Top

FPG Halts Withdrawals Following Hack

Web3 & Enterprise·June 15, 2023, 12:09 AM

Floating Point Group (FPG), a prominent crypto prime brokerage platform, has temporarily halted trading, deposits, and withdrawals following a cyber security incident that occurred on Sunday.

Photo by Thom Milkovic on Unsplash

 

Incident response

FPG, headquartered in Singapore while maintaining a base in Hoboken, New Jersey in the United States, manages over $50 billion in assets. The firm took immediate action upon discovering the incident by engaging third-party forensics experts and law enforcement agencies.

The company acknowledged the problem publicly via a tweet thread on Twitter on Wednesday. FPG stated that the company has locked all third-party accounts and secured its wallets while it investigates the extent and details of the breach. Although the full extent of the loss is still under investigation, the current estimate stands at approximately $15 million to $20 million in lost cryptocurrencies.

 

Investigative cooperation

In response to the incident, FPG is collaborating with the FBI, the Department of Homeland Security, regulatory bodies, and Chainalysis to comprehend the nature of the attack and initiate asset recovery measures. As the investigation involving those entities is ongoing, specific details are not being disclosed at this stage, but FPG has pledged to provide updates as new information becomes available.

The cyber security incident comes six months after FPG obtained a SOC 2 certification, which verifies the implementation of robust security, privacy, and control measures by service organizations to ensure the reliable handling of sensitive data and systems.

Originally founded in 2018 at the Massachusetts Institute of Technology (MIT) in the US, FPG functions as both a crypto prime brokerage platform and an agency trading desk for asset managers, offering access to liquidity across various markets. In December, FPG announced that its blockchain foundation customers accounted for 5% of the total treasury management market.

Backed by prominent investors such as Coinbase Ventures, Anthony Scaramucci of SkyBridge Capital, and Naval Ravikant, the founder of AngelList, FPG has raised a total of $12 million in funding thus far.

In August of the previous year, FPG successfully registered as a virtual asset service provider (VASP) in the Cayman Islands. This registration ensured the secure custody of customer assets and safeguarded them from the company’s creditors in the unlikely event of bankruptcy.

 

Broader crypto issues

It has not been a good couple of weeks for the crypto sector relative to hacks and platform withdrawal pauses. Within the past twenty four hours, two Asia-based crypto lending platforms, Haru Invest and Delio, have suspended withdrawals. In those cases, the issue is suspected to relate to platform contagion and solvency issues.

Earlier this month, the Atomic Wallet platform was hacked despite the understanding that the project offered self-custodial wallets. Originally, the loss was estimated at $35 million, but more recent reports are now estimating that figure to be in excess of $100 million.

As FPG continues its efforts to mitigate the aftermath of the cyber attack, industry participants eagerly await further updates and measures undertaken by the company to recover from this incident and restore trust among its clients.

More to Read
View All
Policy & Regulation·

Apr 26, 2023

Korean Lawmakers Make Progress on Virtual Asset User Protection Bill

Korean Lawmakers Make Progress on Virtual Asset User Protection BillOn Tuesday, the subcommittee for legal deliberations under the South Korean National Assembly’s National Policy Committee reached a consensus during the first review of the Virtual Asset User Protection Bill, according to Yonhap Infomax.©Pexels/Andrea PiacquadioFirst review phaseThe bill is undergoing a two-phase review process before being legislated. During the first phase, the primary focus was on safeguarding customer assets and preventing unfair transactions. The second phase is expected to concentrate on market order regulations, including the issuance and disclosure of virtual assets.Application of Capital Markets ActSeveral stipulations were included in the approved draft of the Virtual Asset User Protection Bill during the initial review phase. These stipulations include prioritizing the application of the Capital Markets Act to virtual assets that are classified as securities, while excluding central bank digital currencies (CBDCs) from the definition of virtual assets to avoid any potential confusion. The bill also seeks to impose compensatory damages and penalties for any unfair trading practices, and establish a virtual asset committee responsible for investigating any unfair transactions in the digital asset market.The virtual asset committee will also engage in preliminary deliberations regarding the management, supervision, and monitoring of the digital asset market. The committee will carry out tasks assigned to it by the Financial Services Commission (FSC). Furthermore, the Bank of Korea has been granted the right to request data from virtual asset operators since virtual assets, although not currencies, are necessary to consider when establishing monetary credit and financial stability policies.No class action systemHowever, the introduction of a class action lawsuit system was not adopted, and details about inspecting virtual asset operators will be stipulated in a presidential decree rather than a law.Second review phaseFor the second review phase, the FSC will report several matters to the National Assembly. These will involve tasks such as establishing a regulatory framework for stablecoins, security tokens, and utility tokens. In addition, the agency will be responsible for creating a regulatory system for virtual asset valuation, advisory, and disclosure services, as well as an integrated computerized system that provides reliable and reasonable information on digital assets. The FSC will also explore ways to enhance the business conduct discipline of cryptocurrency operators by commissioning research from external organizations.Additionally, the FSC and the Financial Supervisory Service will work on supporting virtual asset exchanges to establish uniform standards for the circulation supply of virtual assets. The regulatory bodies will also enforce the requirement for transparent disclosure and strict internal control on virtual asset operators. Moreover, regulations will be developed to enhance virtual asset usability and remove any obstacles that may impede the development of innovative real-life services.

