Crypto M - Crypto News
2.08K subscribers
15.9K photos
194 links
Your #1 destination for the latest and most unbiased market news on Bitcoin, Ethereum, NFT, Fintech, Web3, DeFi, and Blockchain.
Download Telegram
🚀 Beosin Alert Warns Of Ongoing Asset Theft From Dexx Users

According to Odaily, Beosin Alert has issued a warning regarding a continuing incident involving the theft of substantial user assets from Dexx. The alert suggests that there may have been a leak of private keys from a centralized custodian, which could be contributing to the ongoing security breach. Beosin advises users to transfer their assets to other secure wallets to protect their holdings.

The situation has raised concerns among users and security experts alike, as the potential leak of private keys poses a significant risk to the safety of digital assets. Beosin's recommendation to move assets to more secure wallets underscores the importance of maintaining robust security measures in the management of cryptocurrencies. Users are urged to remain vigilant and take immediate action to safeguard their investments.

This incident highlights the vulnerabilities that can arise in the digital asset space, particularly when centralized custodians are involved. The ongoing nature of the theft suggests that the perpetrators may still have access to sensitive information, making it crucial for users to act swiftly. Beosin's alert serves as a reminder of the need for continuous monitoring and proactive security strategies in the cryptocurrency industry.


#BeosinAlert #Dexx #AssetTheft #PrivateKeys #SecurityBreach #Cryptocurrency #DigitalAssets #WalletSecurity #UserSafety #ProactiveSecurity
🚀 DEXX Takes Legal Action to Address Asset Theft

According to PANews, DEXX has announced progress in addressing the recent asset theft incident. The team is actively pursuing legal avenues to flag the hacker's wallet addresses. This step is part of their broader strategy to prevent the hacker from converting the stolen assets into fiat currency or depositing them into exchanges.

DEXX is collaborating with the Solana Foundation to mark the hacker's addresses. Once flagged, the hacker will face significant challenges in utilizing the stolen assets. The company is employing all available resources to trace the stolen funds and is currently unable to respond individually to media inquiries or key opinion leaders. DEXX has partnered with multiple security agencies to track down the hacker's information and has initiated investigations in various locations.


#DEXX #LegalAction #AssetTheft #CyberSecurity #SolanaFoundation #Hacker #StolenAssets #Investigation
🚀 Phishing Ads Target Virtuals Protocol Users on Google Browser

According to Odaily, Scam Sniffer has detected phishing advertisements impersonating Virtuals Protocol on the Google browser. These fraudulent ads pose a significant risk to users who may inadvertently click on them. Once users engage with these ads, connect their wallets, and authorize transactions, there is a potential threat of asset theft.

The emergence of such phishing schemes highlights the growing sophistication of cybercriminals in exploiting digital platforms. Users are advised to exercise caution and verify the authenticity of any advertisements or links before interacting with them. Ensuring the security of digital assets requires vigilance and awareness of potential scams that can compromise personal and financial information.

As phishing tactics continue to evolve, it is crucial for users to stay informed about the latest threats and adopt best practices for online security. This includes using trusted sources for downloading browser extensions and regularly updating security settings to protect against unauthorized access. By remaining alert and cautious, users can safeguard their assets from malicious actors seeking to exploit vulnerabilities in the digital landscape.


#Phishing #ScamSniffer #VirtualsProtocol #Cybersecurity #DigitalAssets #OnlineSecurity #AssetTheft #UserAwareness #FraudulentAds #PhishingSchemes
🚀 Google Ads Impersonating Usual Protocol Pose Security Risk

According to Odaily, Scam Sniffer has detected fraudulent advertisements on Google impersonating Usual Protocol. These deceptive ads, if clicked, may lead users to connect their wallets and sign transactions, potentially resulting in asset theft.

