hack – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Fri, 05 Sep 2025 11:50:40 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 hack – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Venus Protocol Reclaims $13.5 Million After Zoom-Based Wallet Hack https://earlybirdsinvest.com/venus-protocol-reclaims-13-5-million-after-zoom-based-wallet-hack/ https://earlybirdsinvest.com/venus-protocol-reclaims-13-5-million-after-zoom-based-wallet-hack/#respond Fri, 05 Sep 2025 11:50:40 +0000 https://earlybirdsinvest.com/venus-protocol-reclaims-13-5-million-after-zoom-based-wallet-hack/

On September 4, Venus Protocol successfully returned $13.5 million in cryptocurrency to a user whose wallet had been compromised in a phishing scheme linked to North Korea’s Lazarus Group.

The attack took place on September 2 and involved the use of a tampered Zoom application. After the victim unknowingly installed it, they were tricked into handing over control of their wallet.

After the transactions began, two of Venus Protocol’s security partners, Hypernative and HExagate, flagged the unusual activity. Their early warning allowed the platform to temporarily pause operations.

What is SushiSwap? DEX & Sushi Token Animated Explainer

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

Venus Protocol then checked its systems to make sure the issue did not come from within. The investigation confirmed that neither the protocol’s smart contracts nor its user interface had been altered or compromised.

To recover the stolen funds, Venus Protocol held an emergency governance vote. The outcome approved a forced liquidation of the attacker’s wallet. This action allowed the platform to seize the stolen tokens and move them to a secure recovery wallet.

According to Venus, the full recovery, from detecting the suspicious behavior to transferring the funds, was completed in under 12 hours.

Kuan Sun, the victim of the phishing attack, later thanked the teams involved and said the outcome was a win in a situation that could have ended much worse.

On September 3, World Liberty Financial (WLFI) blacklisted compromised wallet addresses before its token launch. How? Read the full story.


]]>
https://earlybirdsinvest.com/venus-protocol-reclaims-13-5-million-after-zoom-based-wallet-hack/feed/ 0 56877
Instagram Hack Fuels Chaos for Kanye West’s YZY Meme Coin Launch https://earlybirdsinvest.com/instagram-hack-fuels-chaos-for-kanye-wests-yzy-meme-coin-launch/ https://earlybirdsinvest.com/instagram-hack-fuels-chaos-for-kanye-wests-yzy-meme-coin-launch/#respond Thu, 28 Aug 2025 07:37:05 +0000 https://earlybirdsinvest.com/instagram-hack-fuels-chaos-for-kanye-wests-yzy-meme-coin-launch/

Kanye West’s newly launched YZY meme coin on Solana
SOL


$210.10

has lost over four-fifths of its value just a week after its release.

The price drop comes as West claims his Instagram account was compromised and used to follow and promote a fake version of the token.

On August 26, West posted on X that his Instagram had been hacked. He added a link to the official YZY token’s X account and shared its correct Solana contract address, which ends in “YEEZY”.

What Does Staking Mean in Crypto? (Easily Explained!)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

At the time, his Instagram account, followed by nearly 20 million people, was only following two other accounts: one belonging to his partner Bianca Censori, and another named “yzytoken”.

The “yzytoken” profile was promoting a different version of the YZY token, which had launched on Solana’s Pump.fun platform that same day. Its bio included two contract addresses, one linked to the fake token and the other to West’s official token.

A QR code post with cryptic text (“Restart now? (y/n): ‘) == ‘y.’”) appeared on the page as well.

Just the act of Kanye’s account following the impostor page was enough to push the fake token’s market cap to around $7 million at its peak. However, that value later dropped to around $160,000.

Kanye’s Instagram account no longer followed the “yzytoken” page as of 2:18 PM ET.

Bubblemaps, a blockchain analytics company, recently reported that Hayden Davis was tied to wallets that generated around $12 million in YZY trades. How did that happen? Read the full story.


