{"id":82199,"date":"2024-06-23T10:22:53","date_gmt":"2024-06-23T14:22:53","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=82199"},"modified":"2024-06-23T10:39:24","modified_gmt":"2024-06-23T14:39:24","slug":"coinstats-confirms-breach-urges-users-to-move-funds","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/coinstats-confirms-breach-urges-users-to-move-funds\/","title":{"rendered":"CoinStats Confirms Breach, Urges Users to Move Funds"},"content":{"rendered":"\n<p>CoinStats reports a security breach affecting <a href=\"https:\/\/coinscreed.com\/staging\/41-of-top-zk-airdrop-wallets-have-sold-everything-report.html\" target=\"_blank\" rel=\"noreferrer noopener\">in-app wallets<\/a>, assuring users that externally connected wallets and CEXs are unaffected.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-full\"><img fetchpriority=\"high\" decoding=\"async\" width=\"860\" height=\"484\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1.jpeg\" alt=\"CoinStats Confirms Breach, Urges Users to Move Funds\" class=\"wp-image-82219\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1.jpeg 860w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1-300x169.jpeg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1-768x432.jpeg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1-750x422.jpeg 750w\" sizes=\"(max-width: 860px) 100vw, 860px\" \/><figcaption class=\"wp-element-caption\">CoinStats Confirms Breach, Urges Users to Move Funds<\/figcaption><\/figure>\n\n\n\n<p>A security incident that affected wallets created directly within the app was reported by CoinStats on June 22. The organization guarantees that centralized exchanges (CEXs) and wallets that are externally connected will not be affected.<\/p>\n\n\n\n<p>Users who have exported their private keys were advised to promptly transfer their funds, according to CoinStats. Refer to the following.<\/p>\n\n\n\n<figure class=\"wp-block-embed aligncenter is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">We are currently experiencing a security incident affecting wallets created directly within CoinStats; this does not impact externally connected wallets.<br><br>If you have your private key exported, move your funds ASAP.<\/p>&mdash; CoinStats (@CoinStats) <a href=\"https:\/\/twitter.com\/CoinStats\/status\/1804604741197893739?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">June 22, 2024<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>Only 1,590 of all CoinStats wallets, or 1.3%, were compromised, according to the CoinStats team.<\/p>\n\n\n\n<p>While it is possible that the list of wallets that are affected may evolve as the investigation progresses, substantial modifications are not anticipated.<\/p>\n\n\n\n<figure class=\"wp-block-embed aligncenter is-type-rich is-provider-twitter wp-block-embed-twitter\"><div class=\"wp-block-embed__wrapper\">\n<div class=\"embed-twitter\"><blockquote class=\"twitter-tweet\" data-width=\"550\" data-dnt=\"true\"><p lang=\"en\" dir=\"ltr\">Update on the Security Incident<br><br>The attack has been mitigated, and we have temporarily shut down the application to isolate the security incident.\u00a0 <br><br>1. None of the connected wallets and CEXes were impacted. <br><br>2. Thanks to the immediate incident reponse from the CoinStats team,\u2026<\/p>&mdash; CoinStats (@CoinStats) <a href=\"https:\/\/twitter.com\/CoinStats\/status\/1804633869372559788?ref_src=twsrc%5Etfw\" target=\"_blank\" rel=\"noopener\">June 22, 2024<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a><\/blockquote><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/div>\n<\/div><\/figure>\n\n\n\n<p>In order to conduct a comprehensive investigation of the incident, CoinStats has temporarily suspended user activity and disabled the application. The company has reassured users that the attack has been contained and will continue to provide updates as additional information becomes available.<\/p>\n\n\n\n<p>The fraudulent notifications were sent to <a href=\"https:\/\/coinscreed.com\/staging\/china-launches-digital-yuan-e-cny-wallet-pilot-on-android-and-ios-platforms.html\" target=\"_blank\" rel=\"noreferrer noopener\">iOS and Android<\/a> users by the bad actors, who fraudulently promised rewards and encouraged them to access the CoinStats AirScout wallet, as a result of the hack.<\/p>\n\n\n\n<p>Users were directed to a drainer website by clicking on the link, which was advertised through a push notification from CoinStats and an official in-app alert on the home screen.<\/p>\n\n\n\n<p>The incident has raised concerns regarding the security of private keys stored on the company's server and the randomness of wallets generated within the app, despite the fact that the cause of the attack had not been disclosed.<\/p>\n\n\n\n<p>CoinStats also uploaded a Google document that included a comprehensive inventory of all <a href=\"https:\/\/coinscreed.com\/staging\/arkham-reveals-top-5-public-crypto-wallets-hold-3-5-billion.html\" target=\"_blank\" rel=\"noreferrer noopener\">crypto wallets<\/a> that were impacted by the attack. It is recommended that owners whose wallet addresses are included in this list promptly relocate their funds using the exported private keys.<\/p>\n\n\n\n<p>The company is currently conducting an active investigation into the extent of the funds that have been transferred and will provide updates as soon as feasible. Coinstat expressed its appreciation for the users' forbearance during this time.<\/p>\n\n\n\n<p>The <a href=\"https:\/\/coinxpense.com\/andrew-tate-forecasts-solanas-will-propel-projects\/?swcfpc=1\" target=\"_blank\" rel=\"noreferrer noopener\">cryptocurrency community<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a> has been jolted by the security compromise, prompting industry professionals to caution victims against fraudulent rescue efforts.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>CoinStats reports a security breach affecting in-app wallets, assuring users that externally connected wallets and CEXs are unaffected. A security incident that affected wallets created directly within the app was reported by CoinStats on June 22. The organization guarantees that centralized exchanges (CEXs) and wallets that are externally connected will not be affected. Users who [&hellip;]<\/p>\n","protected":false},"author":36,"featured_media":82219,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[21],"tags":[3930,20163],"class_list":["post-82199","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news","tag-breach","tag-coinstats"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/CoinStats-Report-Hit-by-Security-Breach-Urges-Users-to-Move-Funds-860x484-1.jpeg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/82199","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/36"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=82199"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/82199\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/82219"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=82199"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=82199"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=82199"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}