Top

Singaporean authorities alert businesses to Bitcoin ransomware risk

Policy & Regulation·June 11, 2024, 6:07 AM

Akira ransomware, responsible for stealing $42 million from over 250 organizations across North America, Europe and Australia in just a year, is now targeting businesses in Singapore. In response, Singaporean authorities have issued a joint advisory warning local businesses about the increasing threat posed by a variant of this ransomware.

https://asset.coinness.com/en/news/2a60ac3f2278d1ab842181ec0c178bfb.webp
Photo by Mike Enerio on Unsplash

Alert follows complaints

The alert follows multiple complaints from victims, prompting agencies like the Cyber Security Agency of Singapore (CSA), the Singapore Police Force (SPF) and the Personal Data Protection Commission (PDPC) to take action. These agencies emphasize the urgency of recognizing and combating this threat.

 

How Akira operates

Akira affiliates employ various techniques to infiltrate a victim's network. These include exploiting known vulernabilities. For example, that could mean the targeting of services like Cisco virtual private networks (VPNs) that have been configured without multi-factor authentication (MFA).

 

Another approach that the ransomware incorporates is attacking external-facing services such as the Remote Desktop Protocol (RDP) via brute force. Social engineering is another tool within its repertoire. This involves tricking victims into downloading malicious software or entering credentials on phishing websites.

 

There is a marketplace for compromised credentials in the dark web. Akira also relies on such data, acquiring it from access brokers who sell network access. 

 

Once inside a network, Akira affiliates often create new domain accounts to maintain persistent access, even after reboots. They use numerous tools to steal user credentials, escalate privileges and spread throughout the network.

 

Detection and prevention measures

The Singaporean advisory outlines several strategies for detecting, deterring and neutralizing Akira attacks. Authorities strongly advise against paying ransoms, on the basis that doing so does not guarantee data recovery or prevent future attacks.

 

Authorities also warn that paying ransoms can encourage further attacks. The FBI has noted that Akira operators do not contact victims. Instead, they expect victims to initiate contact.

 

Payment in Bitcoin

The advisory outlines how Bitcoin is implicated in the ransomware scam. It states:

”Ransom payments are requested in Bitcoin, which are directed to cryptocurrency wallet addresses specified by the affiliates. The TOR site (.onion) where victims contact the affiliates, contains stolen information and a list of the affected organisations.”

 

It’s not the first time that Singaporean authorities have issued warnings that have implicated Bitcoin and crypto. In January, the CSA and SPF, in a joint advisory, suggested that people should use hardware wallets in an effort to guard against crypto-related malware and phishing attacks.

 

A number of weeks prior to that, Singapore’s former Prime Minister, Lee Hsien Loong, took to Facebook to issue a warning with regard to a crypto scam that involved the use of deceptive content generated using artificial intelligence (AI).

 

Mitigation techniques

Businesses are being urged by the authorities to adopt best practices to mitigate the Akira ransomware threat. They suggest the implementation of a recovery plan alongside the use of multi-factor authentication (MFA) in order to secure data and the access to that data. 

 

They also suggest filtering network traffic as it helps in identifying and blocking malicious activities. Meanwhile, disabling unused ports and hyperlinks curbs the risk further as it reduces the attack surface. Lastly, the authorities suggested the use of system-wide encryption to protect data even if it is accessed by unauthorized entities.