]]>
https://earlybirdsinvest.com/instagram-hack-fuels-chaos-for-kanye-wests-yzy-meme-coin-launch/feed/ 0 55498
Iranian crypto flows fall 11% on Israel conflict, Nobitex hack: TRM Labs https://earlybirdsinvest.com/iranian-crypto-flows-fall-11-on-israel-conflict-nobitex-hack-trm-labs/ https://earlybirdsinvest.com/iranian-crypto-flows-fall-11-on-israel-conflict-nobitex-hack-trm-labs/#respond Wed, 27 Aug 2025 01:30:58 +0000 https://earlybirdsinvest.com/iranian-crypto-flows-fall-11-on-israel-conflict-nobitex-hack-trm-labs/

Flows into Iranian crypto trading platforms have fallen in 2025 due to a breakdown in nuclear negotiations with Israel, a $90 million hack on Iran’s largest crypto exchange, and a major stablecoin blacklisting, says blockchain analytics firm TRM Labs.

Iranian crypto flows hit $3.7 billion between January and July, an 11% decrease compared to the same period last year, with the worst drop off coming in June and July, TRM Labs said in a report on Tuesday.

“This downturn coincided with a breakdown in nuclear negotiations, a 12-day conflict with Israel beginning June 13, and widespread power outages in Iran — driven by a combination of Israeli kinetic and cyber operations, as well as regime-initiated shutdowns.”

Iran’s crypto flows started to sharply drop in June, just after the $90 million hack on Nobitex, which handles 87% of the country’s crypto transactions. 

Many Iranians rely on US dollar stablecoins as a store of value amid skyrocketing inflation and to skirt tough sanctions on the country, which has largely cut it off from the global economy.

Nobitex hack big contributor to Iran’s crypto shake-up

Confidence in Iran-based virtual asset service providers (VASPs) deteriorated following Nobitex’s security breach, which came at the hands of pro-Israel group Predatory Sparrow on June 18 — when tensions between Iran and Israel were at their peak.

While Nobitex continues to dominate Iran crypto transaction volume, the incident disrupted liquidity, slowed transaction processing and temporarily pushed users toward alternative platforms, TRM said.

Share of crypto transaction volume among Iranian VASPs between January and July. Source: TRM Labs

Heightened Iran-Israel tensions further amplified the outflows, which surged more than 150% in the worst week and a large percentage of that volume headed to high-risk foreign exchanges with little to no Know Your Customer checks, TRM said.

Tether’s blacklisting slowed flows

Stablecoin issuer Tether also carried out its largest-ever freeze of Iranian-linked funds, blacklisting 42 crypto addresses with Tether (USDT) balances on July 2.

The incident sparked a coordinated push from Iranian exchanges, influencers and state-backed channels for users to offload their TRON-based USDT balances — Iran’s most widely used network and token — and move funds into Dai (DAI) on Polygon.

Related: UAE reportedly holds $700M in mined Bitcoin: Arkham

Many everyday Iranians continue to turn to crypto as a hedge against inflation, TRM said, highlighting Iran’s strong reliance on stablecoins.

Iran continues to use crypto for political objectives

Iran is still relying on crypto to pay for sensitive goods from Chinese chip resellers, including hardware critical for artificial intelligence, drone components, and other electrical equipment — enabling it to effectively bypass sanctions, TRM noted.

It has also used crypto to fund espionage payments with foreign operatives, the crypto analytics firm added.

However, illicit crypto transactions in Iran still only account for less than 1% of total volume.

Magazine: Bitcoin is ‘funny internet money’ during a crisis: Tezos co-founder

]]> https://earlybirdsinvest.com/iranian-crypto-flows-fall-11-on-israel-conflict-nobitex-hack-trm-labs/feed/ 0 55297 Murky Panda hackers exploit cloud trust to hack downstream customers https://earlybirdsinvest.com/murky-panda-hackers-exploit-cloud-trust-to-hack-downstream-customers/ https://earlybirdsinvest.com/murky-panda-hackers-exploit-cloud-trust-to-hack-downstream-customers/#respond Sat, 23 Aug 2025 03:02:33 +0000 https://earlybirdsinvest.com/murky-panda-hackers-exploit-cloud-trust-to-hack-downstream-customers/

Chinese hacker

A Chinese state-sponsored hacking group known as Murky Panda (Silk Typhoon) exploits trusted relationships in cloud environments to gain initial access to the networks and data of downstream customers.

