[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Mail]  [Sign-in]  [Setup]  [Help]  [Register] 

‘I am the chosen one’

The Process of Damockrisy

Portrait of a Politician

If “Emissions” Actually Mattered . . .

Happy Birthday, Ron

Law Enforcement To Flag & Spy On "Future" Criminals

Joe Biden's brain surgeon is defending Joe Biden's brain

Seth Rich Murder Update: FBI Claims They Didn’t Investigate but NSA Claims Can’t Disclose Files Due to Matter of National Security

Bartow sheriff's deputy fired, fiancee arrested over confrontation

LAPD Shoots Unarmed Homeless Man over Noise Complaint from Neighbor

Siege at Ruby Ridge: The Forgotten History of the ATF Shootout That Started a Militia Movement

Republican Palestinian-American is sole vote against anti-Semitism monitor

Oberlin College is a microcosm of our society ... The governing class assumes we must be motivated by racism - white supremacy - sexism - patriarchy - Naziism - fascism - etc - etc - etc - by all things bad.

Just A Few Points To Ponder

Planned Parenthood abandons Title X federal funds after Trump rule prohibits abortion referrals

Antidepressants AGAIN: Dayton shooter found to have mind-altering SSRI drugs in his system

HOTCARS Are Coming

NYPD Cop Danny Pantaleo Fired over Eric Garner's Death; Loses Retirement Pension

'I'm not happy with it': Trump hits Fox News over poll results

Psychedelic Drugs Are Finally Being Used to Treat Depression in US Hospitals

Wilsonville woman in custody battle over daughter with cancer - for successfully treating her cancer with CBD Oil

Rep. Pete King is the first Republican to sign on to the assault weapons ban

Trump's Farm Bailout Flows To "City Slickers," a D.C. Lobbyist and ‘Farms’ on Golf Courses

A New Mexico Man Accused A Deputy Of ‘Gestapo’-Like Training. Then He Was Arrested.

Bernie Sanders Calls For Legalization Of Marijuana And Safe Injection Sites

The Southern Poverty Law Center is a hate-based scam that nearly caused me to be murdered

Activist Post Applies For NewsGuard’s Coveted “Conspiracy” Blacklist

Cherish Your Privacy? New Anti-Surveillance Clothes Trick Cameras by Making You Look Like a Car

Only 29 Percent Of Americans Believe Jeffrey Epstein Committed Suicide

"Foreign Policy" Goes Into Propaganda Overdrive: 'White Supremacists Want A Nuclear Weapon'

Worse Than Ever: Government Schools After 35 Years

Release of official autopsy showing broken bones in Jeffrey Epstein’s neck is all the proof we need that he’s still ALIVE… here’s why

Cokey Roberts on Meet The Press defines gun control

Flat-Earther’s homemade rocket is set to launch him from California desert

Iraq Closes Airspace Even To US Coalition Flights After Suspected Israeli Raid

The Consequences of the Intended

Joe Kennedy-for-Senate backers mount drive to drum out Ed Markey

U.S. News posted this week (11-17 Aug 2019) in Review

De'Von Bailey was running from police, shot four times, video shows

Attorney General William Barr Declares War On The General Public

Tinton Falls cops held father and daughter at gunpoint, shot their dogs: Lawsuit

'Friends, you're going to love Greenland. I was there on 9/11'

‘Easy Rider’ Peter Fonda dead at 79: ‘Please raise a glass to freedom’

The Lee Harvey Oswalding of Epstein

Hut! Hut! Hutted! For Wheelies on Bicycles

“That’s fine for you to say - but you don’t know ... what corporate America is like” --- “It’s like East Germany now.”

What good is the FBI and DOJ?

Alarm as Trump Requests Permanent Reauthorization of NSA Mass Spying Program Exposed by Snowden

50-YR OLD HAITI OFFICIAL, Slated To Testify Against Clinton Foundation Corruption Next Week, Found DEAD In Miami With “Gunshot to the head”

Mrs. Buttigag Reportedly Helped Create Phone System To Alert Illegal Aliens About ICE Raids


Status: Not Logged In; Sign In

Satans Mark/Cashless
See other Satans Mark/Cashless Articles

Title: Round-Up of Crypto Exchange Hacks So Far in 2019 — How Can They Be Stopped?
Source: [None]
URL Source: https://cointelegraph.com/news/roun ... -in-2019-how-can-it-be-stopped
Published: Jul 19, 2019
Author: Joseph Young
Post Date: 2019-07-19 05:45:10 by A K A Stone
Keywords: None
Views: 117
Comments: 3

This article was updated to reflect that Bitrue has now acknowledged the hack of its platform.