More to Read
View All
Markets·

Dec 21, 2023

Bitcoin layer-2 project Elastos sees ELA token surge

Bitcoin layer-2 project Elastos sees ELA token surgeSingaporean blockchain developer Elastos has unveiled its BeL2 layer-2 network set to run on top of the Bitcoin blockchain, eventually prompting a token price surge.50% increaseThe project aims to address challenges such as transaction volume limitations and the complexity of programmable contracts within the Bitcoin ecosystem. Despite the initial muted response from the crypto community after the late November announcement, Elastos’ native token, ELA, has experienced an extraordinary surge on Wednesday. Over the course of the past 24 hours, the token’s unit price has jumped from $2.06 to $3.09. That represents a 50% increase.Photo by Kanchanara on UnsplashBringing smart contracts to BitcoinOn Dec. 2, the project released its BeL2 whitepaper, describing it as “a transformative approach to enhancing Bitcoin’s functionality.” BeL2 has the potential to bring about significant advancements by leveraging SmartWeb technology to introduce staking solutions and incorporate zero-knowledge proof technology.A zk proof is a cryptographic method through which one party can prove to another party that a particular statement is true, all the while avoiding the leakage of any additional information aside from confirming the statement is true. Up until now, zk proofs have been largely the preserve of Ethereum-centric projects.Alongside zk proofs, BeL2 will utilize Bitcoin-powered Ethereum Virtual Machine (EVM) smart contracts. This approach is expected to expedite transactions within the network and introduce governance through a decentralized model.BeL2 roadmapThe roadmap for BeL2 includes a three-month development phase for a proof-of-concept, followed by an additional three months dedicated to the decentralization of relayers. These relayers, acting as third-party services facilitating communication and data transactions between different blockchain networks, play a crucial role in the overall implementation of BeL2.Elastos envisions BeL2 as a Layer 2 network built on Bitcoin, introducing sophisticated BTC transactions on its blockchain. Beyond staking, the network aims to provide direct yield and affordable transactions on native decentralized applications. The move marks a significant shift, allowing Bitcoin holders to stake their assets directly, unlocking potential value exceeding $700 billion.Looking ahead, Elastos plans to chart the decentralized finance (DeFi) course on BTC by enabling smart contract deployment and irreversible digital agreements between participants.As interest in Bitcoin continues to rise, driven by innovations like inscriptions and spot ETF discussions in the United States, Elastos’ BeL2 initiative is garnering greater attention, relative to the potential to usher in a new era of possibilities for the world’s most popular digital currency.The project was founded in 2017 by Rong Chen, a former senior software engineer at Microsoft. Taking to the X social media platform earlier this month, Chen wrote:“I don’t see any other paths to the final #Web3 destination except:(1) A #BTC merge mining blockchain, plus smart-contract sidechains as needed;(2) A #SmartWeb operating system (OS) to facilitate personal node to own data, plus personal-node to personal-node direct communication links;(3) Personal Cloud Compute (#PC2) Runtime sandbox, so individuals are on the same footing as big brothers;(4) Digital goods software-development-kits (embedded OS #SDKs), entrusting your data to nobody else but yourself, i.e., your own code to check access tickets/tokens before loading and rendering data.”The Elastos ecosystem employs three-layer consensus mechanisms: auxiliary proof-of-work, proof-of-integrity and bonded proof-of-stake. It’s hoped that the project can improve upon the original layer-2 solution for Bitcoin, the Lightning Network, which has had issues in terms of scalability and centralization risk.