Murky Panda, also known as Silk Typhoon (Microsoft) and Hafnium, is known for targeting government, technology, academic, legal, and professional services organizations in North America.

The hacking group, under its numerous names, has been linked to numerous cyberespionage campaigns, including the wave of Microsoft Exchange breaches in 2021 that utilized the ProxyLogon vulnerability. More recent attacks, include those on the U.S. Treasury’s Office of Foreign Assets Control (OFAC) and the Committee on Foreign Investment.

In March, Microsoft reported that Silk Typhoon had begun targeting remote management tools and cloud services in supply chain attacks to gain access to downstream customers’ networks.

Exploiting trusted cloud relationships

Murky Panda commonly gains initial access to corporate networks by exploiting internet-exposed devices and services, such as the CVE-2023-3519 flaw in Citrix NetScaler devices, ProxyLogin in Microsoft Exchange, and CVE-2025-0282 in Ivanti Pulse Connect VPN.

However, a new report by CrowdStrike demonstrates how the threat actors are also known to compromise cloud service providers to abuse the trust these companies have with their customers.

Because cloud providers are sometimes granted built-in administrative access to customer environments, attackers who compromise them can abuse this trust to pivot directly into downstream networks and data.

In one case, the hackers exploited zero-day vulnerabilities to break into a SaaS provider’s cloud environment. They then gained access to the provider’s application registration secret in Entra ID, which allowed them to authenticate as a service and log into downstream customer environments. Using this access, they were able to read customers’ emails and steal sensitive data.

In another attack, Murky Panda compromised a Microsoft cloud solution provider with delegated administrative privileges (DAP). By compromising an account in the Admin Agent group, the attackers gained Global Administrator rights across all downstream tenants. They then created backdoor accounts in customer environments and escalated privileges, enabling persistence and the ability to access email and application data.

CrowdStrike highlights that breaches via trusted-relationships are rare, they are less monitored than more common vectors such as credential theft. By exploiting these trust models, Murky Panda can more easily blend in with legitimate traffic and activity to maintain stealthy access for long periods.

In addition to their cloud-focused intrusions, Murky Panda also uses a variety of tools and custom malware to maintain access and evade detection.

The attackers commonly deploy the Neo-reGeorg open-source web shell and the China Chopper web shells, both widely associated with Chinese espionage actors, to establish persistence on compromised servers.

The group also has access to a custom Linux-based remote access trojan (RAT) called CloudedHope, which allows them to take control of infected devices and spread further in the network. 

Murky Panda also demonstrates strong operational security (OPSEC), including modifying timestamps and deleting logs to hinder forensic analysis.

The group is also known to use compromised small office and home office (SOHO) devices as proxy servers, allowing them to conduct attacks as if they were within a targeted country’s infrastructure. This allows their malicious traffic to blend in with normal traffic and evade detection.

Significant espionage threat

CrowdStrike warns that Murky Panda/Silk Typhoon is a sophisticated adversary with advanced skills and the ability to rapidly weaponize both zero-day and n-day vulnerabilities.

Their abuse of trusted cloud relationships poses a significant risk to organizations that utilize SaaS and cloud providers.

To defend against Murky Panda attacks, CrowdStrike recommends that organizations monitor for unusual Entra ID service principal sign-ins, enforce multi-factor authentication for cloud provider accounts, monitor Entra ID logs, and patch cloud-facing infrastructure promptly.

“MURKY PANDA poses a significant threat to government, technology, legal, and professional services entities in North America and to their suppliers with access to sensitive information,” concludes CrowdStrike.

“Organizations that rely heavily on cloud environments are innately vulnerable to trusted-relationship compromises in the cloud. China-nexus adversaries such as MURKY PANDA continue to leverage sophisticated tradecraft to facilitate their espionage operations, targeting numerous sectors globally.”

Picus Blue Report 2025

46% of environments had passwords cracked, nearly doubling from 25% last year.

Get the Picus Blue Report 2025 now for a comprehensive look at more findings on prevention, detection, and data exfiltration trends.

