-
Analysis of the incident where 1400 Bitcoins were stolen from G
-
Date:2024-04-16 18:47:10 Channel:Wallet Read:
In today's digital age, with the rise of cryptocurrencies, cybersecurity issues have attracted much attention. The recent incident of the theft of 1,400 Bitcoins from a Github user has once again attracted widespread attention. This article will analyze this incident in depth, explore the reasons and lessons behind it, and present readers with a realistic warning about network security and cryptocurrency.Event review: Github user suffered 1,400 Bitcoins being stolenThe four most famous international exchanges:
Binance INTL
OKX INTL
Gate.io INTL
Huobi INTL
China Line APP DL China Line APP DL
China Line APP DL
China Line APP DL
Note: The above exchange logo is the official website registration link, and the text is the APP download link.
The core of this incident is that a Github user's Bitcoin wallet was stolen, and a total of 1,400 Bitcoins were transferred. The user posted a message for help on social media, but soon discovered that there was no way to trace and recover the stolen cryptocurrency. This incident not only sparked heated discussions in the community, but also raised concerns about the security of cryptocurrency.Security Vulnerability Investigation: Potential Risks in the Github PlatformAs the world's largest open source code hosting platform, Github provides services to millions of developers. However, precisely because of its openness and decentralization, it also provides opportunities for hackers to take advantage of it. Security experts pointed out that the Github platform has some potential security vulnerabilities, such as uncensored code submission, malware injection, etc., which may lead to losses of user assets.Community response: Users call for strengthening network security awareness and preventive measuresThis incident triggered extensive discussions in the Github community, and many users expressed concerns about the security of their accounts. Some senior developers put forward suggestions such as strengthening network security awareness training, regularly updating passwords and keys, and using multi-factor authentication. At the same time, some users have called on the Github platform to strengthen security review and monitoring to improve the overall security level.Cryptocurrency Security: A Required Course for Digital Asset ManagementAs the cryptocurrency market booms, digital asset management has become increasingly important. Users need to be wary of cyber attacks targeting personal information and assets, learn to allocate assets appropriately, and choose safe and reliable wallets and trading platforms. Only by strengthening security awareness can we better protect our digital wealth from loss.Lessons and reflections: Network security is always on the roadThis incident of the theft of 1,400 Bitcoins from a Github user has taught us a profound lesson: network security is always on the road, and absolute security does not exist. Users need to remain vigilant at all times and constantly learn and improve their awareness of network security. Only through joint efforts can we build a more secure and reliable digital world.Conclusion: Together we will protect the future of network securityOne day, when you are transferring money on Alipay, a pop-up window prompts you that the transfer failed because the version is too low. If the pop-up window not only prompts you that the transaction failed, but also includes an Alipay update link, most people will probably click on the link to proceed. renew.
If this link is a phishing link and directly obtains your transfer permission, it means that the money in your account will also be ruthlessly transferred. This time, a user encountered a similar situation.
On August 31, Beijing time, CertiK Skynet system (Skynet)
It was detected that the 1,400 Bitcoin tokens stolen by Github user "1400BitcoinStolen" have begun to be transferred to multiple different addresses.
The victim told electrum's Github issue that he lost 1,400 Bitcoins and posted his Bitcoin wallet address.
In the blockchain browser (reference link 3), you can see that a total of 1,404 BTC (worth $16.7 million) was withdrawn from his wallet on August 30 and deposited into the hacker's wallet.
Event restoration and analysis
The user is using the Electrum Bitcoin wallet, which was last used in 2017. Electrum has since released security updates, but the user has not installed them.
When a user uses Electrum to conduct a transaction, the wallet will broadcast a transaction to the server. If there is a problem with the transaction, the server will return an error message and display it to the user in the form of a pop-up window.
Electrum wallets before version 3.3.2 will not verify the error information returned by the server, and will even render the returned information in HTML (refer to link 4).
It is worth mentioning that anyone can build an Electrum node server. If a user connects to an attacker's server and initiates a transaction, the server can return any designed error message. For example, an error message is returned asking the user to update the Electrum wallet, as shown in the figure below.
However, the link in the picture points to malware written by the attacker himself. Once the user downloads and installs the software and imports his wallet into it, all the Bitcoins in the wallet will be transferred by the attacker.
This is essentially a phishing attack, but because the phishing information sent by the attacker is displayed through the official Electrum wallet, many people will believe it to be true.
In this incident, the victim's wallet was connected to a server controlled by the attacker, which caused the victim to receive a phishing message from the server, and all his Bitcoins were transferred by the attacker.
This problem with the Electrum wallet caused widespread discussion as early as the end of 2018 (refer to link 4).
Electrum officially fixed this problem in wallet version 3.3.4 in 2019. Subsequent versions of Electrum wallet will no longer directly display the content returned by the server to the user, nor will it perform html rendering.
In addition, because old versions of wallets still have this problem, all normal servers will conduct denial-of-service (DoS) attacks on wallets before version 3.3 to force users to update (refer to link 5).
