Top

Singaporean authorities alert businesses to Bitcoin ransomware risk

Policy & Regulation·June 11, 2024, 6:07 AM

Akira ransomware, responsible for stealing $42 million from over 250 organizations across North America, Europe and Australia in just a year, is now targeting businesses in Singapore. In response, Singaporean authorities have issued a joint advisory warning local businesses about the increasing threat posed by a variant of this ransomware.

https://asset.coinness.com/en/news/2a60ac3f2278d1ab842181ec0c178bfb.webp
Photo by Mike Enerio on Unsplash

Alert follows complaints

The alert follows multiple complaints from victims, prompting agencies like the Cyber Security Agency of Singapore (CSA), the Singapore Police Force (SPF) and the Personal Data Protection Commission (PDPC) to take action. These agencies emphasize the urgency of recognizing and combating this threat.

 

How Akira operates

Akira affiliates employ various techniques to infiltrate a victim's network. These include exploiting known vulernabilities. For example, that could mean the targeting of services like Cisco virtual private networks (VPNs) that have been configured without multi-factor authentication (MFA).

 

Another approach that the ransomware incorporates is attacking external-facing services such as the Remote Desktop Protocol (RDP) via brute force. Social engineering is another tool within its repertoire. This involves tricking victims into downloading malicious software or entering credentials on phishing websites.

 

There is a marketplace for compromised credentials in the dark web. Akira also relies on such data, acquiring it from access brokers who sell network access. 

 

Once inside a network, Akira affiliates often create new domain accounts to maintain persistent access, even after reboots. They use numerous tools to steal user credentials, escalate privileges and spread throughout the network.

 

Detection and prevention measures

The Singaporean advisory outlines several strategies for detecting, deterring and neutralizing Akira attacks. Authorities strongly advise against paying ransoms, on the basis that doing so does not guarantee data recovery or prevent future attacks.

 

Authorities also warn that paying ransoms can encourage further attacks. The FBI has noted that Akira operators do not contact victims. Instead, they expect victims to initiate contact.

 

Payment in Bitcoin

The advisory outlines how Bitcoin is implicated in the ransomware scam. It states:

”Ransom payments are requested in Bitcoin, which are directed to cryptocurrency wallet addresses specified by the affiliates. The TOR site (.onion) where victims contact the affiliates, contains stolen information and a list of the affected organisations.”

 

It’s not the first time that Singaporean authorities have issued warnings that have implicated Bitcoin and crypto. In January, the CSA and SPF, in a joint advisory, suggested that people should use hardware wallets in an effort to guard against crypto-related malware and phishing attacks.

 

A number of weeks prior to that, Singapore’s former Prime Minister, Lee Hsien Loong, took to Facebook to issue a warning with regard to a crypto scam that involved the use of deceptive content generated using artificial intelligence (AI).

 

Mitigation techniques

Businesses are being urged by the authorities to adopt best practices to mitigate the Akira ransomware threat. They suggest the implementation of a recovery plan alongside the use of multi-factor authentication (MFA) in order to secure data and the access to that data. 

 

They also suggest filtering network traffic as it helps in identifying and blocking malicious activities. Meanwhile, disabling unused ports and hyperlinks curbs the risk further as it reduces the attack surface. Lastly, the authorities suggested the use of system-wide encryption to protect data even if it is accessed by unauthorized entities.