]]>
https://earlybirdsinvest.com/murky-panda-hackers-exploit-cloud-trust-to-hack-downstream-customers/feed/ 0 54647
WazirX Creditors Back New Plan After $234 Million Hack Setback https://earlybirdsinvest.com/wazirx-creditors-back-new-plan-after-234-million-hack-setback/ https://earlybirdsinvest.com/wazirx-creditors-back-new-plan-after-234-million-hack-setback/#respond Thu, 21 Aug 2025 05:27:03 +0000 https://earlybirdsinvest.com/wazirx-creditors-back-new-plan-after-234-million-hack-setback/

WazirX is moving forward with a new repayment plan that has received strong backing from its creditors, more than a year after a $234 million hack froze withdrawals on the exchange.

Nearly 95% of those who voted supported the proposal, even though an earlier version had been turned down by the Singapore High Court.

Between July 30 and August 6, close to 150,000 creditors cast their votes. Together, they represented more than $206 million in claims. This approval gives WazirX the chance to resubmit its plan to the court, which will decide if repayments and normal operations can restart.

What is Yield Farming in Crypto? (Animated Explanation)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

Founder Nischal Shetty stated in an August 18 blog post that, if the court approves, the exchange will reopen and begin compensating users within ten days of the scheme taking effect.

His statement offered a faster timeline than what creditors were told at a July town hall, where restructuring adviser George Gwee of Kroll estimated payouts would take two to three months after approval.

The updated plan also shifts responsibility for handling repayments. While profits from WazirX will still fund the repurchase of recovery tokens, the actual distribution will be carried out through Zanmai India, which reports under India’s Financial Intelligence Unit.

WazirX has warned that, without a creditor-backed deal, the alternative would be liquidation. That process could take years, with payouts potentially delayed until 2030.

On August 13, GMX, a decentralized exchange (DEX), began compensating users who lost funds in a July security breach. How? Read the full story.


]]>
https://earlybirdsinvest.com/wazirx-creditors-back-new-plan-after-234-million-hack-setback/feed/ 0 54314
Investor Sues Pepe Meme Creator Over Role in North Korean NFT Hack https://earlybirdsinvest.com/investor-sues-pepe-meme-creator-over-role-in-north-korean-nft-hack/ https://earlybirdsinvest.com/investor-sues-pepe-meme-creator-over-role-in-north-korean-nft-hack/#respond Thu, 07 Aug 2025 18:44:37 +0000 https://earlybirdsinvest.com/investor-sues-pepe-meme-creator-over-role-in-north-korean-nft-hack/

An NFT investor is suing Matt Furie, the creator behind the Pepe meme, for his role in a hack that left his collection worthless. Jaggedsoft, who is also the creator of the Binance application programming interface (API), claims Furie and the NFT marketplace Chain/Saw enabled the hack by engaging in mismanagement, willful misconduct, and negligence of the project.

Furie created Pepe the Frog, and over the years, the meme has become prominent in both online and crypto communities. The artist did not join the Web3 space until recently, and his partnership with Chain/Saw led to the release of the NFT collection Replicandy. Pseudonymous crypto trader Path revealed that Jaggedsoft is the largest collector of Replicandy NFTs.

Within the third week of June, Furie’s NFT collection Replicandy was targeted by an IT worker who was hired as a developer for the project. The worker belongs to a North Korean hacker group, and these entities are known for their notoriety in infiltrating crypto projects.

On-chain sleuth ZachXBT explained that the IT worker first transferred ownership of Replicandy from Furie and Chain/Saw to his address. Then the attacker continuously minted NFTs and sold them in bids until their floor price plummeted to zero. Afterwards, they withdrew the mint proceeds from the contract, totaling at least $310,000, and transferred them to their addresses.

Since the hack happened, neither Furie nor Chain/Saw have said anything about reimbursing users or handling the incident. Their X handles, which were active prior to the event, have been mute since June 18. 

Jaggedsoft insists the project could have avoided hiring a North Korean hacker if they had done their due diligence on workers before employment. He insists that skipping basic checks, hiring the wrong people, letting a hack happen, and trying to hide it is not just unethical, but potentially criminal concealment.