Throughout the past six months, seven crypto exchanges have reportedly seen large-scale hacking attacks to the tune of tens of millions of dollars, with the most recent platform to suffer a security breach being GateHub.

As the global crypto exchange market continues to see an increasing number of security breaches leading to the loss of user funds, investors may become reluctant to rely on centralized exchanges to store funds.

Bitrue hack The month of June was characterized by two unfortunate cryptocurrency thefts. On June 26, Singapore-based cryptocurrency exchange Bitrue has acknowledged the fact that it suffered a major attack in which 9.3 million XRP and 2.5 million ADA worth around $5 million at the time were stolen from the exchange’s hot wallets. The statement read:

“A hacker exploited a vulnerability in our Risk Control team's 2nd review process to access the personal funds of about 90 Bitrue users.”

The exchange also clarified in the thread that all users who lost their digital assets will be compensated, while also apologizing for initially misleading their users by saying that the platform was down for maintenance. Bitrue also provided a link to track the movement of the stolen funds and also acknowledged that it reached out to Singaporean authorities in order to track down the culprits.

GateHub — 18,473 accounts affected As reported by Cointelegraph on June 6, the United Kingdom and Slovenia- based crypto exchange GateHub reported the loss of nearly $10 million worth of XRP.

In an update published on June 7, the GateHub team noted that an unidentified hacker used a sophisticated method to gain access to a database holding users’ access tokens and steal their funds. In the aftermath, GateHub said:

“Through a well-orchestrated attack, the perpetrator gained access to a database holding valid access tokens of our customers. We detected an increased volume of API calls (using these valid access tokens) coming from a small number of IP addresses.”

The exchange told its users that it will cooperate with its internal response team, law enforcement agencies, third-party professional security and forensics teams, and investigative authorities to analyze the breach and to potentially find the individual or a group responsible for the breach.

Insurance is just as important as security measures Over the years, despite the efforts of exchanges to ramp up security measures and improve internal management systems, hackers have been able to deploy more sophisticated and advanced technologies to gain unauthorized access into corporate wallets and user accounts.

In some instances, as seen in the case of Binance’s $40 million security breach, it is difficult even for the biggest crypto exchanges in the world — with in-house security experts — to prevent unexpected breaches.

However, it is possible for exchanges to set up systems that allow for the speedy recovery of user funds.

Related reading: The Cryptopia Nightmare Drags on as Liquidators Struggle to Reimburse Hacked Users

Binance, for instance, established the Secure Asset Fund for Users (SAFU) in July 2018 to compensate users in the unlikely event of a hacking attack. Binance said in July 2018:

“Starting from 2018/07/14, we will allocate 10% of all trading fees received into SAFU to offer protection to our users and their funds in extreme cases. This fund will be stored in a separate cold wallet.”

Two types of wallets exist in crypto: hot wallets and cold wallets. Hot wallets are wallets that are connected to the internet and that are easily accessible. Cold wallets are wallets stored offline and are used by major exchanges to securely store reserves of cryptocurrencies like bitcoin.

Cold wallets cannot be hacked because they are not connected to the internet — and as such, exchanges hold the overwhelming majority of their reserves in cold wallets.

Still, despite having advanced security measures in place, hot wallets can be vulnerable to attacks, so it is ideal for an exchange to establish an insurance fund that is equivalent to the amount held in its hot wallet to prevent a security breach in the future affecting the exchange’s operations.

Such a practice does not prevent an exchange from suffering a hacking attack, but it minimizes the magnitude of an incident's impact on the exchange and facilitates the recovery process to be more structured and apparent.

The largest crypto exchanges in the global market — the likes of Binance, Coinbase and Gemini — have either obtained insurance from third-party service providers or have internal insurance funds in place to compensate users, should an unexpected incident arise.

Coinbase, for example, notes that it maintains a reserve that is larger than its online storage with third-party insurance. The insurance document of Coinbase reads:

“Coinbase maintains commercial criminal insurance in an aggregate amount that is greater than the value of digital currency we maintain in online storage. Our insurance policy is made available through a combination of third-party insurance underwriters and Coinbase, who is a co-insurer under the policy.”

