ETH multisig hack - #CryptoTrading

Some ETH multisig wallets created with parity are being drained right now.
News
     · [reports]  · Author: KarlVonBahnhof

Updates

The bug in Parity 1.5+ has been fixed - see it on github.

Some of the funds were secured by ways of the same hack by a group of white hackers.

Swarm: A swift response from a whitehat hacker group used the same exploit to drain many other project’s parity multisig wallets, in order to protect them from theft. This group was able to save over 377,000 ETH. Unfortunately the 44,055 ETH that was in Swarm City’s wallet is gone.

Black hat hacker wallet address with stolen ether: https://etherscan.io/address/0xb3764761e297d6f121e79c32a65829cd1ddb4d32

White hat wallet address with preserved ether: https://etherscan.io/address/0x1dba1131000664b884a1ba238464159892252d3a

Original article

There is a reason for the selloff, if you are looking for one: Parity 1.5+ security alert.

Some multisig wallets with contracts for ICOs created with certain versions of Parity are vulnerable and getting drained.

So far all ICO money for Edgeless Casino, aeternity and swarm.city is gone. It is 153k ETH which was worth about $32M when the heist started. At the moment it is around $30M. This is where the coins were sent to.

The bug has not been fixed yet so the draining might be going to continue for a while longer, unless money is moved out of vulnerable wallets in time.

The vulnerability is a serious one, allegedly one only needs the public key and certain kind of metadata and that is enough to regenerate the wallet.



Posted in Reports
Tagged as  

 

Last added to Crypto Airdrops, Bounties & Opportunities
Token and platform Date How to get the airdrop Link
Opportunity: Trade DeFi Tokens with NO FEES 14 days after signup The token exchange WhiteBit gives you 14 days of zero-fee trading if you sign up with a shill link. No KYC until 2 BTC/day withdrawal limit, lots of new DeFi projects get listed there. sign up
Elrond Catalyst Sale 25% Bonus on Bitfinex 10:00am - 10:15am UTC 23rd September 2020 Bitfinex will hold the EGLD token sale on 23rd Sep 2020. Users who want to buy Elrond are invited to pledge the amount they want to purchase. During the 15-minute "contribution window", successful contributors will receive an additional EGLD bonus of 25%. more here
Markaccy Bounty Launch promo Until 30 September 2020 MKCY is a token that is starting to trade on HOTBIT in September 2020. There are weekly social media bounties that must be reported into the linked bitcointalk thread. report here
Cloudbet Turbo Thursday Reload Bonus Every Thursday between 05:00-23:59 UTC Make a deposit of 0.1 mBTC or more today, Cloudbet gives you a 100% Reload Bonus of up to 50 mBTC/1 BCH. Remember you must activate the bonus in your player dashboard before making a deposit for the bonus to be credited! The bonus is only available for the Casino, not the Sportsbook. details
Opportunity: Negative Fees on Vaultoro Gold markets Since 22nd of July 2020 The gold trading platform Vaultoro is now offering negative fees for market makers. The rebate is 0.05% at any traded volume, however it only applies to crypto markets there - not to gold markets. At least the gold fees got cut back to pre-COVID levels on Vaultoro. more here
OKEx Crypto Signup Bonus Bonus for Signup OKEx, formerly called OKCoin and known as OKCasino, was the BitMEX of 2015 but has fallen out of favour since. They are now running a similar campaign as Coinbase did to get their signup rates up: If you sign up and buy 100 USD worth of BTC, you get 10 USD bonus. details