#GoogleAds #UsualProtocol #ScamAlert #SecurityRisk #FraudulentAdvertisements #AssetTheft
🚀 Potential Security Threat Detected in Blockchain Contract

According to Foresight News, SlowMist has reported the detection of potentially suspicious activity linked to an address starting with 0xb54. The contract associated with this address has been upgraded to include a backdoor function named 'transferTokens.' This function has been exploited by attackers to steal assets from users who had previously approved the contract. Users are advised to revoke their approval of this contract immediately to prevent further unauthorized access.

#Blockchain #SecurityThreat #SlowMist #Backdoor #CryptoSafety #AssetTheft #UserProtection
🚀 GoPlus Users Report Asset Theft Exceeding $1 Million

According to Foresight News, GoPlus users have reported the theft of some of their assets. Security monitoring has identified the address involved in the theft as newly created yesterday. The stolen assets, amounting to over $1 million, have been transferred to the address 0x49add3e8329f2a2f507238b0a684d03eae205aab. GoPlus suspects that the theft may be due to the mass compromise of private keys belonging to users of a trading platform or trading bot. Users are advised to promptly check the security of their wallet assets.

#GoPlus #AssetTheft #SecurityBreach #PrivateKeys #CryptoTheft #WalletSecurity #ForesightNews
🚀 Fake Ledger Scam Resurfaces, Targeting High-Net-Worth Users

According to PANews, a recent resurgence of the 'fake Ledger' scam has been reported by SlowMist founder Yu Jian. Attackers are sending counterfeit Ledger devices to users, accompanied by fake instruction manuals that prompt them to input their genuine Ledger's recovery phrase into a fraudulent application, leading to asset theft. This attack method was first documented in 2021, with variations involving preset recovery phrases or tampered random number generators to deceive users. Experts caution that while such physical phishing attacks may seem rare, they have a relatively high success rate, primarily targeting high-net-worth individuals.

#FakeLedger #Scam #HighNetWorth #CyberSecurity #Phishing #AssetTheft #Cryptocurrency #Fraud #Ledger
🚀 Nervos Network Detects Anomalies in Force Bridge, Suspends Services

According to Odaily, Magickbase, a developer of desktop wallet products based on the Nervos Network, announced on the X platform that it has detected unusual activity on the Nervos cross-chain bridge, Force Bridge. As a precautionary measure, the company has suspended related services and is conducting an investigation. The team has promised to provide updates as soon as possible. Reports indicate that the Cyvers Alerts system has identified several suspicious transactions involving Nervos.bit, resulting in the theft of assets valued at $3 million.

#NervosNetwork #ForceBridge #Magickbase #crosschain #cryptoanomalies #cybersecurity #suspicioustransactions #assettheft #CKB
🚀 Security Alert: GitHub Project Exploited in Cryptocurrency Theft

According to PANews, a security incident involving a GitHub-hosted open-source project has resulted in the theft of cryptocurrency assets. On July 2, a victim reported using the project named zldp2002/solana-pumpfun-bot, which led to the unauthorized access and theft of their digital assets. The SlowMist security team analyzed the attack, revealing that the perpetrators disguised the malicious code as a legitimate open-source project. This deception encouraged users to download and execute the harmful Node.js project, which contained malicious dependencies. As a result, users' wallet private keys were compromised, leading to asset theft.

The attack involved multiple GitHub accounts working in coordination, which expanded the reach and credibility of the malicious project, making it highly deceptive. This type of attack combines social engineering with technical methods, making it challenging to defend against even within organizations.

SlowMist advises developers and users to exercise extreme caution when dealing with unfamiliar GitHub projects, especially those involving wallet or private key operations. It is recommended to run and debug such projects in isolated environments without sensitive data to mitigate risks.


#SecurityAlert #GitHub #CryptocurrencyTheft #OpenSource #MaliciousCode #NodeJS #AssetTheft #CyberSecurity #SocialEngineering #SlowMist #Caution #Isolation #PrivateKey #SOL
🚀 Private Key Leaks Identified as Leading Cause of Asset Theft in Q3 2025

According to Foresight News, blockchain security firm SlowMist has released its analysis report on stolen funds for the third quarter of 2025 through its MistTrack platform. The report reveals that the MistTrack team received a total of 317 reports of stolen funds during this period, with 245 incidents reported domestically and 72 internationally.