CertiK Security Team Recommendations
When using a wallet for transactions, users need to ensure that the wallet is the latest version. Wallets that have been protected from old versions may have vulnerabilities that can be exploited by hackers.
When downloading wallet updates, users should pay attention to verify whether the download URL is consistent with the official one. After the download is completed, the signature of the wallet must be verified. For the wallet development team, it is necessary to find a professional team to do testing work to avoid loopholes in the project that may bring problems to users. Come to loss.
I'll answer.
Articles related to tags
- US Senator Bitcoin can vote with its feet Don’t create a hosti
- Taking stock of the mysterious creators of Bitcoin Who are thes
- How to download the Pancake Exchange APP Pancakeswap official w
- Being bombarded by Ponzi scheme and environmental public opinion
- Rich Dad author Global economy may collapse Bitcoin is worth $
- What does Bitcoin quarterly contract mean Popular explanations
- What should I do if my Bitcoin position is liquidated Do I have
- Which Bitcoin is cheaper OKEX or Huobi
- Is ANKR coin worth investing in Can I buy ANKR coins
- How to calculate the price of Bitcoin options
user
2480
Ask
968K+
reading
0
Answer
3H+
Upvote
2H+
Downvote
-
Artery Network(ARTR幣)在那裏挖?ArteryNetwork(ARTR幣)是一種新興的加密貨幣,它的採礦過程與比特幣和以太幣等其他加密貨幣類似。ARTR幣的挖礦過程是通過計算機資源解決複雜的數學問題來獲取新的幣。這一過程需要大量的計算能力和電力,因此挖礦者需要投入相應的硬件和電力成本。 A2025-03-26 21:33:09
-
Litbinex Coin(LTB幣)走勢如何LitbinexCoin LTB幣 作為一種加密貨幣,其價格走勢取決於市場供求和投資者對其價值的認知。在過去的一段時間裡,LTB幣的價格可能出現了一些波動,這可能是由於市場情緒、新聞事件或技術因素所引起的。 在過去的幾個月中,全球加密貨幣市場經歷了一些波動2025-03-26 21:33:03
-
Starbound(SBD幣)最新動態SBD幣,即Starbound,是一种基于区块链技术的加密货币,旨在为用户提供一种快速、安全和低成本的支付方式。最近,Starbound团队宣布了一系列重大动态,以提升其在加密货币市场的地位和影响力。 首先,Starbound团队宣布他们已经与几家知名的加2025-03-26 21:32:59
-
Catcoin(CATS幣)最新新聞最新消息指出,Catcoin(CATS幣)在近期取得了巨大的成功,吸引了越來越多投資者的關注。這種加密貨幣是專為貓主人和貓愛好者而設計的,旨在建立一個支持貓咪社群的加密支付系統。 Catcoin的價值一直在不斷上漲,吸引了許多散戶和機構投資者的投入。這種加2025-03-26 21:32:54
-
YFPI(YFPI幣)最新資訊YFPIYFPI幣是一種加密貨幣,它是由一個名為YFPI的去中心化金融平台所發行的。YFPI的目標是成為一個具有高度流動性和穩定價值的加密貨幣,讓用戶可以更方便地進行交易和支付。 最近,YFPI的價格一直在波動,受到市場情緒和投資者信心的影響。儘管如此,Y2025-03-26 21:32:49
-
WaveEduCoin(WEC幣)是詐騙?WaveEduCoinWEC幣是一個虛擬貨幣項目,宣稱旨在為教育領域提供解決方案。然而,有人對這個項目提出了質疑,認為WaveEduCoinWEC幣可能是一個詐騙項目。 首先,WaveEduCoinWEC幣的團隊背景和專業性受到質疑。許多投資者發現他們在官2025-03-26 21:32:43
-
