Global fintech and funding innovation ecosystem

Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don’t)

Coindesk | Wolfie Zhao | June 20, 2018

bithumb Korean exchange hacked - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)On Wednesday, roughly 35 billion Korean won (around $31 million) in cryptocurrency was stolen by hackers from the South Korea-based exchange Bithumb.

Although the breach may not be as severe as the $530 million hack of the Coincheck exchange earlier this year, the fact that Bithumb now ranks as the sixth biggest trading venue in the world still marks it as a notable, and worrying, incident.

While more details about the heist have surfaced in the hours following the event's confirmation, providing a glimpse into Bithumb's internal operations, some important questions about the hack still remain unanswered.

Here's what we know about the hack so far, and some details we still don't.

What we know

XRP compromised

While Bithumb has not yet disclosed full details of the stolen coins, news emerged following the hack that XRP, the native token of the XRP ledger and the world's third-largest cryptocurrency, has been targeted, according to a report from CoinDesk Korea.

Based on data from CoinMarketCap, Bithumb accounted for 10 percent of the global trading volume of XRP over the last 24 hours, with a total of $32 million-worth changing hands.

Bithumb has so far not responded to CoinDesk's request for comment.

IT improvement failed

While Bithumb officially confirmed the breach early Wednesday morning local time, it appears that security issues were already drawing attention from the exchange at least several days ago.

According to a follow-up report from CoinDesk Korea, Bithumb conducted a security enhancement checkup on June 16, just days before the confirmed hack.

The exchange explained at the time:

"Recently, the number of unauthorized access attempts has increased. As such, an urgent server checkup was conducted to strengthen the security of all system."

At the same time, Bithumb also started moving users' assets to a cold wallet to store cryptocurrencies in a more secure offline environment.

The CoinDesk Korea report indicated that the hack comes at a time when Bithumb is spending 10 billion won, or around $9 million dollars annually on security measures. Another report from Yonhap further suggests that Bithumb beefed up its security measures by implementing so-called "5.5.7 regulations" last month.

Under this requirement, at least 5 percent of a financial institution's staff should be IT specialists. Among those, 5 percent should focus on information security, while at least 7 percent of the firm's total budget should be on information security.

See:  The growing cost of cybersecurity

The report from Yonhap stated that 21 percent of Bithumb's employees are technology specialists as of May, and 10 percent of those are responsible for information security. Further, about eight percent of the annual spending budget is used for data protection activities.

Although Bithumb appears to have fulfilled the 5.5.7 requirements, the report said the fact that it has 300 employees means it may not be able to cope with the increasing amount of trading volume and user numbers on its platform.

Government weighs in

An hour before Bithumb confirmed the hack on its website and official Twitter account, the exchange reported the case to the Korea Internet & Security Agency (KISA), a government organization that supervises internet and cybersecurity issues in the country.

An official from KISA said a dedicated analysis team is currently in the process of investigation the hack. As of press time, the agency has not yet disclosed any details from its investigation so far.

Bithumb to refund users

Immediately after announcing the hack, Bithumb confirmed it will pay back victims using its own reserves.

Industry experts later weighed in, including bitcoin pioneer Charlie Shrem, who praised the move despite the unwelcome incident.

"Bithumb hacked for $30 million but covering all losses. Out industry is getting better and stronger," he tweeted.

In addition, litecoin creator Charlie Lee also commented that he believes the smart move is to "keep on exchange coins that you are actively trading. It's best to withdraw right after trading."

This is not the first time that Bithumb was reportedly hacked. As previously reported by CoinDesk, the platform was compromised last year with as many as 30,000 users impacted.

At that time, Bithumb later announced that it would repay each victim with 100,000 Korean won each, an amount worth about $85.

Bitcoin price dips by $200 

According to data from CoinDesk, the price of bitcoin dropped by nearly $200 to a daily low so far of $6,561 an hour after Bithumb initially published the statement. As of press time, the price had bounced back to $6,640.

In addition, as Bithumb has so far only suspended asset deposits and withdrawals, trading activity on the exchange actually appears to be increasing since the news broke. Based on data from CoinMarketCap, 24-hour trading volume was initially seen at around $350 million at the time of the news and later climbed to $380 million around noon local time on Wednesday.

Check out:  Prices Aside, Crypto’s Tech Stack Is Steadily Improving

As of press time, Bithumb still remains the sixth largest platform globally.

