Hacking – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Wed, 03 Sep 2025 10:11:47 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Hacking – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 WLFI blocks hacking attempts with onchain blacklisting https://earlybirdsinvest.com/wlfi-blocks-hacking-attempts-with-onchain-blacklisting/ https://earlybirdsinvest.com/wlfi-blocks-hacking-attempts-with-onchain-blacklisting/#respond Wed, 03 Sep 2025 10:11:47 +0000 https://earlybirdsinvest.com/wlfi-blocks-hacking-attempts-with-onchain-blacklisting/

Trump-linked decentralized finance (DeFi) project World Liberty Financial (WLFI) said it blocked hacking attempts targeting its token launch by blacklisting compromised wallets onchain. 

On Wednesday, WLFI said that a designated wallet executed “mass blacklisting” transactions to disable accounts identified as compromised before it launched. The team said the hacking attempts stemmed from end-user compromises like private key losses and stressed that the incidents were not an exploit of the WLFI project itself. 

WLFI said the project’s blacklisting efforts prevented attempts to hack its “Lockbox,” a vesting mechanism that safeguards locked token allocations for its users. “This allowed us to block the theft attempts from the Lockbox,” WLFI wrote, linking to two Etherscan transactions showing the blacklist in action. 

The team added that they are working with compromised users so that they can regain access to their accounts. 

Source: World Liberty Financial 

Bad actors continue to target WLFI users

On Monday, World Liberty Financial unlocked 24.6 billion WLFI tokens as it opened trading for the first time. Since then, hackers and scammers have attempted to profit from the event, targeting users and the project. 

Analytics firm Bubblemaps identified “bundled clones,” which are look-alike smart contracts that imitate the project. This aims to trick unsuspecting users into engaging with fake contracts instead of legitimate ones and steal their crypto. 

Yu Xian, the founder of security company SlowMist, reported that some WLFI holders are being drained of their tokens through a known exploit using the Ethereum Improvement Proposal (EIP)-7702 upgrade. 

Xian said WLFI holders are being drained using a “classic EIP-7702 phishing exploit.” He explained that bad actors plant hacker-controlled addresses in victim wallets, allowing them to snatch the tokens when a deposit is made. 

Related: Trump-backed WLFI to unlock 24.6B tokens at launch

EIP-7702 upgrade opens offchain attack vector

In May, Ethereum’s Pectra upgrade introduced EIP-7702, which allowed externally owned accounts to temporarily act like smart contract wallets. This enabled the delegation of execution rights and allowed batch transactions, with the goal of streamlining user experience. 

However, while the upgrade’s goal was to enhance user experience, security experts identified a new attack vector that could allow hackers to drain funds using only an offchain signature. 

Solidity smart contract auditor Arda Usman previously told Cointelegraph that it’s possible for attackers to drain user funds with only an offchain signed message with no direct onchain transaction being signed.

Magazine: Bitcoin to see ‘one more big thrust’ to $150K, ETH pressure builds: Trade Secrets

]]> https://earlybirdsinvest.com/wlfi-blocks-hacking-attempts-with-onchain-blacklisting/feed/ 0 56536 Anthropic Warns: Criminals Using Claude AI for ‘Vibe Hacking’ https://earlybirdsinvest.com/anthropic-warns-criminals-using-claude-ai-for-vibe-hacking/ https://earlybirdsinvest.com/anthropic-warns-criminals-using-claude-ai-for-vibe-hacking/#respond Mon, 01 Sep 2025 03:13:13 +0000 https://earlybirdsinvest.com/anthropic-warns-criminals-using-claude-ai-for-vibe-hacking/

Artificial intelligence (AI) company Anthropic has warned that its chatbot Claude is being used by bad actors to help carry out online crimes, despite built-in protections designed to prevent abuse.

The company said criminals are using Claude not only for technical advice, but also to emotionally pressure victims, in a method it refers to as “vibe hacking”.

In an August 28 report titled Threat Intelligence, Anthropic’s security team, including researchers Ken Lebedev, Alex Moix, and Jacob Klein, explained that “vibe hacking” involves using AI tools to manipulate people’s emotions, gain their trust, and influence their decisions.

Layer 2 Scaling Solutions Explained With Animations

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

For example, one hacker reportedly used Claude to help steal private information from 17 different targets, including hospitals, public safety agencies, government offices, and religious groups. The hacker then asked victims for payments in Bitcoin
BTC


$107,488.40

, which ranged from $75,000 to $500,000.

Claude was used to review stolen financial documents, suggest the amount of ransom to be demanded from each victim, and write personalized messages aimed at creating stress or urgency.

Although the attacker’s access to Claude was eventually revoked, the company noted that the situation showed how much easier it has become for people with limited knowledge to create effective malware and avoid detection.

The report also mentioned a separate case involving North Korean IT workers. Anthropic stated that these individuals used Claude to create false identities and pass job interviews for roles at major US tech firms, including some on the Fortune 500 list.

On August 13, ZachXBT revealed how a North Korean hacking group used fake identities and freelance job platforms to secure crypto-related roles. What did the blockchain investigator say? Read the full story.

]]>
https://earlybirdsinvest.com/anthropic-warns-criminals-using-claude-ai-for-vibe-hacking/feed/ 0 56144
Alabama Man Sentenced for Hacking SEC’s Social Media to Post Fake Bitcoin ETF News https://earlybirdsinvest.com/alabama-man-sentenced-for-hacking-secs-social-media-to-post-fake-bitcoin-etf-news/ https://earlybirdsinvest.com/alabama-man-sentenced-for-hacking-secs-social-media-to-post-fake-bitcoin-etf-news/#respond Sun, 18 May 2025 02:12:04 +0000 https://earlybirdsinvest.com/alabama-man-sentenced-for-hacking-secs-social-media-to-post-fake-bitcoin-etf-news/

A 26-year-old man from Alabama has been sentenced to more than a year in prison for his role in a social media hack that briefly sent the price of bitcoin

soaring.

Eric Council Jr. of Huntsville pleaded guilty to charges tied to the January 2024 hack of the U.S. Securities and Exchange Commission’s X account, according to a U.S. Department of Justice press release.

Posing as a telecom customer using a fraudulent ID, Council used a SIM-swap technique to hijack a phone number tied to the SEC’s account. His co-conspirators then used it to falsely post that the agency had approved spot bitcoin exchange-traded funds (ETFs), a long-awaited regulatory milestone.

Within minutes, the price of bitcoin surged by more than $1,000. It crashed soon after, losing more than $2,000 in value once the post was revealed as fake. The SEC did later that month approve the launch of spot bitcoin ETFs.

Authorities say Council was paid in bitcoin for his role. He will serve 14 months in prison followed by three years of supervised release.

Federal prosecutors called the attack a calculated attempt to manipulate financial markets. “The deliberate takeover of a federal agency’s official communications platform was a calculated criminal act meant to deceive the public and manipulate financial markets,” said Acting FBI Assistant Director Darren Cox. “By spreading false information to influence the markets, Council attempted to erode public trust and exploit the financial system”

]]>
https://earlybirdsinvest.com/alabama-man-sentenced-for-hacking-secs-social-media-to-post-fake-bitcoin-etf-news/feed/ 0 36839