{"id":74127,"date":"2024-03-21T15:31:05","date_gmt":"2024-03-21T19:31:05","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=74127"},"modified":"2024-03-21T15:31:10","modified_gmt":"2024-03-21T19:31:10","slug":"hacker-transfers-10m-worth-of-ether-from-2023-phishing-attack","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/hacker-transfers-10m-worth-of-ether-from-2023-phishing-attack\/","title":{"rendered":"Hacker Transfers $10M Worth of Ether From 2023 Phishing Attack"},"content":{"rendered":"\n<p>A September 2023 phishing-associated account transferred $10 million in Ether to the <a href=\"https:\/\/coinscreed.com\/staging\/crypto-mixer-tornado-cash-loses-lawsuit-over-us-sanctions.html\" target=\"_blank\" rel=\"noreferrer noopener\">cryptocurrency mixing protocol Tornado Cash<\/a>.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"670\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-1024x670.png\" alt=\"Hacker Transfers $10M Worth of Ether From 2023 Phishing Hack\" class=\"wp-image-68050\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-1024x670.png 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-300x196.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-768x502.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-18x12.png 18w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-750x491.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7-1140x746.png 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7.png 1171w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Hacker Transfers $10M Worth of Ether From 2023 Phishing Attack<\/figcaption><\/figure>\n\n\n\n<p>A blockchain security firm, CertiK, identified an account associated with the $24 million breach on March 21 while transmitting 3,700 ETH to Tornado Cash. Phishing on September 6, 2023, resulted in the theft of funds from a cryptocurrency colossus.<\/p>\n\n\n\n<figure class=\"wp-block-image size-jnews-featured-750\"><img decoding=\"async\" width=\"750\" height=\"467\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-89-750x467.png\" alt=\"\" class=\"wp-image-74131\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-89-750x467.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-89-300x187.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-89-768x478.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-89.png 950w\" sizes=\"(max-width: 750px) 100vw, 750px\" \/><figcaption class=\"wp-element-caption\">Hacker transferring funds to Tornado Cash. Source: Etherscan<\/figcaption><\/figure>\n\n\n\n<p>The investor suffered a $24 million loss on ETH staked with the liquid staking provider Rocket Pool. Two transactions comprised the breach: one removed 4,851 rETH from the cryptocurrency colossus, while the other removed 9,579 stETH.<\/p>\n\n\n\n<p>Scam Sniffer, an anti-scam initiative, reported that the hacker obtained token approvals by having the victim approve an &#8220;Increase Allowance&#8221; transaction. With the owners' consent, the functionality permits third parties to expend <a href=\"https:\/\/coinscreed.com\/staging\/coinbase-introduces-recovery-tool-for-lost-erc-20-tokens.html\" target=\"_blank\" rel=\"noreferrer noopener\">ERC-20 tokens<\/a> of others via smart contracts.<\/p>\n\n\n\n<p>Much has been said about the token allowances feature in the cryptocurrency community, with some users being cautioned by experts that developers may be able to use malicious smart contracts to conduct schemes.<\/p>\n\n\n\n<p>PeckShield, a blockchain security firm, identified the exchange of assets for 1,64 million Dai and 13,785 ETH by the assailant.<\/p>\n\n\n\n<p>The majority of the stolen funds were transferred to alternative wallets, with a portion of the DAI being transmitted to the FixedFload exchange.<\/p>\n\n\n\n<p>Phishing attacks remain a significant challenge for the cryptocurrency industry. February witnessed the loss of nearly $47 million to <a href=\"https:\/\/coinscreed.com\/staging\/crypto-phishing-attacks-over-1-million-decrease-75-in-february.html\" target=\"_blank\" rel=\"noreferrer noopener\">crypto phishing schemes<\/a>, according to a report by Scam Sniffer.<\/p>\n\n\n\n<p>According to the report, 78% of the robberies occurred on the Ethereum network, with 86% of the stolen assets comprising ERC-20 tokens.<\/p>\n\n\n\n<p>Recently, token approvals have also resulted in losses for cryptocurrency consumers. Using an obsolete contract, the <a href=\"https:\/\/dolomite.io\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Dolomite exchange<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a> illegally withdrew $1.8 million from users on March 20.<\/p>\n\n\n\n<p>The vulnerability impacted users who granted authorizations for contract approvals. Dolomite's development team, therefore, strongly advised users to revoke any authorizations previously given to the obsolete contract address.<\/p>\n\n\n\n<p>While some attacks result in the loss of millions of dollars, others swiftly thwart attempts to steal cryptocurrencies. Intervention by its domain provider on March 20 prevented the Layerswap team from sustaining additional harm due to a breach of its website.<\/p>\n\n\n\n<p>However, the intruders stole approximately $100,000 worth of assets from fifty users. The protocol stated that it would provide additional compensation and refund the affected users for the inconvenience.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A September 2023 phishing-associated account transferred $10 million in Ether to the cryptocurrency mixing protocol Tornado Cash. A blockchain security firm, CertiK, identified an account associated with the $24 million breach on March 21 while transmitting 3,700 ETH to Tornado Cash. Phishing on September 6, 2023, resulted in the theft of funds from a cryptocurrency [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":68050,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476],"tags":[8138,2118,8194,10782],"class_list":["post-74127","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","tag-ether-3","tag-hacker","tag-phishing-attack","tag-tornado-cash-2"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/01\/image-7.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74127","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=74127"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74127\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/68050"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=74127"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=74127"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=74127"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}