{"id":32182,"date":"2022-07-19T03:13:54","date_gmt":"2022-07-19T07:13:54","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=32182"},"modified":"2022-07-19T03:13:58","modified_gmt":"2022-07-19T07:13:58","slug":"yuga-labs-says-persistent-threat-group-targeting-holders-of-nft","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/yuga-labs-says-persistent-threat-group-targeting-holders-of-nft\/","title":{"rendered":"Yuga Labs says &#8216;Persistent Threat Group&#8217; Targeting Holders of NFT"},"content":{"rendered":"\n<h5 class=\"wp-block-heading\">Yuga Labs warning comes just days after hackers infiltrated the Premint NFT website and stole more than 300 NFTs and $375,000 in Ethereum.<\/h5>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-1024x576.jpg\" alt=\"Yuga Labs says 'Persistent Threat Group' Targeting Holders of NFT\" class=\"wp-image-32186\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-150x84.jpg 150w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-750x422.jpg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault-1140x641.jpg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault.jpg 1280w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption>Yuga Labs says &#8216;Persistent Threat Group' Targeting Holders of NFT<\/figcaption><\/figure>\n\n\n\n<p>Several non-fungible token (NFT) communities may soon be the subject of an &#8220;organized attack,&#8221; according to Bored Ape Yacht Club (BAYC) developer Yuga Labs.<\/p>\n\n\n\n<p>On July 19, the NFT company informed its Twitter followers that a &#8220;persistent threat organization&#8221; had been identified that was using hacked social media accounts to target the <a href=\"https:\/\/www.google.com\/search?q=%27Persistent+Threat+Group%27+Targeting+Holders+of+NFT%2C+Says+Yuga+Labs&oq=%27Persistent+Threat+Group%27+Targeting+Holders+of+NFT%2C+Says+Yuga+Labs&aqs=chrome..69i57.772j0j9&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noreferrer noopener\">NFT community<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a>. The company urged followers to be vigilant.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Our security team has been tracking a persistent threat group that targets the NFT community. We believe that they may soon be launching a coordinated attack targeting multiple communities via compromised social media accounts. Please be vigilant and stay safe.<\/p>&mdash; Yuga Labs (@yugalabs) <a href=\"https:\/\/twitter.com\/yugalabs\/status\/1549157338665336839?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">July 18, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>The business has already alerted its community about the possibility of a hacking assault using social media.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Not first time, not last time<\/h2>\n\n\n\n<p>Gordon Goner, a co-founder of<a href=\"https:\/\/coinscreed.com\/staging\/apecoin-suffers-decline-amid-yuga-labs.html\" target=\"_blank\" rel=\"noreferrer noopener\"> Yuga Labs<\/a> who goes by the alias Gordon, forewarned the company in June of a potential oncoming attack on its Twitter social media accounts.<\/p>\n\n\n\n<p>Soon after the alert, Twitter representatives started keeping an eye on what was happening with the accounts and strengthened their security. Goner assured investors that the business would never engage in surprise mints, a common tactic used by attackers to seduce victims.<\/p>\n\n\n\n<p>Two official Discord groups connected to BAYC and OtherSide NFTs were also compromised during the month, giving con artists access to the official BAYC, Mutant Ape Yacht Club, and OtherSide Discord groups.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\" id=\"h-premint-nft-website-hacked\">Premint NFT website hacked<\/h2>\n\n\n\n<p>A few days have passed after threat actors broke into the well-known<a href=\"https:\/\/coinscreed.com\/staging\/re-entrancy-exploit-hits-nft-platform-omni-losing-1-4m-in-eth.html\" target=\"_blank\" rel=\"noreferrer noopener\"> NFT platform<\/a> Premint NFT and stole about 314 NFTs and $375,000 in Ethereum (ETH), making it one of the biggest NFT hacks of 2022.<\/p>\n\n\n\n<p>An NFT whitelisting tool called Premint enables NFT artists to swiftly gain access to a large number of verified NFT collectors and add them to a whitelist for new NFT projects. The NFT services platform boasts a database of more than 2.4 million collectors and more than 12,000 NFT projects.<\/p>\n\n\n\n<p>The thefts allegedly took place on Sunday as a result of hackers injecting malicious code onto Premint's website, according to blockchain security company Certik.<\/p>\n\n\n\n<p>Instead of requesting users to confirm their wallet ownership, the code instead granted hackers the rights they needed to transfer NFTs from the wallets of its victims.<\/p>\n\n\n\n<p>The attack has been traced to six wallets that included NFTs, including Goblintown, Otherside, Bored Ape Yacht Club, and<a href=\"https:\/\/coinscreed.com\/staging\/otherside-metaverse-demo-begins-with-4500-participants-highlights.html\" target=\"_blank\" rel=\"noreferrer noopener\"> Otherside.<\/a><\/p>\n\n\n\n<p>Users were warned that Premint would never ask them to sign any kind of transaction and that the company would &#8220;look into the matter.&#8221;<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">We&#39;re continuing to dig into this incident, but a reminder:<br><br>\u274c You will never, EVER be asked to approve ANY KIND OF transaction on PREMINT.<br><br>\u270d\ufe0f When connecting a wallet, you&#39;ll be asked to *sign* a message, but there will NEVER be a gas fee or anything resembling a transaction.<\/p>&mdash; PREMINT (@premint) <a href=\"https:\/\/twitter.com\/premint\/status\/1548909510118346753?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">July 18, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>In response to the incident, the site has also been altered, enabling users to log in without their wallets, which they claim will be safer and more practical.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Yuga Labs warning comes just days after hackers infiltrated the Premint NFT website and stole more than 300 NFTs and $375,000 in Ethereum. Several non-fungible token (NFT) communities may soon be the subject of an &#8220;organized attack,&#8221; according to Bored Ape Yacht Club (BAYC) developer Yuga Labs. On July 19, the NFT company informed its [&hellip;]<\/p>\n","protected":false},"author":38,"featured_media":32186,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[21],"tags":[8103],"class_list":["post-32182","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-yuga-labs"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/07\/maxresdefault.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/32182","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/38"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=32182"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/32182\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/32186"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=32182"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=32182"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=32182"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}