news
Policy & Regulation·

Oct 06, 2023

Hong Kong Authorities Unite to Form Crypto-Centric Taskforce

Hong Kong Authorities Unite to Form Crypto-Centric TaskforceAuthorities in Hong Kong are taking action to address recent mounting concerns surrounding illicit cryptocurrency activities, particularly in light of the recent JPEX scandal. The Hong Kong Police Force and the Securities and Futures Commission (SFC) have come together to establish a specialized working group dedicated to closely monitoring and countering suspicious activities connected to virtual asset trading platforms (VATPs).In a statement published by Hong Kong’s Securities and Futures Commission (SFC) on Wednesday (local time), the agency set out details of a collaborative task force which has been formed in the wake of a high-level meeting held on September 28.The collaboration draws on input from the SFC as well as a number of law enforcement divisions within the Chinese autonomous territory, including the Commercial Crime Bureau, Cyber Security and Technology Crime Bureau, and Financial Intelligence and Investigations Bureau.Photo by Cheung Yin on UnsplashGreater coordination and information sharingThe primary objectives of this alliance are to enhance coordination, foster information sharing, assess risks tied to VATPs, and, above all, safeguard the interests of the Hong Kong public.Christopher Wilson, Director of Enforcement at the SFC, underscored the regulator’s commitment to allocating resources to combat problematic VATPs and safeguard investor interests. Eve Chung, Assistant Commissioner of Police (Crime) at the Hong Kong Police Force, emphasized the significance of intelligence exchange and collaborative efforts in responding to the challenges posed by VATPs to protect the Hong Kong public.Knee jerk response to JPEX scandalIt would appear that the necessity for such a concerted effort became patently clear as a direct response to the errant activities of Dubai-based crypto platform JPEX within Hong Kong.Issues with the exchange first emerged in September when the platform outlined that it was having liquidity issues as a consequence of some third party market makers having withdrawn their services. JPEX subsequently raised withdrawal fees to an unreasonable level to deter customers from withdrawing funds from the platform.The saga has affected over 1,600 investors with more than $150 million in assets becoming unavailable to them. The case resulted in the arrest of at least 20 individuals, with local telecom providers blocking online access to the platform as requested by law enforcement.Earlier, on September 13, the SFC had issued a warning accusing JPEX and crypto influencers of disseminating false or misleading information on social media about their application for a virtual asset trading license in Hong Kong.The ongoing JPEX controversy has prompted regulators in Hong Kong to explore measures to strengthen regulations governing the cryptocurrency market. The establishment of the task force signifies a proactive stance to address these concerns and ensure swift, effective action against illicit activities in the crypto sector.In addition to the joint task force, the SFC has taken steps to enhance transparency by publishing a comprehensive list that includes licensed, deemed licensed, closing down, and application-pending crypto exchanges, along with a list of “suspicious VATPs.” This transparency initiative aims to provide clarity and protect investors by offering insights into legitimate and questionable cryptocurrency trading platforms operating in Hong Kong.

news
Web3 & Enterprise·

Sep 04, 2023

Ethereum Co-Founder Highlights User-Friendly Crypto Wallets at Ethcon Korea 2023

Ethereum Co-Founder Highlights User-Friendly Crypto Wallets at Ethcon Korea 2023Ethereum co-founder Vitalik Buterin delivered a keynote speech last Friday at Ethcon Korea 2023 — a hackathon and conference sponsored by Ethereum for the Korean Ethereum community in Seongsu-dong, Seoul — where he emphasized the importance of making crypto wallets user-friendly by striking a balance between user familiarity and decentralization.Photo by Nenad Novaković on UnsplashEnhancing security and convenienceParticipating in the event via video call, Buterin explained Ethereum’s ERC-4337 account abstraction upgrade during his speech, which was livestreamed on the Ethcon Korea YouTube channel. “The goal of account abstraction — a field that many wallets are currently working on developing — can be broadly categorized into two areas: security and convenience,” he said.Deployed on the Ethereum mainnet in March, the ERC-4337 is a standard that makes it possible to transact and create contracts in a single contract account, paving the way for more user-friendly crypto wallet designs. At its core are features such as easy account recovery, improved security, and customized services like auto-pay and bundled transactions. This provides a more convenient alternative to other crypto wallets, which mostly rely on private keys for account access, complicating setup and recovery procedures especially if a user loses their seed phrase.“Wallets must fundamentally be secure in a decentralized way, but there should also be ways to recover passwords as hardware wallets do,” Buterin stated. “However, many projects still rely on methods such as account recovery via email.”Simplifying transactionsAnother change introduced through the update is gas flexibility. Gas is a fundamental fee that users must pay to conduct transactions or execute a contract on Ethereum. Wallets backed by ERC-4337 can pay gas fees with any Ethereum utility tokens and more, including USD coins (USDC).From a convenience standpoint, Vitalik argued, it is very useful for first-time Ethereum users to be able to pay for gas with the USDC they already have. Sponsored transactions, where applications pay for fees, will be a great way to attract new users, especially for non-financial applications.He further elaborated that in order to transition from being user-friendly but centralized to more decentralized, a combination of a faster but precarious centralized approach with a slower but safer decentralized approach is required.He also stressed the importance of utilizing the various options available in modern technology concerning convenience, security, and decentralization, saying that it is essential to utilize these options effectively, continuously improve them, and take advantage of the benefits.Since 2019, Buterin has used Ethcon as a platform to announce Ethereum’s development roadmap and major technical updates.

news
Loading