Today MagToday Mag
  • Home
  • World
  • Politics
  • Bussines
  • Tech
  • Science
  • Health
  • Sport
  • Style
  • More
    • Food
    • Travel
    • Real Estate
    • Crypto
    • Jobs
What's Hot

Japanese-style waffle shop Wafu set to open in Orlando. Here’s when, where to find it

June 28, 2022

TTG – Luxury travel news

June 28, 2022

Onward and upward: Element Real Estate acquires Heney Realtors to further expand into Cent

June 28, 2022
Facebook Twitter Instagram
  • World
  • Bussines
  • Health
  • Real Estate
  • Style
  • Travel
  • Sport
Facebook Twitter Instagram
Today Mag Today Mag
  • Home
  • World
  • Politics
  • Bussines
  • Tech
  • Science
  • Health
  • Sport
  • Style
  • More
    • Food
    • Travel
    • Real Estate
    • Crypto
    • Jobs
Contact Us
Today MagToday Mag
Home»Crypto»Billions advised to update Chrome browser — especially crypto users
Crypto

Billions advised to update Chrome browser — especially crypto users

TodayMagBy TodayMagApril 3, 2022No Comments5 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


Upland

On March 22nd, Google issued an emergency security update for its Chrome browser as 3.2 billion users were potentially at risk of being attacked. This update highlighted a single security vulnerability that could have a big impact on everyone, but specifically crypto users.

Not much is publicly known at this stage about CVE-2022-1096 other than it is a “Type Confusion in V8.” This refers to the JavaScript engine employed by Chrome. The security flaw includes the open-source Chromium Project and it’s possible this update comes as a response to users reporting their crypto ‘hot wallets’ being hacked through a browser.

Earlier this week, Arthur Cheong, the founder of DeFiance Capital and a known crypto whale announced via Twitter that his crypto wallet had been hacked causing him to lose over $1.5 million USD in tokens and NFTs.

Found out the likely root cause for the exploit, it’s a targeted social engineering attack. Received a spear-phishing email that really seems to be sent by one of our portco with content that seems like general industry-relevant content.

They are likely targeting all crypto peep pic.twitter.com/SegYBcoLX2

— Arthur 🌔⛩️🦔👻 (@Arthur_0x) March 22, 2022

The hack targeted what is called a ‘hot’ wallet. A hot wallet is directly connected to the internet rather than a ‘cold’ wallet, also known as a hardware wallet, where assets can be stored offline and remain offline for safekeeping and security. After seeing sophisticated hacks such as this, it’s safe to say that storing cryptocurrencies in cold wallets offer far more secure solutions to holding cryptocurrencies.

Weeks earlier, Ledger had warned users to be aware of Blind Signatures and the dangers that come with them, while continuing to advise users to proceed with caution when browsing DApps (decentralized applications) and other related websites.

Two primary hot wallets that were being targeted held a crypto balance valuing over $1.5 million USD; most of which contained NFTs under the ‘Azukis’ collection. These popular NFTs were immediately sold on OpenSea below market price, resulting in the hacker acquiring funds in the fastest possible manner.

Luckily, the cry was heard by the entire crypto community and actions were made with haste. Supporters swiftly acquired some of the stolen Azuki NFTs from the blacklisted hacker and were mercifully willing to return the NFTs to Arthur at a base price rather than reselling them at their current market value, allowing them to profit 7-8+ ETH (worth around $24k USD) in exchange. Not all heroes wear capes.

Altogether, the hacker was able to acquire 78 different NFTs from five widely known collections. And that’s not all.

Not only focusing on Azuki’s and other NFTs collectibles, they also managed to steal 68 wrapped ETH (wETH), 4,349 staked DYDX (stkDYDX) and 1,578 LooksRare (LOOKS) tokens, tallying to a whopping $293,281.64 at the time of the attack.