The analysis highlights that among all malicious attack methods observed in the third quarter of 2025, the leakage of private keys emerged as the primary cause of asset theft. This underscores the critical importance of securing private keys to prevent unauthorized access and loss of digital assets.


#PrivateKeyLeaks #AssetTheft #Q32025 #MistTrack #SlowMist #ForesightNews #BlockchainSecurity #StolenFunds
🚀 Astra Nova's Asset Theft Raises Doubts Amid Unusual Transactions

According to BlockBeats On-chain Detection, on October 19, on-chain analyst EmberCN expressed skepticism regarding Astra Nova's claim of a third-party managed account theft. The analyst noted that the hacker's decision to convert the stolen assets into USDT and transfer them directly to a centralized exchange (CEX) is unconventional. Typically, USDT can be frozen, and direct transfers to a CEX may trigger risk controls, which hackers usually avoid.

A total of 860 million RVV tokens, representing 8.6% of the total supply, were moved from the project's minting contract and sold on-chain, causing a significant drop in RVV's value. The sale resulted in the acquisition of 10.288 million USDT, of which 8.226 million USDT were transferred to a CEX, while the remaining 2.041 million USDT remain in the on-chain wallet 0x643.


#AstraNova #AssetTheft #BlockchainSecurity #USDT #CEX #RVV #OnChainAnalysis #CryptoTheft #EmberCN #CentralizedExchange #RiskControls #CryptoSecurity #TokenSale #CryptoAssets
🚀 Security Alert Issued for Malicious Chrome Extension Disguised as Ethereum Wallet

According to PANews, GoPlus has issued a security alert regarding a malicious Chrome extension masquerading as an Ethereum (ETH) wallet. Released on November 12, 2024, this extension is designed to steal user assets by encoding mnemonic phrases into Sui transactions.

Promoted as a simple and secure ETH wallet, the extension contains a backdoor that encodes user mnemonic phrases into Sui addresses. It then broadcasts micro-transactions from a Sui wallet controlled by the attacker, making it highly covert.

As of now, the malicious extension has not been removed from the Chrome Web Store. GoPlus has reported the issue to Chrome and blacklisted the download link.

The extension is named 'Safery: Ethereum Wallet,' and the attacker's email is kifagusertyna@gmail[.]com.


#SecurityAlert #MaliciousExtension #ChromeExtension #EthereumWallet #SuiTransactions #GoPlus #CyberSecurity #PhishingAttack #AssetTheft #CryptoSecurity #ChromeWebStore #ETH #SUI
🚀 UXLINK CEO Addresses Security Breach and Asset Theft Incident

According to ChainCatcher, UXLINK CEO Rolland Saf released a comprehensive report on a recent security breach that led to significant asset theft, clarifying that the incident was not caused by internal factors. The attackers impersonated business partners and used deepfake video conferencing techniques over several months to compromise the personal devices of multiple SAFE key holders, stealing passwords, private keys, and ultimately gaining control of the old arb-UXLINK smart contract. The hackers illegally minted tokens, transferred, and sold assets, resulting in losses exceeding $11 million.

The incident coincided with Korea Blockchain Week, with several core team members present at the event. The team promptly reported the breach to exchanges, security partners, and international law enforcement agencies, confirming the attack originated externally. Rolland Saf highlighted that the stolen assets included USDT, ETH, and BTC, with some recovered through exchange assistance for buyback purposes. The report refuted any 'exit scam' allegations, emphasizing UXLINK's genuine revenue, commercial clients, and global user base, maintaining transparency throughout the incident.