Pegs Shares(PEGS幣)符合當地法律嗎PegsShares(PEGS幣)是一種加密貨幣,目前在市場上並無法得到明確的法律規範。然而,對於加密貨幣的法律規定在各國各地可能有所不同,因此在使用和投資這種加密貨幣時需要謹慎對待。 在一些國家,加密貨幣被視為合法的貨幣形式,並受到相應的法律保護。然而,2025-03-26 21:32:36
-
JUS Token(JUS幣)總部在那JUSTokenJUS幣是一家总部位于新加坡的加密货币公司。新加坡是一个国际金融中心,拥有完善的法律体系和监管机制,吸引了许多加密货币和区块链公司选择在这里设立总部。 JUSTokenJUS幣总部位于新加坡的好处包括: 1 法律体系完善:新加坡的法律体系健2025-03-26 21:32:30
-
I-COIN(ICN幣)非法傳銷ICN幣是一種加密貨幣,類似於比特幣或以太幣,通過區塊鏈技術進行交易和存儲價值。然而,近年來有一些人利用ICN幣進行非法傳銷活動,給投資者帶來了風險和損失。 非法傳銷是指通過招聘下線、忽悠投資者參與項目來賺取高額回報的行為。在ICN幣的非法傳銷中,一些不法2025-03-26 21:32:27
-
Glitch Protocol(GLCH幣)交易合法不GlitchProtocol(GLCH幣)是一種加密貨幣,其交易合法性取決於當地政府對加密貨幣的規定和監管。在一些國家,加密貨幣被視為合法的資產,可以自由交易和使用。然而,在一些國家,政府可能對加密貨幣實施嚴格的監管措施,甚至禁止其交易。 若要確定Glit2025-03-26 21:32:20
-
Cat(CAT幣)的交易量CAT幣是一種虛擬貨幣,目前在加密貨幣市場中交易量相對較小。然而,隨著加密貨幣市場的不斷發展和成長,CAT幣的交易量也在逐漸增加。 CAT幣的交易量取決於市場需求和供應情況,以及交易所的交易活動。一般來說,CAT幣的交易量可能會受到市場情緒、新聞事件、技術2025-03-26 21:34:43
-
紅域(巧克力)(QKL幣)涉嫌詐騙紅域(巧克力)(QKL幣)是一種虛擬貨幣,近期涉嫌詐騙的傳聞不斷。根據一些用戶的投訴和報導,有人聲稱在投資這個虛擬貨幣時遭受了損失,而且無法取回投資的資金。 在這種情況下,投資者應該格外小心,避免受騙。首先,要確保所投資的虛擬貨幣是合法的,有穩定的背景和可2025-03-26 21:34:37
-
Yukon(YUKON幣)倒閉了最近有傳聞指出,Yukon(YUKON幣)可能即將倒閉。這個消息引起了市場的驚慌和困憂,許多投資者和持有者都在擔心他們的資金和投資是否會受到影響。 Yukon是一種加密貨幣,最初是在2017年推出的。它在推出後吸引了很多投資者和用戶,因為它的技術和應用前景2025-03-26 21:34:33
-
AGPC TOKEN(AGPC幣)不合法AGPCTOKENAGPC幣 是一种虚拟货币,它并不是任何国家的法定货币,也不受到任何监管机构的监管。因此,AGPCTOKEN 不具备合法货币的属性,也没有法律地位。在很多国家和地区,虚拟货币并不被认可为合法支付工具,因此使用AGPCTOKEN 进行交易可2025-03-26 21:34:27
-
RentalChain(RNL幣)在中國禁止RentalChainRNL幣是一种基于区块链技术的租赁服务平台的代币,旨在通过区块链技术实现租赁行业的数字化和智能化。然而,由于中国政府对加密货币的监管政策非常严格,目前RentalChain在中国被禁止。 中国政府自2017年开始加强对加密货币的监管,2025-03-26 21:34:19
-
FlapXCoin(FLAPX幣)是空氣幣FlapXCoinFLAPX幣並不是空氣幣,而是一種虛擬加密貨幣。空氣幣通常指的是沒有實際的價值或用途,只是為了炒作而被創建出來的虛擬貨幣。然而,FlapXCoin是一種經過加密技術保護的數字貨幣,具有真實的價值和用途。 FlapXCoin是通過區塊鏈技術2025-03-26 21:34:13
-
CPUcoin(CPU幣)是什麽CPUcoin是一种基于区块链技术的加密货币,旨在通过共享计算资源来提高计算机性能和效率。CPUcoin的目标是利用闲置的计算资源,例如个人计算机或数据中心的服务器,来为用户提供更好的计算服务。CPUcoin的核心概念是将计算资源共享化,使得用户可以通过共2025-03-26 21:34:07
-
XMZ(XMZ幣)APP下載地址XMZ(XMZ幣)是一種加密貨幣,它是基於區塊鏈技術的去中心化數字貨幣。如果您想要使用XMZ幣進行交易或投資,您可以下載XMZ的官方應用程序來管理您的資產。 XMZ應用程序可以讓您輕鬆地查看您的賬戶餘額、進行轉賬和收款。同時,您還可以通過應用程序查看最新的2025-03-26 21:34:02
-
Sergey Save Link(SSL幣)近期會暴跌?近期,有一些市場分析師對SergeySaveLink SSL幣未來的走勢感到悲觀,認為它可能會暴跌。這種預測主要基於幣值波動性高和市場不穩定的情況下,SSL幣可能會受到影響而下跌。 首先,SSL幣是一種虛擬加密貨幣,價值受到市場供需和投資者情緒的影響。在市2025-03-26 21:33:58
-
Authoreon(AUN幣)近期會暴漲?近期,人們對Authoreon(AUN幣)的關注度正在逐漸增加,這可能導致其價格走勢出現一定程度的波動。有一些人認為,Authoreon的價格可能會出現暴漲的情況,這主要是基於以下幾個原因: 首先,Authoreon是一個新興的加密貨幣項目,它擁有一個強大2025-03-26 21:33:53