news
Policy & Regulation·

Sep 13, 2023

Compliance and Cooperation — A Necessary Formula for Combatting Crypto Crimes

Compliance and Cooperation — A Necessary Formula for Combatting Crypto CrimesFrom common scams like voice phishing to threats of violence, the involvement of cryptocurrencies in crimes against the general public is steadily on the rise both in South Korea and abroad.Photo by Bermix Studio on UnsplashAccording to blockchain data analysis firm Chainalysis, the scale of cryptocurrency-related crimes and hacking on a global scale has decreased by 45.2% and 23.5%, respectively, compared to last year. However, financial losses resulting from smaller ransomware attacks, including phishing scams, are showing an upward trend.Authorities and industry figures alike are increasingly emphasizing the need for close cooperation to combat this growing issue, as existing regulations and legal frameworks remain insufficient to do so.Chainalysis and crypto exchange Binance co-hosted a policy summit in Seoul on Tuesday called “Securing the Future of Crypto,” where experts gathered at the Courtyard Marriott hotel to discuss compliance and cooperation between the public and private sectors in fighting crypto crimes.Challenges and complexities in crypto investigations“The Korean National Police Agency receives dozens of reports of financial losses and urgent requests for account freezes every day, with 80% of them pertaining to Binance,” said Kim Min-jae, an investigator at the National Police Agency’s International Cyber Cooperation Division.Citing a recent case of a voice phishing scam targeting a woman in her 60s, Kim said that authorities were able to proceed with the investigation within 30 minutes after receiving information from the exchange. However, addressing crimes beyond large cryptocurrency exchanges like Binance, such as those involving decentralized finance (DeFi) systems or foreign exchanges, poses a more difficult challenge due to the lack of proper measures to deal with them.Lee Soo-pyeong, a cybercrime investigator at the Korean National Police Agency’s Cyber Investigation Division, also noted that although domestic cases are relatively easier to investigate, there have been many cases — such as the appalling Nth Room case that caused an uproar throughout Korea in 2020 — that involved overseas accounts and exchanges.Steps for effective crime controlWhat measures, then, should authorities and corporations take in order to deal with such issues? Lee stressed the importance of cooperation among international judicial bodies and adherence from businesses to enhance the response to increasingly sophisticated crypto crimes.Know Your Customer (KYC) standards — the guidelines used in investment and financial services to verify customers’ identities and assess their risk and financial profiles — play an important role in this regard. However, “There are no platforms yet, including major exchanges like Binance, that provide us with personal information through KYC measures when funds are laundered,” Kim explained. He expressed hopes for a system jointly established by relevant entities, including local exchanges, that will enable swift criminal investigation.Lee also highlighted the importance of compliance from foreign companies, stating, “While it’s possible to request mutual legal assistance in criminal matters from the International Criminal Police Organization (Interpol), active cooperation from foreign companies is essential.”From an international point of view, Jarek Jakubcek, Head of Intelligence and Investigations APAC at Binance, pointed out that upholding international standards and standardized processes is important, given the fact that crypto crimes transcend borders. While some countries excel in compliance and enforcing anti-money laundering (AML) policies, others fall short, leading criminals to exploit these disparities.Recently, there have been criminals who move their funds through blockchain networks. The development of bridge technology, which facilitates cross-chain asset transfers, has led to laundering techniques becoming more and more sophisticated. However, he assured that tracing funds is still possible, although doing so has become harder than before.The amalgamation of these circumstances has thereby ushered in the era of Know Your Transaction (KYT). While exchanges have traditionally been obligated to perform Know Your Customer (KYC) procedures to prevent money laundering, they must now go beyond verifying user information and analyze customer transaction data in order to understand where money is coming from and how it flows, Jakubcek said. To achieve this, he argued, they must request information from users and work with on-chain data analysis solution companies like Chainalysis to secure real transaction data. Alec Zebrick, Manager of Investigations in the Asia-Pacific region at Chainalysis, added that leveraging on-chain data allows the verification of most transactions.In the rapidly evolving crypto landscape where crimes are still a force to deal with, experts agree that reinforcing compliance and cooperation between exchanges and authorities is imperative.

