Tagged: security

Decentralized Infrastructure and Investments in Combatting Phishing Attacks are Key to Web3 Security, CertiK Explains

As the Web3 ecosystem continues to mature and evolve, significantly more capital is flowing into the crypto-assets sector — which, in many cases, has provided opportunities for hackers to “profit” from this by exploiting vulnerabilities on-chain. This, according to an update from CertiK. Unfortunately, blockchain… Read More

Decentralized Exchange THORChain Enables Ledger Live Desktop Clients to Swap Digital Assets Across Blockchains

THORChain via SwapKit is now available in the swap section of Ledger Live Desktop. THORChain is a cross-chain decentralized exchange, enabling Ledger Live Desktop users to swap digital assets across different DLT / blockchain networks “without needing a centralized exchange.” This integration allows for a… Read More

Web3 and Crypto Security Incidents Reportedly Led to $147M in Losses in Past Month

In October of 2024, Web3 security incidents led to total losses of approximately $147 million. According to the comprehensive SlowMist Blockchain Hack Archive, 28 separate attacks resulted in about $129 million in losses, with $19.3 million later recovered. These incidents are said to have involved… Read More

Regtech Fenergo Expands into Energy and Commodities Sectors, Bringing KYC and Onboarding Solutions to Key Markets

Fenergo, a provider of solutions for Know Your Customer (KYC), Anti-money Laundering (AML) transaction monitoring and Client Lifecycle Management (CLM), announced that is expanded into the energy and commodities sectors. This move provides solutions that aim to simplify client and supply chain onboarding and improve… Read More

Venture Capital Funding in Information Security Is in Midst of Rebound in North America and Europe – Report

Infosec VC (venture capital) funding in North America and Europe is in the midst of a “rebound,” according to a report from PitchBook which noted that that the ecosystem is driven primarily by late-stage rounds. PitchBook pointed out that they have tracked $8.8 billion in… Read More

Cybersecurity Threat Report: Lazarus APT Exploited Zero-Day Vulnerability in Chrome to Steal Crypto

Kaspersky’s Global Research and Analysis Team (GReAT) uncovered a sophisticated malicious campaign by the Lazarus Advanced Persistent Threat (APT) group, targeting cryptocurrency investors worldwide. The attackers allegedly used a “fake” cryptogame website that exploited a zero-day vulnerability in Google Chrome to “install spyware and steal… Read More

Trojan Attacks: Kaspersky Research and Analysis Team Identifies Grandoreiro Malware Targeting Banks in Mexico

Despite the arrest of key operators in early 2024, Grandoreiro continues to be used by its partners in new campaigns. Kaspersky Global Research and Analysis team (GReAT) has reportedly “discovered a new light version focused on Mexico, targeting around 30 banks.” These findings are to… Read More

Digital Assets: Garanti BBVA, Ripple, IBM to Enhance Performance and Security of Its Digital Platform

Garanti BBVA Kripto aims to provide high performance, security, and customer trust standards of digital assets by entering strategic collaborations with Ripple through the service received from its subsidiary and IBM, for the safe custody of its digital asset trading platform, which reportedly serves more… Read More

Crypto Exchange Security Breach Analysis: Coincover Shares Lessons from $230 Million WazirX Hack

One of India’s largest and most prominent crypto exchanges, WazirX, had experienced a damaging security breach back in July of this year. If you go and review some of WazirX’s online / social media activity even now, they don’t seem to have resolved this issue… Read More

Crypto Hardware Wallet Maker Ledger Introduces Update to Synchronize Digital Assets Accounts

France’s crypto hardware wallet maker Ledger says that it is sharply focused on maintaining a high level of security and privacy. Since launching the Ledger Live companion app, the French digital currency hardware wallet maker has continued to work on further improving the user experience… Read More

Banking as a Service Fintech Treezor Obtains PCI DSS Certification for Card Issuing

Treezor, the enabler of Banking-as-a-Service, became one of the first BaaS providers to obtain PCI DSS certification for card issuing. This certification “testifies” to Treezor’s operational and technical capacity to comply with the most “demanding” security standards and paves the way for developing new card-related… Read More

Digital Assets Custodian Tetra Trust Teams Up with Ledgible to Enhance Crypto-Asset Reconciliation Processes

As the digital asset landscape evolves, the demand for efficient data solutions has never been more “pressing.” Realizing this key requirement, Tetra Trust, Canada‘s qualified custodian for digital assets, has turned to Ledgible, a digital asset tax and accounting platform, to enhance their crypto-assets reconciliation… Read More

Crypto.com Upgrades PCI DSS to v4.0 Certification, a Key Milestone in Digital Payments Security

Crypto.com, which claims to be trusted by over 100 million customers worldwide and the service provider focused on ensuring regulatory compliance, security and privacy, announced that it has set a milestone by reportedly becoming one of the “first” cryptocurrency platforms to upgrade its Payment Card… Read More

Web3 and Crypto Security Challenges Remain Persistent Issue in Q3 with Over $753M Stolen by Bad Actors – Report

CertiK has released their latest Hack3d: The Web3 Security Quarterly Report for Q3 2024. CertiK notes in a blog post that their Hack3d: The Web3 Security Report for Q3 2024 aims to serve as an essential resource and record of statistics for understanding security challenges… Read More

Crypto.com Adds PayPal as New Payment Option

Crypto.com, which claims to be trusted by more than 100 million customers worldwide and the industry leader in regulatory compliance, security and privacy, announced this past week that users in the U.S. can add PayPal (NASDAQ:PYPL) as a payment method to fund purchases of cryptocurrencies…. Read More

Web3 Security Incidents in August Led to $316 Million in Estimated Losses – SlowMist Update

In August 2024, the total losses from Web3 security incidents were estimated to be around $316 million. According to the SlowMist Hacked Archives, 28 hacking incidents were recorded, resulting in approximately $253 million in losses, with $13.58 million being recovered. The incidents were caused by… Read More

Mastercard Selects India for Global Launch of Payment Passkey Service

During a keynote presentation at Global Fintech Fest in Mumbai, Mastercard (NYSE: MA)  announced the worldwide launch of its new Payment Passkey Service to make online shopping more secure and easier than ever. Debuting first in India as a pilot with some of the nation’s… Read More

ETH Adoption: Blockdaemon Joins Launch of Node Operator Risk Standard Certification for Ethereum

Blockdaemon has joined the launch of the industry’s “first” Node Operator Risk Standard (NORS) certification for Ethereum (ETH), establishing a new benchmark for operational security and risk management for the Ethereum node operators. Additionally, Blockdaemon now participates in the NORS Development Working Group, the group… Read More

Cybersecurity Firm Kaspersky Identifies Vulnerabilities in Open-Source Projects Suricata and FreeRDP

Kaspersky‘s security experts have found seven vulnerabilities in the widely used open-source projects Suricata and FreeRDP. Two of these vulnerabilities, CVE-2024-32664 and CVE-2024-32039, could “potentially allow attackers to execute arbitrary code on a vulnerable system, while others could enable unauthorized memory access.” These vulnerabilities were… Read More

Blockchain Security Firm CertiK Issues Official Statement on Kraken Vulnerability

In June, a team at CertiK conducting whitehat research discovered a “critical” vulnerability in the Kraken platform. This CertiK team then reportedly “notified the exchange to ensure this important vulnerability was fixed—which was a win for blockchain and Web3 security.” However, in conducting this work,… Read More

Send this to a friend