Following the announcement, Arthur himself investigated deep into the exploit and discovered the hacker must have obtained access to his wallet by sending him what is known as spear-phishing emails. This alone revealed that the emails received were issuing requests to access Arthur’s Google Docs content in full. At first glance, these requests seemed to be from two ‘legitimate’ sources of his. Immediately after opening the shared file, the hacker gained an unauthorized passage to the seed phrase of his hot wallet. In other words, the master password to the hot wallet was compromised instantly, granting the thief access to all crypto wallets connected to Google Chrome and siphoning the hard-earned assets right in front of him.

Similar hacks and exploits are nothing new to the crypto industry. However, and it’s very unfortunate to say, these attacks are becoming extremely intricate and identical catastrophic events can happen to even the most experienced users. This display of tragedy is evidence that anyone can fall victim to similar cyberattacks and nothing is ever really “100% secure” as some may claim.

As the recovering cyberattack victim later tweeted “didn’t expect this to happen to me.”

Well not sure what happened, need to take time to figure it out. Didn’t expect this to happen to me as well.

Guess no more hot wallet usage then.

— Arthur 🌔⛩️🦔👻 (@Arthur_0x) March 22, 2022

Following the hack, Arthur’s recommendations were to always put security first. Examples include using a trusted password manager, enabling 2-factor authentication (not via phone numbers to avoid sim card jailbreaks and sim-swapping), and to adopt cold storage wallets, namely Ledger hardware wallets to ensure your funds are SAFU in perpetuity.

Guest post by Felix Mohr from Crypto Fight Club

Felix Mohr is the CTO and co-founder of Crypto Fight Club. Aside from spearheading all blockchain and game developments for Crypto Fight Club, Felix (aka MakerOfGloves) has been in crypto since 2016 as a certified fintech professional from the University of Hong Kong as well as the co-founder of MohrWolfe. His focus now is to bridge adoption and security to the play-to-earn space on GameFi through building NFT games and decentralized blockchain product lines.

Learn more →

Symbiosis

Get an Edge on the Crypto Market 👇

Become a member of CryptoSlate Edge and access our exclusive Discord community, more exclusive content and analysis.

On-chain analysis

Price snapshots

More context

Join now for $19/month Explore all benefits





Source link

advised billions Browser Chrome Crypto update Users
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
TodayMag
  • Website

Related Posts

Crypto Billionaire Sam Bankman-Fried’s Wall Street Ambitions

June 28, 2022

This Bored Ape NFT Crypto Restaurant Has Stopped Accepting Crypto

June 26, 2022

U.S. crypto firm Harmony hit by $100 million heist

June 24, 2022

Blockchain gaming unfazed by crypto volatility as gamers ‘seek out entertainment’ – TechCrunch

June 22, 2022
Add A Comment

Leave A Reply Cancel Reply

Editors Picks

‘Sheer Tenacity’: Taiwan Skier Falls on Slope, Picks Self Up | World News

February 13, 2022

Brexit LIVE: Hannan picks out shadowy civil servants pulling rug from under Boris’ EU plan | Politics | News

January 23, 2022

What to wear this weekend: FEMAIL picks out the best ‘it’ dresses for effortless style this season

December 23, 2021

Good Weekend’s style picks of the week

December 17, 2021
Latest Posts

Subscribe to Updates

Get the latest sports news from SportsSite about soccer, football and tennis.

Your source for the serious news. This demo is crafted specifically to exhibit the use of the theme as a news site. Visit our main page for more demos.

We're social. Connect with us:

Facebook Twitter Instagram Pinterest YouTube
Categories
  • World
  • Bussines
  • Health
  • Real Estate
  • Style
  • Travel
  • Sport
Useful Links
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Services
  • Sitemap

Subscribe to Updates

Get the latest creative news from FooBar about art, design and business.

© 2022 TodayMag
  • Home
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Services
  • Sitemap

Type above and press Enter to search. Press Esc to cancel.