The NFT investor also disclosed that Chain/Saw’s creator threatened to “fuck my life up” if he went ahead with the litigation. However, he said he had nothing to lose since his collectibles were already worthless. 

Meanwhile, the Binance API creator initially did not want to involve Furie in the lawsuit as he only created the art. However, Furie’s role in concealing the incident and other deceptive behaviors caused a change of heart; now he is mentioned in the lawsuit. Will litigation make Furie and Chain/Saw to reimburse users? Stay tuned for more updates.

]]>
https://earlybirdsinvest.com/investor-sues-pepe-meme-creator-over-role-in-north-korean-nft-hack/feed/ 0 52015
I love my hacked PS Vita, and you can hack one, too https://earlybirdsinvest.com/i-love-my-hacked-ps-vita-and-you-can-hack-one-too/ https://earlybirdsinvest.com/i-love-my-hacked-ps-vita-and-you-can-hack-one-too/#respond Thu, 07 Aug 2025 06:14:32 +0000 https://earlybirdsinvest.com/i-love-my-hacked-ps-vita-and-you-can-hack-one-too/

If you’re an uber-nerd like me, you’ve probably been following the exploits of my colleague and fellow uber-nerd Séamus as he attempts to raise his PlayStation Vita from the dead through modern science. I know I certainly have. I’ve put two PS Vitas through the same softmodding transformation myself — one for fun, one out of shame when the first one’s screen broke — and have become an absolute ride or die for this little powerhouse of a handheld in the process. I couldn’t just not chime in!

In that sense, it’s been nothing short of exhilarating watching Séamus go through it for the first time, not quite sure of what he’s doing but nonetheless cognizant of the vast world of possibility that awaits him. His last post touched on the ability to toss out Sony’s extortionate proprietary memory cards and play PSP games on the Vita, but I have a few tips for him — and you, if his journey inspires to dust off your own ancient Vita. Think of this more as a companion piece to his series than a replacement for it.

For instance, Vita and PSP games are nice, but did you know you can also play the complete library of PS1 games? Adrenaline, the emulator you use to play PSP games on a hacked Vita, also supports the PSP’s compatibility with the PS1 library. Silent Hill, Resident Evil, Metal Gear Solid, you name it and you can play it on Vita. As long as you own the games legally, of course, wink wink nudge nudge.

Speaking of Adrenaline, you’re going to want to get the Adrenaline Bubble Manager app. This lets you create shortcuts to your PSP and PS1 games you can access directly from the Vita’s home menu instead of having to open up the emulator and scroll through the PSP’s giant single-file games list every time.

The fun doesn’t stop there, though. To this day, there’s a dedicated community of Vita homebrewers porting games from other systems over. Perfect Dark? Easy. Hollow Knight? No sweat. Cuphead? Seems downright painful on the Vita’s controls, but knock yourself out. The standout for me is the PS2 GTA trilogy, which I’m honestly amazed never received an official port to the Vita in the first place. Of course, you’ll need to provide the game data yourself from a legal copy on another platform.

Finally, language barriers are no longer a barrier on the Vita. Basically every good Japan-only game has gotten a fan translation, allowing you to enjoy the actual best of the Vita without learning kanji. For instance, did you know that there are two whole Yakuza games on the PSP you’ve never heard of? What about Catherine: Full Body, a remaster of a cult classic that only got a Vita release in Japan? With the masterful English patch applied, I’d call it the greatest game on the whole platform. (Although MGS2 is also on there, so it’s dicey.)

And, of course, there’s an app that lets you… reacquire backups of your completely legally purchased games if you happen to lose them. It’s all completely self-contained to your Vita, downloading the games directly to your system like you’re using the actual PlayStation Store. No, I’m not naming it here. I can feel the Sony ninjas lurking.

If any of this sounds appealing to you, check out this easy-to-follow guide to get started — all you need to begin is a Vita and a computer. Good luck, Séamus!

