Carding Forum
Professional
- Messages
- 2,788
- Reaction score
- 1,198
- Points
- 113
CoinStats, the company that manages cryptocurrency portfolios, announced the suspension of all operations while eliminating threats to compromise users wallets.
The CoinStats team did not disclose the extent of the security breach and the financial consequences of the exploit, but promised to provide information on the progress of work. According to reports, 1,590 crypto wallets were affected by the attack, which is approximately 1.3% of all CoinStats wallets.
The company said that its specialists are trying to mitigate the consequences of a hacker attack, and that user services will be temporarily disabled to isolate the incident. The administration of CoinStats recommended that users of the attacked crypto wallets urgently transfer their funds to other accounts using the exported private key.
The company assured that only wallets created on the CoinStats platform were affected, and none of the third-party crypto wallets and centralized exchange accounts connected to CoinStats wallets were compromised. Currently, the official website of CoinStats is temporarily unavailable.
---
Two wallets linked to the CoinStats hack transferred 311 ETH (~$959,000) to the Tornado Cash mixer. Transactions were recorded in CertiK.
On June 22, the project team reported a cyberattack that affected 1,590 cryptocurrency wallets hosted on the platform (1.3% of the total). The damage amounted to $2 million.
The company shared a list of compromised addresses. Later it became known that it was incomplete. At the same time, the exploit did not affect external connected user wallets and accounts on centralized exchanges.
The attackers tried to take advantage of the CoinStats hack to promote fake refund programs.
On June 26, CoinStats CEO Narek Gevorgyan revealed some details of the investigation. According to him, the evidence points to misleading one of the company's employees who downloaded the malware on their work computer.
On June 28, six days after the incident, the team restored the functionality of the service and announced the payment of compensation to the victims.
CoinStats later said it was optimizing its transaction database and moving to a different platform to improve efficiency and reliability. Representatives of the service promised to strengthen the system with updates and audits.
On July 3, CoinStats informed about the restoration of the platform's functionality and its full functionality.
On July 5, representatives of the service announced that they are continuing to investigate the incident and are taking measures to protect the new infrastructure. In the near future, the team will provide additional information, including measures to support affected customers.
On July 10, Cyvers experts discovered a transfer to Tornado Cash stolen as a result of hacking Curve Finance in July 2023.
Data from the blockchain browser indicates that the service received 1,500 ETH (~$4.67 million).
The CoinStats team did not disclose the extent of the security breach and the financial consequences of the exploit, but promised to provide information on the progress of work. According to reports, 1,590 crypto wallets were affected by the attack, which is approximately 1.3% of all CoinStats wallets.
The company said that its specialists are trying to mitigate the consequences of a hacker attack, and that user services will be temporarily disabled to isolate the incident. The administration of CoinStats recommended that users of the attacked crypto wallets urgently transfer their funds to other accounts using the exported private key.
The company assured that only wallets created on the CoinStats platform were affected, and none of the third-party crypto wallets and centralized exchange accounts connected to CoinStats wallets were compromised. Currently, the official website of CoinStats is temporarily unavailable.
---
Two wallets linked to the CoinStats hack transferred 311 ETH (~$959,000) to the Tornado Cash mixer. Transactions were recorded in CertiK.
#CertiKInsight
Two wallets linked to EOA
0xb48b, labeled CoinStats Exploiter 31, have deposited a combined 311 ETH (~$960k) to @TornadoCash
EOA 0xe0994eD541e6E6dc053Fd9eB03A32f3d9A9876C6 still holds 221 ETH pic.twitter.com/amrsTvOSTn
— CertiK Alert (@CertiKAlert) July 9, 2024
On June 22, the project team reported a cyberattack that affected 1,590 cryptocurrency wallets hosted on the platform (1.3% of the total). The damage amounted to $2 million.
The company shared a list of compromised addresses. Later it became known that it was incomplete. At the same time, the exploit did not affect external connected user wallets and accounts on centralized exchanges.
The attackers tried to take advantage of the CoinStats hack to promote fake refund programs.
On June 26, CoinStats CEO Narek Gevorgyan revealed some details of the investigation. According to him, the evidence points to misleading one of the company's employees who downloaded the malware on their work computer.
On June 28, six days after the incident, the team restored the functionality of the service and announced the payment of compensation to the victims.
CoinStats later said it was optimizing its transaction database and moving to a different platform to improve efficiency and reliability. Representatives of the service promised to strengthen the system with updates and audits.
Quick updates! Currently, we're focused on:
— Optimizing our transaction database and migrating to a more robust platform for improved efficiency and reliability.
— Enhancing our security systems with upgrades and audits to ensure top-notch data protection.
— CoinStats (@CoinStats) June 30, 2024
On July 3, CoinStats informed about the restoration of the platform's functionality and its full functionality.
All functionalities on CoinStats are now fully recovered and functional.
Thank you for your patience and support!
— CoinStats (@CoinStats) July 3, 2024
On July 5, representatives of the service announced that they are continuing to investigate the incident and are taking measures to protect the new infrastructure. In the near future, the team will provide additional information, including measures to support affected customers.
We are still investigating the security incident on June 22 and taking rapid and committed actions to ensure the security of our new infrastructure.
We are working hard to share additional information as soon as we can, including measures to support any victims.
Again, thank…
— CoinStats (@CoinStats) July 4, 2024
On July 10, Cyvers experts discovered a transfer to Tornado Cash stolen as a result of hacking Curve Finance in July 2023.
Data from the blockchain browser indicates that the service received 1,500 ETH (~$4.67 million).
ALERT @CurveFinance has suffered a security breach on Jul-2023 at https://t.co/lPQnlNhMwF
The exploiter has started depositing funds to @TornadoCash , with over 400 $ETH $1.2M athttps://t.co/0P0JnHq6Mp
Discover how @Cyvers_ 's address reputation product can help you detect… pic.twitter.com/v8rSV6Jr7o
— Cyvers Alerts (@CyversAlerts) July 10, 2024