What we don't know

Extent of the breach

It appears that XRP is one of the assets stolen in the hack, yet it's still unclear at the moment if other assets have been taken and in what quantities. In addition, it's also not clear the number of users on Bithumb that have been impacted.

In its announcement, Bithumb refrained disclosing these details, adding that it may disclose the hacked tokens today. It has not made any statement on that at press time.

Further, it's not publicly known at this time which wallet addresses the hacked cryptocurrencies have been sent to, or whether any have been liquidated or not.

Currently, there are over 37 cryptocurrency assets on Bithumb that are available for trading against the Korean won. Among them, EOS and TRON together account for over half of the total trading volume on Bithumb, at 31 and 22 percent, respectively.

Continue to the full article --> here

 

latest news - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)

 

Funding | Sep 29, 2023 ZayZoon, a prominent Earned Wage Access scale-up for small and mid-sized businesses, and founded in Calgary, recently announced that they raised $34.5 million in debt and equity during its Series B financing round. Investors include Framework Venture Partners who led this round, with notable co-investment from Export Development Canada (EDC) and participation from ATB Financial and existing shareholders. ZayZoon is a financial empowerment platform specifically designed for small and mid-sized businesses. The company's primary mission is to provide employees with the ability to access their earned wages before the traditional payday, a service known as Earned Wage Access (EWA). This innovative approach aims to alleviate financial stress and break the paycheck-to-paycheck cycle that many individuals face. Catering to the varied needs of its users, ZayZoon offers multiple payout options, including bank deposits, debit cards, and fee-free alternatives like Instant Gift Cards and Gas Cards See:  Redefining Payday: Earned Wage Access (EWA) Insights from Harvard Study ZayZoon emphasizes seamless integration with existing payroll and HR infrastructures. In 2023, the company was notably recognized as an ADP and PrismHR Marketplace Partner of the Year. Their trajectory is nothing short of remarkable, boasting a 400% increase in payouts ...
Unsplash Fabian Blank Earned wages - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Capital | Sep 29, 2023 This week hails the launch of Capital Compass BC, a dynamic and collaborative platform by Innovate BC, InBC Investment Corp., PacifiCan, and New Ventures BC, designed to bolster and connect BC's thriving entrepreneurial ecosystem. British Columbia (B.C.) is a hub of innovation, with entrepreneurs and companies propelling it as a leading innovation center in North America. Capital Compass BC is not just a boon for businesses but also for investors, innovators, and ecosystem enablers. It's publicly accessible, free-to-use, and allows individuals to submit relevant information, making it searchable within the platform. Key Features of Capital Compass BC: Comprehensive Database: The platform provides detailed insights into startups, scaleups, investors, entrepreneurial resources, and the flow of investment capital within BC.  There are currently 538 fintech startups and scale-ups based in BC listed on the platform. Advanced Filtering: Users can explore the vast database using filters like sector, company stage, funding round, and other pivotal characteristics. This facilitates the identification of trends, opportunities, and gaps in the regional innovation ecosystem. Support for Companies: Beyond just being a data repository, Capital Compass BC aids companies in navigating funding sources and amplifying their visibility in the market. Investor's Paradise: Investors ...
Capital Compass BC - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Sep 29, 2023 Funding Transfers Via PayID From Australia Gambling for real money is not complete without a reliable payment system. This is a guarantee that fraudsters won’t get your cash. And it will not magically disappear. Therefore, the transfer method choice is on par with the search for a casino. Security comes first, so let's take a look at how the system creators provide it. First of all, we'd like to point out that only your bank can see the personal data required to receive the code. The online casino does not see them. In addition, PayID uses SSL protection. Advantages And Disadvantages We highlight such pros: Speed. Online casino transfers are instant, so you can start betting right away. Withdrawals depend on the gambling platform due to additional checks. Security. Everything is as safe as transferring directly to a bank account, just more anonymous. You only need a code. Simplicity. Remembering a combination or just a login is easier than looking for a piece of paper with your account number every time. You can connect to the system in just a few clicks. Communication. PayID transfers allow short descriptions of up to 280 characters. You can specify the ...
Unsplash mobile payment 1 - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