]]>
https://earlybirdsinvest.com/i-love-my-hacked-ps-vita-and-you-can-hack-one-too/feed/ 0 51917
Elon Musk Poses Chilling Question: Can Quantum Computers Hack Bitcoin? https://earlybirdsinvest.com/elon-musk-poses-chilling-question-can-quantum-computers-hack-bitcoin/ https://earlybirdsinvest.com/elon-musk-poses-chilling-question-can-quantum-computers-hack-bitcoin/#respond Sun, 03 Aug 2025 18:45:21 +0000 https://earlybirdsinvest.com/elon-musk-poses-chilling-question-can-quantum-computers-hack-bitcoin/

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure

Elon Musk is raising new questions about Bitcoin’s long-term safety in the face of rapid advances in quantum computing. The Tesla and SpaceX CEO turned to his AI chatbot, Grok, to find out how likely it is that Bitcoin’s SHA-256 hashing algorithm could be cracked by powerful quantum machines.

His question came just as IBM revealed major plans for its next-generation quantum system called Blue Jay, which is expected to reach 2,000 global qubits by 2033.

Grok Predicts Low Risk, At Least For Now

According to Grok, the risk of Bitcoin’s encryption getting cracked by quantum computers is very low over the next five years. The AI estimates the chance remains close to zero during that period.

But when looking out to 2035, the probability goes up slightly—though it still stays under 10%. These numbers are based on expert assessments and current quantum capabilities.

Musk’s concerns are not coming out of nowhere. Companies like Google and Microsoft are developing their own quantum platforms—Willow and Majorana 1—which have sparked debate over whether cryptocurrencies like Bitcoin could one day be vulnerable to attacks from these ultra-powerful systems.

Right now, most quantum systems only have around 1,000 qubits. That’s far below the millions of error-corrected qubits scientists believe are necessary to break Bitcoin’s cryptographic defenses.

Grok added that stronger algorithms like SHA-3 or SHA-512 could be used as replacements if needed in the future.

Bitcoin is currently trading at $113,744. Chart: TradingView

Quantum Computers Vs. Blockchain

Meanwhile, according to a recent analysis by global auditing firm Deloitte, quantum computers could soon threaten the security of the Bitcoin blockchain, with around 25% of Bitcoins currently at risk of being stolen through quantum attacks.

Eventually, quantum computers might become powerful enough to break the entire transaction process, the analysts said. To prevent this, the Bitcoin network would need to adopt post-quantum cryptography—an emerging but complex solution currently being explored by cryptographers worldwide.

Image: The Quantum Insider

IBM’s Blue Jay Adds Pressure

IBM’s new system, Blue Jay, will have more than a billion gate operations—something much beyond the capabilities of today’s computers.

It’s part of the company’s larger effort to be at the forefront of quantum computing by the early 2030s. With other industry giants such as Google and Microsoft not far behind, the competition is heating up.

Tesla And SpaceX Both Hold Bitcoin

Musk’s curiosity isn’t just academic. Tesla currently owns 11,500 Bitcoins, worth about $1.3 billion at current prices. SpaceX also holds a sizable amount, reportedly around $850 million worth of BTC. Musk himself has confirmed that he holds Bitcoin in his personal portfolio.

With the extent of those holdings, it is no wonder that Musk would like to get ahead of potential threats. His tweet is seemingly relaxed, but it indicates increased awareness in the tech world about how quantum advances might affect the world of crypto and finance.

Featured image from ABB, chart from TradingView

Editorial Process for bitcoinist is centered on delivering thoroughly researched, accurate, and unbiased content. We uphold strict sourcing standards, and each page undergoes diligent review by our team of top technology experts and seasoned editors. This process ensures the integrity, relevance, and value of our content for our readers.

]]>
https://earlybirdsinvest.com/elon-musk-poses-chilling-question-can-quantum-computers-hack-bitcoin/feed/ 0 51276
CoinDCX Software Engineer Arrested in Connection to $44 Million Hack (Report) https://earlybirdsinvest.com/coindcx-software-engineer-arrested-in-connection-to-44-million-hack-report/ https://earlybirdsinvest.com/coindcx-software-engineer-arrested-in-connection-to-44-million-hack-report/#respond Thu, 31 Jul 2025 21:00:38 +0000 https://earlybirdsinvest.com/coindcx-software-engineer-arrested-in-connection-to-44-million-hack-report/

The Indian exchange is the latest victim of bad actors exploiting vulnerabilities and taking control of internal systems, resulting in millions of dollars being lost.

