Posts

Showing posts with the label cybercrime

Ordswap loses control of its website, urges users to recover keys

Ordswap has experienced a security breach that has led to phishing risks for users’ private keys and assets. An online tool has been introduced for MetaMask users to recover private keys. The incident underscores security concerns in crypto. In a recent crypto hack incident, Ordswap, a prominent marketplace for Bitcoin Ordinals, has fallen victim to a significant security breach that has made it lose control of its website . The platform’s website was compromised leading to potential risks for users . Ordswap users were met with a distressing situation as the compromised website directed them to a phishing link. This deceptive link aimed to trick users into revealing their private keys and other sensitive information, posing a severe threat to their cryptocurrency assets. Recovery tool introduced amid the chaos In response to the security breach, Ordswap acted swiftly by providing an online tool designed to assist users who had logged into the...

Arbitrum-based Jimbos Protocol hacked, losing $7M in Ethereum

The attacker took advantage of the lack of slippage control of liquidity conversions to steal the funds. Adding to the existing number of protocol hacks in the crypto industry, Jimbos Protocol has not escaped the sights of the attackers as it has suffered an attack resulting in a loss of a large amount of funds. According to PeckShield, a blockchain security unit, Jimbos Protocol, the liquidity protocol of the Arbitrum system, was hacked on the morning of May 28. The attack resulted in the loss of 4,000 ETH, equivalent to approximately $7.5 million. Specifically, the attacker took advantage of the lack of slippage control of liquidity conversions. The protocol's liquidity is invested in a price range that doesn't need to be equal, creating a loophole where attackers can reverse swap orders for their own gain. Despite being launched less than 20 days ago, the Jimbos Protocol aimed to address liquidity and volatile token prices through a new testing approach. However, it appear...

Google Ads data: $4M stolen through crypto phishing URLs

Unsuspecting cryptocurrency users have lost over $4 million to phishing websites promoted using Google Ads. Data from Google Ads coupled with blockchain analytics reveals that over $4 million has been stolen from users that have fallen for malicious phishing websites promoted on Google. According to Web3 anti-scam service provider ScamSniffer, malicious adverts for phishing websites have been prevalent on Google ads searches in recent weeks. The URLs lead to fraudulent websites that prompt wallet login signature requests that compromise users’ addresses. 1/ A recent surge in phishing scams via Google search ads has led to users losing approximately $4 million. ScamSniffer has investigated multiple cases where users clicked on malicious ads and were directed to fraudulent websites.#PhishingScams #GoogleAds pic.twitter.com/vuKCgSuFnV — Scam Sniffer (@realScamSniffer) April 27, 2023 A number of decentralized finance (DeFi) protocols, websites and brands, including Zapper.fi, Lid...