{"id":42850,"date":"2022-12-27T13:40:36","date_gmt":"2022-12-27T17:40:36","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=42850"},"modified":"2022-12-28T08:38:16","modified_gmt":"2022-12-28T12:38:16","slug":"bitkeep-ceo-says-some-users-private-keys-are-still-vulnerable","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/bitkeep-ceo-says-some-users-private-keys-are-still-vulnerable\/","title":{"rendered":"BitKeep CEO says some users private keys are still vulnerable"},"content":{"rendered":"\n<h5 class=\"wp-block-heading\" id=\"h-the-blockchain-executive-urged-users-who-downloaded-the-bitkeep-7-2-9-apk-malware-to-transfer-their-assets-immediately\">The <a href=\"https:\/\/coinscreed.com\/staging\/adgm-courts-adopts-blockchain-to-expedite-business-verdicts.html\" target=\"_blank\" rel=\"noreferrer noopener\">blockchain executive <\/a>urged users who downloaded the BitKeep 7.2.9. APK malware to transfer their assets immediately.<\/h5>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-1024x576.jpg\" alt=\"BitKeep CEO says some users private keys are still vulnerable\" class=\"wp-image-42852\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-1024x576.jpg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-300x169.jpg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-768x432.jpg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-150x84.jpg 150w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-750x422.jpg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000-1140x641.jpg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000.jpg 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">BitKeep CEO says some users private keys are still vulnerable<\/figcaption><\/figure>\n\n\n\n<p>The <a href=\"https:\/\/www.google.com\/search?q=BitKeep+CEO+says+some+users+private+keys+are+still+vulnerable&oq=BitKeep+CEO+says+some+users+private+keys+are+still+vulnerable&aqs=chrome..69i57j69i61.690j0j7&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noreferrer noopener\">anonymous CEO of BitKeep, Kevin Como<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a>, stated in a letter published on Chinese blockchain news website Odaily.com on December 27 that customers' private keys are still in danger following a security incident on December 26 that resulted in losses of over $13 million at the time of publication. <\/p>\n\n\n\n<p>With more than 6 million users, BitKeep is one of the more well-known noncustodial, decentralized finance multichain wallets. Como specifically stated:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cThis was a large and atrocious hacker attack incident. The BitKeep APK 7.2.9 (Android Package Kit) installation package was hijacked and swapped by the hacker, and as a result, some users already installed the APKs that were planted malware by the hackers, leading to a leak of users\u2019 private keys.\u201d<\/p>\n<\/blockquote>\n\n\n\n<p>Como recommended customers to move their <a href=\"https:\/\/coinscreed.com\/staging\/israel-proposes-new-regulation-for-digital-assets-guidelines.html\" target=\"_blank\" rel=\"noreferrer noopener\">digital assets to a new wallet<\/a> if they have already downloaded the Android APK 7.2.9. &#8220;It is probable that [these wallets] already had their private keys leaked,\u201d the crypto executive wrote.<\/p>\n\n\n\n<p>Como detailed the work made, saying that the crypto wallet's team has already been in touch with SlowMist and other blockchain security companies to track down the cash that were taken.<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cWe have actively collected information about users\u2019 stolen assets, made a complete recollection of hacking procedures and timeline, and have collected evidence of the Android 7.2.9 APK malware,\u201d he stated.<\/p>\n<\/blockquote>\n\n\n\n<p>The <a href=\"https:\/\/coinscreed.com\/staging\/filecoin-introduces-web3-data-storage.html\" target=\"_blank\" rel=\"noreferrer noopener\">Web3 data analytics company OKLink<\/a> first revealed yesterday that the attacker created a number of phony BitKeep websites that contained an APK file that appeared to be BitKeep wallet version 7.2.9. Private keys or seed words were then taken from users who downloaded and interacted with the infected file and provided to the attacker.<\/p>\n\n\n\n<figure class=\"wp-block-embed is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">\u301012-26 <a href=\"https:\/\/twitter.com\/hashtag\/BitKeep?src=hash&ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">#BitKeep<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> Hack Event Summary\u3011<br>1\/n<br><br>According to OKLink data, the bitkeep theft involved 4 chains BSC, ETH, TRX, Polygon, OKLink included 50 hacker addresses and total Txns volume reached $31M.<\/p>&mdash; OKLink (@OKLink) <a href=\"https:\/\/twitter.com\/OKLink\/status\/1607356529929506817?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">December 26, 2022<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n","protected":false},"excerpt":{"rendered":"<p>The blockchain executive urged users who downloaded the BitKeep 7.2.9. APK malware to transfer their assets immediately. The anonymous CEO of BitKeep, Kevin Como , stated in a letter published on Chinese blockchain news website Odaily.com on December 27 that customers&#8217; private keys are still in danger following a security incident on December 26 that [&hellip;]<\/p>\n","protected":false},"author":43,"featured_media":42852,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476],"tags":[12819],"class_list":["post-42850","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","tag-bitkeep"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/12\/jpg_20221227_182420_0000.jpg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/42850","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=42850"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/42850\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/42852"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=42850"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=42850"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=42850"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}