The losses this year, overall, are already in the billions, and, regrettably, continue to increase at an alarming pace.

Details on What Happened

A local Indian news outlet, The Times of India, shared the story about Rahul Agarwal, a staff member of the CoinDCX exchange, whose login information was compromised. He has been taken into custody by Bengaluru authorities, reportedly linked to a ₹379-crore ($44 million) exploit of funds.

The alarm was raised following a complaint by Nebilo Technologies, the company that runs the exchange. Their Vice President for public policy, Hardeep Singh, stated the following:

“Rahul had a permanent role within the company, and he was provided with a laptop strictly for work. Our investigation began after we discovered that an unknown person had gained unauthorized access to our systems on July 19th, around 2:30 am, by transferring 1 USDT to an external wallet. Several hours later, around 9:30 a.m., the $44 million was siphoned off and distributed among six wallets.

During his questioning by the police, Agarwal maintained his innocent stance, claiming he knew nothing about the hack. However, he did admit to “moonlighting” (working a second job outside regular business hours) with three to four private parties, without thoroughly vetting them. 

It’s further noted that the accused received ₹15 lakh (~$17,000) in his personal bank account from an unknown source. The Bengaluru police also point out that Agarwal claimed to have received a phone call from a German phone number, stating he “had a few files to complete.” 

He believes one of those files was fitted with malware, which granted the attackers access to CoinDCX’s internal systems, and he remained adamant that he was unaware of what was happening until the company summoned him.

The exchange’s founder and CEO, Sumit Gupta, shared the bitter news of the attack on X, calling it a “sophisticated social engineering attack,” but without being able to disclose any further information on what had transpired.

Hefty Losses

Unfortunately, the attacks on crypto exchanges are on the rise, increasing in complexity, and the damage to their coffers is significant.

The most notable example is the hack on Bybit in February, which resulted in a $1.5 billion loss, linked to the North Korean Lazarus Group.

Overall, 2025 has seen enormous amounts of funds stolen, topping records from previous years only during the first half of the year.

These incidents serve as an example of how geopolitical tensions, cybersecurity vulnerabilities, and sophisticated adversaries continue to pose a significant risk to even well-established cryptocurrency platforms.

SPECIAL OFFER (Sponsored)

Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!

]]>
https://earlybirdsinvest.com/coindcx-software-engineer-arrested-in-connection-to-44-million-hack-report/feed/ 0 50755
Can I hack Crypto (one chain wallet)? (Duplicate) https://earlybirdsinvest.com/can-i-hack-crypto-one-chain-wallet-duplicate/ https://earlybirdsinvest.com/can-i-hack-crypto-one-chain-wallet-duplicate/#respond Thu, 24 Jul 2025 15:36:23 +0000 https://earlybirdsinvest.com/can-i-hack-crypto-one-chain-wallet-duplicate/

No, when transferring or selling Bitcoin, you do not need to pay any additional fees in advance first.

Being asked to pay with extra money for any kind of fee is the trick of a confident trickster (conmen, con artist, con artist)

A regular Bitcoin transaction deducts a small amount of Bitcoin from the balance Transaction fee (Not a transfer fee) But this is not an extra thing you pay. Currently, transaction fees are very high at around $30 per transaction (it was under $1 a year ago). Actual fees vary depending on the complexity of the transaction and the speed at which the transaction is processed. You should not make any further payments and will need to automatically deduct any additional amounts from your Bitcoin balance. This is transaction It’s not a price transfer commission. Regular Bitcoin transactions do not have transfer fees or transfer codes.

When dealing with any business, there is no surprise fee. You should be able to find business conditions on their webpage Without talking to anyone in the business. The fees that come as a surprise are signs of a possible scam.

]]>
https://earlybirdsinvest.com/can-i-hack-crypto-one-chain-wallet-duplicate/feed/ 0 49430