CoinStats hack caused by ‘socially engineered’ employee, CEO suspects

cyptouser3 months agoCryptocurrencies News93
55966e89>

The recent hack of 1,590 CoinStats crypto wallets was carried out by compromising a CoinStats employee.

On June 22, the cryptocurrency portfolio manager CoinStats temporarily suspended its services after discovering an active attack on its wallets. A swift and proactive response limited the hacker's access to only 1.3% of all CoinStats wallets, resulting in a loss of $2 million.

Source: Narek Gevorgyan

Five days later, on June 26, Narek Gevorgyan, CEO of CoinStats, revealed the findings of an internal investigation:

“Our AWS infrastructure was hacked, with strong evidence suggesting it was done through one of our employees who was socially engineered into downloading malicious software onto his work computer.”

Social engineering is a widely-used tactic used by hackers to manipulate, influence or deceive a victim in order to gain control over a computer system.

CoinStats shut down its website while it resolves the security issue. Source: CoinStats

While Gevorgyan’s message did not explicitly promise refunds for all victims, the company plans to provide a detailed plan of action after conducting a thorough post-mortem analysis of the situation.

“I empathize with those who lost money; I’m sure their situation is just as difficult. CoinStats will definitely support the victims of the hack, and we’ve been discussing options internally.”

Some community members have reported even greater losses due to the breach. For instance, a wallet owned by Blurr.eth allegedly lost 3,657 Maker (MKR), valued at approximately $8.7 million.

Source: Wu Blockchain

However, the company has yet to acknowledge the claims.

Related: 1,590 CoinStats crypto wallets ‘affected’ in security breach

Security breaches have become a rising concern among crypto service providers. On June 5, cryptocurrency data aggregator CoinGecko suffered a data breach via its third-party email management platform GetResponse.

Similar to the CoinStats hack, the security breach at CoinGecko occurred due to a compromised employee account, according to the company’s June 7 announcement:

“An attacker had compromised a GetResponse employee’s account, leading to a breach. We received confirmation from the GetResponse team on 6 June 2024, at 11:58 AM UTC, that a data breach had occurred.”

The compromised data include users’ names, email addresses, IP addresses, location of email opens and other metadata such as sign-up dates and subscription plans.

Magazine: Polkadot’s Indy 500 driver Conor Daly: ‘My dad holds DOT, how mad is that?’

The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other issues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.

related articles

Hacker drains $19.5 million from UwU Lend in price oracle exploit

Blockchain security firm Cyvers Alert reported a significant exploit on the DeFi lending protocol Uw...

ICP’s Schnorr integration ushers in Bitcoin DeFi era

1205f261˃The Internet Computer Protocol (ICP) plans to use advanced threshold cryptography to unlock...

Over 80% recent Binance token listings are bleeding red

Over 80% recent Binance token listings are bleeding red

55966e89˃Over 80% of the newly listed cryptocurrencies are in the red on Binance, the world’s larges...

UK watchdog worries about tech giants’ AI market control

UK watchdog worries about tech giants’ AI market control

1205f261˃The Competition and Markets Authority (CMA) in the United Kingdom has expressed concerns ov...

Bitcoin ‘no longer cheap’ — Fidelity revises medium-term outlook for BTC

Bitcoin ‘no longer cheap’ — Fidelity revises medium-term outlook for BTC

1205f261˃Fidelity Digital Assets has revised its medium-term outlook for Bitcoin (BTC) from “positiv...

Hong Kong spot Bitcoin and Ether ETFs struggle to gain traction

Hong Kong spot Bitcoin and Ether ETFs struggle to gain traction

55966e89˃Hong Kong’s spot Bitcoin exchange-traded funds (ETFs) are far underperforming their United...