Gemini obtained the insurance services of Aon and the Federal Deposit Insurance Corporation in October 2018, and Yusuf Hussain, Gemini’s head of risk, said at the time:

“Consumers are looking for the same levels of insured protection they’re used to being afforded by traditional financial institutions. Educating our insurers not only allows us to provide such protections to our customers, but it also sets the expectation for consumer protection across the crypto industry.”

Communication between exchanges is crucial Since hot wallets or online storage can become vulnerable to security breaches, it is of the utmost importance for exchanges to establish a line of communication with other platforms to trace and potentially freeze transactions when suspicious funds begin to move.

According to the GateHub team, some of the funds stolen in the $10 million security breach were sent to exchanges such as Kucoin, Huobi and HitBTC, all of which have Know Your Customer (KYC) policies in place. GateHub acknowledged this fact:

“The funds were sent to several exchanges, including Freewallet.org, Changelly, Changenow, Kucoin, Huobi, Exmo, Hitbtc, Binance, Alfacashier and others. We have already contacted each recipient exchange with the aim to freeze and retrieve all customer assets.”

If exchanges have an efficient system to communicate when unforeseen events occur, it becomes possible for them to immediately suspend wallets that received the proceeds from a potential hacking attack and swiftly begin recovering funds.

In January 2018, South Korea’s four largest crypto exchanges — Bithumb, Upbit, Coinone and Korbit — created a hotline for major exchanges to ensure suspicious transactions could be detected and frozen immediately after being disclosed.

Transactions on public blockchain networks like Bitcoin and Ethereum are traceable due to the decentralized structure of the blockchain. Major exchanges are already working with analytics firms such as Chainalysis to maintain a database of suspicious transactions and wallets.

The presence of a hotline among major crypto exchanges in the global market would create a significantly more impractical ecosystem for hackers to distribute proceeds from an attack to various exchanges.

Why systems must improve In previous years, most crypto-related hacking attacks were suffered by minor exchanges that typically could not afford to have an in-house security team and advanced measures in place.

However, in the past six months, major crypto exchanges such as Binance, Bithumb and Coinmama have all fallen victim to security breaches, all of which have well over hundreds of thousands of users.

Bithumb, which is considered to be one of the two biggest crypto exchanges in South Korea (alongside UPbit), was hacked in March for the third time in two years, in what the exchange suspects to be an insider job.

The Bithumb team said:

“According to the company's manual, Bithumb secured all the cryptocurrency from the detection time with a cold wallet and checked them by blocking deposit and withdrawal service. As a result of the internal inspection, it is judged that the incident is an ‘accident involving insiders’. Based on the facts, we are conducting intensive investigations with KISA, Cyber Police Agency and security companies.”

Last year, cybersecurity company Group-IB reported that seven crypto exchanges were hacked in 2018, with the largest breach suffered by Coincheck leading to the loss of a staggering $534 million worth in crypto.


Poster Comment:

Notice to the suckers out there. It will never be secure and will always be hackable. Just like a virus on a PC. I'm surprised people are so dumb and can't see this as a scam to destroy nations.

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

#1. To: A K A Stone (#0)

You didn't read your own article. It is about how bitcoin holders are getting reimbursed after being hacked, how the exchanges are building reserves to cover reimbursement for fraud and how the exchanges are starting to use third-party underwriters to provide insured accounts. And how the exchange reserves are being held in offline "cold wallets" that can't be accessed electronically and so are safe.

Tooconservative  posted on  2019-07-19   7:41:30 ET  Reply   Trace   Private Reply  


#2. To: Tooconservative (#1)

I read the article. They got hacked. Sure they got reimbursed this time.

A K A Stone  posted on  2019-07-19   7:53:51 ET  Reply   Trace   Private Reply  


#3. To: A K A Stone (#2)

There are a lot more elderly people getting hacked via their bank accounts than there are of people losing money to cryptocurrency hacking.

Crypto is already much bigger than you imagine. Look at some of the Dark Web marketplaces sometime. (Use a good VPN and Tor, preferably in a virtual machine, or you're likely to be attacked/hacked.) You'll also see services there to launder bitcoin to avoid having your transactions traced via the global bitcoin ledger.

Tooconservative  posted on  2019-07-19   8:32:45 ET  Reply   Trace   Private Reply  


TopPage UpFull ThreadPage DownBottom/Latest

[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Mail]  [Sign-in]  [Setup]  [Help]  [Register] 

Please report web page problems, questions and comments to webmaster@libertysflame.com