More to Read
View All
Markets·

3 days ago

Institutional support expected to cushion crypto volatility, analyst says

Despite ongoing fluctuations in the cryptocurrency market, analysts suggest that sustained institutional activity is likely to underpin a near-term rebound. As Bitcoin recovered above $90,000 on Dec. 5, market observers began weighing potential risks against growing evidence of corporate and sovereign adoption.Photo by Austin Hervias on UnsplashStructural risks seen as limitedAccording to South Korean news outlet Etoday, Hong Sung-wook, a researcher at NH Investment & Securities, said that the recent slump in both Bitcoin and Strategy stock may weigh on shareholders but does not fundamentally threaten the company’s solvency. He noted that concerns that typically emerge during Bitcoin downturns seldom reflect new underlying risks. Addressing the potential removal of Strategy from the MSCI index, pending review results expected by Jan. 15, Hong indicated that the impact would likely be limited, as the firm has already exhausted its capacity to make additional Bitcoin purchases. However, he cautioned that prolonged share price weakness could force companies to reevaluate digital asset treasury (DAT) models. Such a shift, he warned, could trigger corporate sell-offs that would burden the broader market. Hong also addressed concerns related to stablecoins and future technology. Despite S&P Global Ratings assigning Tether its lowest grade of "weak," Hong observed that the issuer maintains reserves exceeding the USDT in circulation, rendering a mass withdrawal crisis unlikely. Regarding the threat of quantum computing, he argued that the timeline remains uncertain and that the Bitcoin network could mitigate future risks through consensus-driven protocol upgrades. Policy moves may offer market tailwindsLooking ahead, the analyst identified several constructive developments that could bolster the market, including the potential passage of a U.S. crypto market structure bill early next year. He also pointed to the anticipated nomination of Kevin Hassett as Federal Reserve Chair by President Trump. Hassett is expected to favor interest rate cuts, creating a potentially favorable macro environment. Additionally, Vanguard’s decision to permit the trading of select third-party crypto ETFs and mutual funds was cited as significant, given the asset manager’s historically conservative stance on digital assets. While the market has shifted into a broader risk-off mode, institutional demand for Bitcoin has continued to build, including activity that began well before the recent pullback. The Czech central bank recently established a $1 million test portfolio comprising Bitcoin, a USD stablecoin, and a tokenized deposit to research payment futures, though it clarified that it does not currently plan to add digital assets to its international reserves. In the academic sector, a Form 13F filing with the U.S. SEC revealed that Harvard Management Company, which oversees a $56.9 billion endowment, held 6.8 million shares of BlackRock’s iShares Bitcoin Trust ETF (IBIT) as of Sept. 30, a threefold increase from the previous quarter. Furthermore, BlackRock CEO Larry Fink reportedly stated at the New York Times DealBook Summit 2025 that multiple sovereign wealth funds have begun accumulating Bitcoin, according to Forbes. Korean banks advance crypto integrationThis shift toward institutional acceptance is also materializing within South Korea’s traditionally conservative banking sector. The Maeil Business Newspaper reported that Woori Bank recently became the first major South Korean lender to display real-time Bitcoin prices on its trading floor, allowing dealers to track the asset alongside equities and foreign exchange rates. Concurrently, Hana Financial Group announced a partnership with Dunamu, the operator of the Upbit exchange, to develop blockchain-based remittance services, according to The Korea Economic Daily. By leveraging Hana’s global network and Dunamu’s technology, the initiative aims to reduce settlement times and costs for cross-border payments. Hana intends to introduce the technology for transactions between its Korean offices and overseas branches as early as the first quarter of next year, with broader expansion planned as domestic regulations evolve. Hana intends to launch the service at overseas branches as early as the first quarter of next year, with gradual expansion planned as domestic regulations evolve. 

news
Policy & Regulation·

Nov 02, 2023

Taiwan police uncover $320M crypto money laundering operation

Taiwan police uncover $320M crypto money laundering operationTaiwan police have recently exposed the largest cryptocurrency money laundering case in the nation’s history, involving 320 million USDT (approximately 10.5 billion New Taiwan dollars).Photo by DrawKit Illustrations on UnsplashCross-border laundering operationIt emerged on Tuesday that the Electronic Investigation Team of the Criminal Bureau initiated their probe after uncovering a fraudulent scheme related to a counterfeit Taishin Securities mobile software last year. This led them to a merchant with the surname Qiu, the alleged mastermind behind this operation who was suspected of laundering substantial sums through virtual currency.Qiu is believed to have maintained connections with overseas gambling and fraud groups, engaging in cross-border communication with illicit organizations in countries including Hong Kong, Malaysia and the Philippines.Their investigation revealed that Qiu had been conducting transactions involving 320 million Tether US dollar stablecoins since February of the previous year. In June, law enforcement apprehended Qiu during one of his visits to Taiwan, along with four alleged accomplices.High value goodsDuring the operation, authorities seized high-value assets from Qiu, including a Lamborghini Urus, a Lexus LM and three Audemars Piguet watches, with a combined market value exceeding TWD 13 million. The lavish lifestyle maintained by Qiu, evident from his luxury cars and high-end watches, serves as a stark reminder of the extensive underground economy driven by money laundering.Evidence from the operation suggested Qiu’s involvement in handling illicitly obtained Tether coins worth approximately TWD 70 million. Further investigations uncovered that Qiu regularly sold virtual currency and converted it into cash to effectively obscure the money’s origins, accomplishing the goal of laundering.In piecing the activities of the group together, police determined that victims were instructed to transfer their funds to fictitious accounts. In that way, the money found its way to crypto exchanges and individual crypto traders under the direction and control of the group.Qiu would also retain a 1% profit margin from the laundered amount. Several other individuals were implicated in this extensive operation, including a foreign affairs officer named Liao and two other individuals named Chen and Huang. Each of these individuals is presently under investigation, with varying levels of bail and restrictions imposed.The intricate web of transactions and the substantial amount laundered by Qiu have surpassed previous records held by the Electronic Investigation Team. As investigations continue, law enforcement is determined to uncover the full extent of this operation and trace the entirety of the money flow.Taiwan’s legislators are currently working on producing a regulatory framework for crypto in the country. The only regulatory aspect that is covered right now is oversight relative to anti-money laundering (AML) and know-your-customer (KYC) regulation. In 2018 Yang Chin-long, Taiwan’s central bank Governor, called for a need to regulate crypto on the basis of existing AML rules, with the authorities subsequently following through on that measure.In July 2022, the country’s Financial Supervisory Commission (FSC) penned a letter to the banking sector, banning the purchase of digital assets via credit cards.