BoC | Sep 28, 2023 The Bank of Canada has extended an invitation to members of the Retail Payment Advisory Committee (RPAC) and the broader payment service provider (PSP) community to share feedback on its supervisory approach to transaction reporting. The Bank is keen on understanding the current practices of payment service providers (PSPs) and aims to develop an effective strategy for transaction reporting. This initiative is not limited to RPAC members alone; the Bank is actively seeking diverse opinions from the entire PSP industry. See:  Citi’s Top 10 Insights on Cross-Border Payments 2023 By sharing your feedback, you will help the Bank gain insights into the current practices of PSPs and also contribute to the development of a robust transaction reporting approach. Survey The Bank has launched a survey to better understand the information needs of PSPs. This will aid PSPs in understanding the Bank's expectations and preparing for upcoming retail payment supervision. The results of this survey will shape the Bank's communication strategy, ensuring PSPs are well-informed and ready to comply with forthcoming legislation.  The survey is entirely voluntary, and the Bank guarantees that no personally identifiable information will be collected or shared. You can complete the survey ...
Wikicommons media Bank of Canada - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Crypto Regulation | Sep 28, 2023 EU's MiCA framework sets a new standard in crypto regulation, as the UK and US navigate their unique challenges and the global community calls for coordinated oversight. The European Union, with its groundbreaking MiCA framework has set a precedent. Meanwhile, the UK and the US are carving their unique paths. Drawing insights from a recent EU report, this article provides an update of the regulatory landscape across these jurisdictions, highlighting the challenges, opportunities, and global implications of their respective approaches to crypto-assets and stablecoins. EU's Regulatory Approach to Crypto-Assets In 2023, the European Union introduced the innovative Markets in Crypto-assets (MiCA) framework, a comprehensive regulatory measure designed to oversee the burgeoning crypto-asset markets. The primary focus of MiCA is on stablecoins, ensuring that their value remains consistent with official currencies. This framework combines stringent transparency and governance measures with prudential rules similar to those applied to traditional financial institutions. The overarching aim of MiCA is to ensure better protection for citizens, maintain financial stability, and foster both innovation and financial inclusion in the crypto space. UK and US The United Kingdom has charted its own path in the crypto realm. With comprehensive crypto legislation ...
Unsplash Charles Forerunner - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Sep 28, 2023 Fintech is an ever-evolving world where every click counts and every lead may be game-changing; therefore mastering SEO has become essential. Welcome to Fintech SEO where competing for top search engine results pages (SERPs) rankings doesn't simply translate to visibility but rather leads to sales conversion. In this article, we'll uncover its immense power, discuss why high SERP rankings lead to conversions and traverse organic traffic that fuels fintech success. SERP Rankings in Fintech Imagine this: you need financial advice or are searching for investment options, where would you go? Chances are you would consult your search engine; the websites appearing at the top of those search results have built trust among both their users and search engines alike. ➡️ High Rankings Are an Indication of Trustworthiness Achieving high rankings on SERPs for your fintech website is like earning a gold star of trustworthiness from users; they know Google or Bing have already approved and reviewed your services - often leading to them opting for them over those offered by your competitors. When you enlist the expertise of a fintech SEO agency such as Sure Oak, you're essentially enlisting professionals who specialize in elevating your trustworthiness on ...
Unsplash John Schnobrich SEO - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Cyber Security | Sep 27, 2023 The cyber landscape in 2023 has witnessed a significant surge in ransomware attacks, with small businesses becoming the primary targets. According to a report from Infosecurity Magazine, ransomware attackers are increasingly targeting smaller, less defended organizations. There was a 47% increase in new victims in the latter half of 2022, with many of these being small businesses with less mature cyber postures. Specifically, 57% of the victims of the LockBit gang, known for high-profile attacks on the Royal Mail and Taiwan Semiconductor Manufacturing Company (TSMC), were small businesses. Many of these groups are moving away from traditional encryption-based attacks. Instead, they threaten to expose and publicize sensitive information, shifting from ransomware to pure extortion tactics. See:  Small Businesses Incur Greatest Loss of Cyber Attacks | 67% Suffer Repeat Attacks Within 12 Months Ransomware by the Numbers In the first half of 2023, there was a 45.27% global increase in ransomware victim organizations, totaling 2,001. During the same period, the sectors most targeted by ransomware were banking, retail, and transportation. LockBit, a dominant ransomware since 2022, primarily targeted IT, finance, and professional services. Nearly 50% of all ransomware victims were US-based organizations, a significant increase ...