news
Policy & Regulation·

Dec 23, 2023

Terraform Labs civil trial proceeds with confidential filings

Terraform Labs civil trial proceeds with confidential filingsSingaporean blockchain development firm Terraform Labs, the creator of the failed Terra blockchain protocol, has reached an agreement on a protective order in their ongoing civil case with the United States’ Securities and Exchange Commission (SEC).Photo by Thomas Habr on UnsplashData shielded from public disclosureThe decision, sanctioned by the U.S. District Court Judge Jed Rakoff in the Southern District of New York on Wednesday, ensures that materials marked as confidential by the involved parties will remain shielded from public disclosure. The court is obligated to seal any discovery filings labeled confidential ahead of the trial.Judge Rakoff conveyed his likelihood of denying requests to unseal these confidential documents, although the order did not delve into the specific rationale for maintaining their confidential status beyond citing “good cause.” The finalized agreement on this protective order took place on Dec. 18, with legal representatives from both the SEC and Terraform Labs, including co-founder Do Kwon, giving their consent. Kwon, presently detained in Montenegro, faces potential extradition to the United States or South Korea.Pivotal momentThe depegging of Terraform’s stablecoin TerraUSD (UST) from the U.S. dollar marked a turning point in the cryptocurrency sector. This event is believed to have significantly contributed to the crypto market downturn in 2022, as it had a knock-on effect on countless other crypto businesses and platforms that were over-exposed to the flawed algorithmic currency.That chain of events led to the SEC taking action after the fact. However, it has subsequently also pursued a much criticized “regulation by enforcement” policy relative to the crypto sector. To that end, the Commission has pending cases against Coinbase, Ripple, Kraken and Binance, among others.In February, the SEC accused Terraform Labs and Do Kwon of conducting a multi-billion dollar crypto asset securities fraud by offering and selling unregistered securities. As proceedings have unfolded, both Terraform and the SEC have traded unsuccessful attempts to obtain summary judgment.Far-reaching consequencesThe ongoing SEC vs. Terraform civil case carries potential far-reaching consequences in terms of legal precedents within the cryptocurrency sector. In a separate ruling in August, the court allowed Terra to issue subpoenas to FTX entities as part of FTX’s bankruptcy proceedings. Judge Rakoff, in November, accepted confidential materials from Jump Crypto Holdings for discovery in this case.Troubled crypto lender Genesis Trading has also been tangled up in the proceedings with the courts directing it to comply with a subpoena initiated by Terraform Labs. The outcome of this case is poised to offer essential legal guidance for numerous companies operating in the crypto space.The SEC’s regulatory approach toward cryptocurrency firms in the United States has been subject to considerable debate and criticism. The commission’s alleged “regulation by enforcement” strategy, especially in dealings with major players in the crypto industry, has drawn accusations.While many in the U.S. have been unhappy with “regulation by enforcement,” the upside is that over the longer haul, the courts will be able to eventually furnish the regulatory clarity that the SEC refuses to provide. The ongoing scrutiny of regulatory approaches and the outcomes of cases like Terraform Labs vs. SEC will undoubtedly shape the future legal landscape of the cryptocurrency industry.

news
Loading