis revealed that Pakistan featured strongly in terms of retail-level crypto adoption. With this latest development, Pakistan is moving forward progressively with digital assets, albeit that it is doing so while being cognizant of the current requirements demanded by FATF related to crypto. The newly-formed PDAA will act to ensure FATF-compliant innovation, while striving for economic inclusion and the adoption of digital assets in a responsible manner. Regulating to lead crypto innovation rather than catching upPakistan’s current Minister for Finance and Revenue, Muhammad Aurangzeb, said that “Pakistan must regulate not just to catch up — but to lead.” He added that through the establishment of the PDAA, a digital assets regulatory framework that protects consumers will be created. Furthermore, he claimed that such an approach would attract global investment, putting Pakistan “at the forefront of financial innovation.”Another area of focus for the PDAA will be the facilitation of the tokenization of government debt and national assets. Pakistan runs an annual average electricity surplus of 4,000 megawatts. In 2024, total electricity generation was recorded at 92,091 GWh while demand weighed in at 68,559 GWh. With that, the Pakistani authorities want the PDAA to create the correct conditions that will lead to regulated Bitcoin mining operators utilizing this energy resource. Other objectives which have been set out for the new agency include encouraging the growth of startups aimed at building blockchain-based solutions at scale, the regulation of what is estimated to be a $25 billion informal crypto market and the provision of legal clarity within the crypto sector in Pakistan for both local and international investors. This latest positive development follows the formation of the Pakistan Crypto Council (PCC) back in February. That event signaled a policy shift in Pakistan with regard to digital assets. In March PCC CEO Bilal bin Saqib said that Pakistan was done sitting on the sidelines and that the authorities now want to see Pakistan develop as a “leader in blockchain-powered finance.”

news
Loading