The team has rebuilt the contract and restored 479 million affected circulating tokens on a 1:1 basis, unlocking 12% of tokens early for exchange user compensation following governance voting. Multiple international law enforcement agencies are now investigating, and related addresses are under continuous monitoring. UXLINK plans to enhance its security systems and advance AI growth, payment ecosystem FujiPay, and other business developments, asserting the project's long-term stability and ongoing rapid growth.


#UXLINK #securitybreach #assettheft #deepfake #blockchain #smartcontract #crypto #KoreaBlockchainWeek #USDT #ETH #BTC #lawenforcement #AIgrowth #FujiPay #tokencompensation #cryptoexchange #blockchainsecurity
🚀 Security Alert Issued After ZEROBASE Front-End Hack

According to BlockBeats, a security warning has been issued by SlowMist founder Yu Jian following a hack on the ZEROBASE front-end. The attack led to some users inadvertently authorizing USDT to malicious contracts, resulting in asset theft. Users are advised to remain vigilant about their asset security.

#SecurityAlert #ZEROBASE #Hack #SlowMist #YuJian #USDT #MaliciousContracts #AssetTheft #CyberSecurity
🚀 GitHub Project Compromised by Malicious Code

According to Odaily, the GitHub project known as polymarket-copy-trading-bot has been compromised by malicious code. The program is designed to automatically access the user's .env file upon startup, extracting wallet private keys. These keys are then transmitted to a hacker's server through a concealed malicious dependency package, excluder-mcp-package@1.0.4, resulting in asset theft.

#GitHub #MaliciousCode #PolymarketCopyTradingBot #AssetTheft #CyberSecurity #WalletPrivateKeys #Hacker #ExcluderMcpPackage
🚀 DeBot Launches Compensation Registration for Affected Users

According to Odaily, DeBot has announced the launch of a compensation registration form for users affected by a recent security breach. Impacted users can fill out the necessary information on the DeBot website, accessible via both PC and mobile web versions. The registration form will remain open indefinitely. DeBot has assured that once users submit their information, the verification process will be completed within 72 hours. Confirmed affected users will receive full compensation, with funds directly transferred to their DeBot secure wallet addresses.

Previously, it was reported that hackers had stolen assets worth $255,000 through DeBot's risk wallet.


#DeBot #compensation #securitybreach #hackers #affectedusers #cryptowallet #assettheft #userregistration
🚀 Security Flaws Lead to $17 Million Loss for SwapNet and Aperture Finance

SwapNet and Aperture Finance suffered significant financial losses due to security vulnerabilities, resulting in a $17 million loss on January 26. According to Foresight News, BlockSec analysis revealed that the root cause of the hacking incidents was insufficient input validation in the victim contracts. This flaw exposed the contracts to arbitrary call capabilities, allowing attackers to exploit existing token approvals and use the transferFrom function to steal assets.

#SecurityFlaws #SwapNet #ApertureFinance #FinancialLoss #HackingIncidents #BlockSec #InputValidation #TokenApprovals #TransferFrom #AssetTheft #ForesightNews
🚀 Suspicious Transactions Detected in DBXen_crypto Contract

BlockSec has identified suspicious transactions targeting the DBXen_crypto contract, resulting in an estimated loss of $150,000. According to Foresight News, the issue stems from inconsistent sender identities in ERC2771 meta-transactions, allowing attackers to manipulate reward settlement logic and steal assets from the contract.

#SuspiciousTransactions #DBXen_crypto #BlockSec #ERC2771 #MetaTransactions #Cybersecurity #CryptoTheft #AssetTheft
🚀 Fenbushi Capital's Shen Bo Reveals $42 Million Asset Theft

Shen Bo of Fenbushi Capital has disclosed a significant asset theft amounting to $42 million that took place on November 10, 2022. According to NS3.AI, the theft involved a Trust Wallet hot wallet and targeted victim addresses across Ethereum, Bitcoin, and TRON networks.

#FenbushiCapital #ShenBo #AssetTheft #TrustWallet #HotWallet #Ethereum #Bitcoin #TRON #NS3AI