news
Web3 & Enterprise·

Jun 27, 2023

3AC Liquidators Pursue $1.3 Billion from Founders

3AC Liquidators Pursue $1.3 Billion from FoundersLiquidators appointed for Three Arrows Capital (3AC), the failed Singaporean cryptocurrency hedge fund, are seeking to recover $1.3 billion from the fund’s co-founders.That’s according to an unidentified source cited by Bloomberg in a report published on Tuesday. The requested amount represents losses incurred by the founders during the months leading up to the firm’s collapse, according to a source familiar with the liquidators’ claims.Photo by Giorgio Trovato on UnsplashLiability allegationsDuring a meeting with the hedge fund’s creditors on Tuesday, the liquidators discussed the allegations against Three Arrows co-founders Su Zhu and Kyle Davies. The co-founders are accused of causing the hedge fund to accumulate significant leverage between May and June 2022, despite already suffering substantial losses from ill-fated Luna tokens and other investments.The liquidators argue that the firm was insolvent at that time. Consequently, they have taken legal action against Zhu and Davies in a British Virgin Islands court to recover the losses on behalf of the fund’s creditors.Lawyers representing Zhu and Davies have not yet responded to requests for comment. However, in a Twitter post last June, Zhu mentioned that their attempts to cooperate with the liquidators were met with resistance.Crypto failure catalystThe failure of Three Arrows Capital coincided with a downturn in the digital currency market, impacting platforms that had exposure to the hedge fund, including crypto lenders BlockFi and Voyager Digital. These platforms subsequently filed for bankruptcy in the weeks following the liquidation of the hedge fund.The liquidators’ allegations against the co-founders represent an escalation of actions taken against Zhu and Davies, whom they have accused of non-cooperation during the investigation. The liquidators, who are partners at the consulting and advisory firm Teneo, were appointed by a British Virgin Islands court last year to recover funds for Three Arrows Capital’s creditors, who are collectively owed approximately $3.3 billion.Earlier this month, the liquidators urged a New York bankruptcy judge to impose a daily fine of $10,000 on Davies. They argue that this substantial fine is warranted because he has failed to respond to a subpoena requesting business records and other relevant information.While the liquidators do not currently know the whereabouts of Davies or Zhu, court documents from earlier this month referenced a New York Times article reporting that Davies had traveled to Bali after the collapse of Three Arrows Capital.Restraining orderIn May Zhu had secured a restraining order against BitMEX Co-Founder Arthur Hayes in a Singaporean court. Hayes believes that he is owed $6 million by the 3AC co-founders. Despite significant adverse publicity within the crypto space, the 3AC co-founders have proceeded to do business within the industry.They’ve established a crypto claims trading platform, OPNX, and alongside that Dubai-based business, they’ve also established a new venture capital fund, 3AC Ventures.The Dubai regulator, the Virtual Assets Regulatory Authority (VARA), has reprimanded OPNX and the business's founders for operating an unregistered digital assets business within the territory.

news
Loading