Wikimedia Commons BlueBreezeWiki Ransomware - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Release | Sep 27, 2023 Elevate's Acquisition of CIX is A Testament to Canada's Flourishing Startup Ecosystem Canada's startup landscape has always been a vibrant tapestry of innovation, ambition, and collaboration. At the heart of this ecosystem, organizations like the Canadian Innovation Exchange (CIX) have played pivotal roles in spotlighting the nation's most promising startups and bridging the gap between innovators and investors. As a long-time community partner and admirer of CIX, the National Crowdfunding & Fintech Association of Canada (NCFA) is thrilled about this acquisition announcement. NCFA & CIX: A Journey Together Over the years, NCFA has had the privilege of walking alongside CIX, celebrating its successes, and learning from its vast experiences. Our partnership has been rooted in mutual respect and a shared passion for fostering innovation in Canada. We've watched CIX grow, evolve, and transform into Canada's largest startup awards program and investment conference. Their annual curation program has consistently showcased the crème de la crème of Canadian startups, attracting attention from North American VCs, corporates, and private equity investors. See:  Clay Financial Closes $1.7 Million Pre-Seed to Offer Home Equity Sharing AltFi Product in Canada Both Elevate and CIX have been champions of innovation, tirelessly working ...
CIX Logo 2024 300x125 1 - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
AI | Sep 27, 2023 Amazon agrees to invest up to $4 billion in Anthropic to compete against other tech giants like Microsoft, Meta, Google, and Nvidia who are heavily invested in the space. The initial investment will see Amazon infuse $1.25 billion for a minority stake in Anthropic. Furthermore, Amazon retains the option to increase its investment to a total of $4 billion. Anthropic, backed by notable investors including Google, Spark Capital, Salesforce, Sound Ventures, Menlo Ventures, and Zoom, has amassed a total funding of $2.7 billion so far, and has ambitious plans. In May of this year, the startup achieved a valuation of approximately $5 billion following a $450 million funding round. The valuation set by Amazon in their recent investment in Anthropic has not been disclosed.  For context, OpenAI has already secured more than $11 billion in funding, with a significant portion coming from Microsoft. See:  OSFI’s Evolving Focus on Integrity & Security Anthropic aims to raise as much as $5 billion over the next two years and has recently launched its consumer-facing premium subscription plan of chatbot Claude 2 and has plans to develop a "frontier model" named "Claude-Next." This model is projected to be ten ...
Unsplash Steve Johnson AI - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)
Sep 27, 2023 Citi's groundbreaking partnership with BondbloX underscores the rising prominence of fractional bonds in reshaping the global investment landscape. What are Fractional Bonds? Fractional bonds (see Digital bonds), as the name suggests, allow investors to own a fraction of a bond rather than the entire bond. This concept is similar to buying shares in a company. Instead of purchasing an entire bond, which might be cost-prohibitive for many retail investors, they can buy a fraction of it. This democratizes bond trading, making it accessible to a broader audience. See:  Catastrophe Bonds: Killer Use Case for Digital Asset Adoption? The concept of fractional bonds is still relatively new, but it's gaining traction rapidly. Platforms like BondbloX are at the forefront of this movement. BondbloX, which started as BondEvalue, has made significant strides in simplifying bond investing. Their platform allows investors to track and trade bonds electronically, much like stocks. This approach not only makes bond trading more accessible but also integrates the advantages of equities trading into the bond market. Citi and BondbloX's IRL Partnership One of the most notable partnerships in the fractional bond space is between BondbloX and Citi. As we've seen from the recent announcement, Citi ...
Unsplash Viktor Forgacs Building - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)

 


NCFA Jan 2018 resize - Bithumb $31 Million Crypto Exchange Hack: What We Know (And Don't)The National Crowdfunding & Fintech Association of Canada (NCFA Canada) is a cross-Canada non-profit actively engaged with cryptocurrency, blockchain, crowdfunding, alternative finance, fintech, P2P, ICO, and online investing stakeholders globally. NCFA Canada provides education, research, industry stewardship, services, and networking opportunities to thousands of members and subscribers and works closely with industry, government, academia, community and eco-system partners and affiliates to create a strong and vibrant crowdfunding and fintech industry. Join Canada's Fintech & Funding Community today FREE! Or become a contributing member and get perks. For more information, please visit: ncfacanada.org

Leave a Reply

Your email address will not be published. Required fields are marked *

17 + 20 =