<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=BitGrail_NANO_Hack</id>
	<title>BitGrail NANO Hack - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=BitGrail_NANO_Hack"/>
	<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;action=history"/>
	<updated>2026-04-20T13:31:16Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.39.1</generator>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=5777&amp;oldid=prev</id>
		<title>Azoundria at 19:45, 10 May 2024</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=5777&amp;oldid=prev"/>
		<updated>2024-05-10T19:45:01Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;table style=&quot;background-color: #fff; color: #202122;&quot; data-mw=&quot;interface&quot;&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;col class=&quot;diff-marker&quot; /&gt;
				&lt;col class=&quot;diff-content&quot; /&gt;
				&lt;tr class=&quot;diff-title&quot; lang=&quot;en&quot;&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;← Older revision&lt;/td&gt;
				&lt;td colspan=&quot;2&quot; style=&quot;background-color: #fff; color: #202122; text-align: center;&quot;&gt;Revision as of 13:45, 10 May 2024&lt;/td&gt;
				&lt;/tr&gt;&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l4&quot;&gt;Line 4:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 4:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;BitGrail stored vast sums of NANO in the form of hot wallets and contained an exploit which allowed traders to withdraw their NANO twice, allowing users to withdraw more than they held on the exchange. After hackers repeatedly exploited this glitch in the withdrawal mechanism to steal 2.5m NANO from massive hot wallets on the site, Mr. Firano, who managed BitGrail largely by himself, did not choose to address the issue. He did not even choose to announce the issue or the loss. His sole action was to ban the offending users. Unsurprisingly, abuse of the exploit continued for months, including a future loss of over 7.5m more NANO.  Months later, with the price of NANO significantly higher, Mr. Firano attempted to resolve the matter by asking the NANO team to create a hard fork (of months and months of transactions which had been being stolen continuously). When that didn’t work, he made a plan to relaunch the exchange and use ongoing profits to repay victims, however his plan failed to include any sort of security upgrades, change of leadership, or addition of new talent to address the extreme lack of competence. Mr. Firano posted a vague poll to the general public via Twitter, in which 80% of respondents requested he go into bankruptcy as opposed to relaunching. He then ignored both this poll and a court order, restarting the exchange for all of a few hours. The end result was that both he and the exchange were declared bankrupt, and assets of the exchange were seized. The BitGrail website is full of information on the ongoing bankruptcy proceedings which continue to this day.&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;BitGrail stored vast sums of NANO in the form of hot wallets and contained an exploit which allowed traders to withdraw their NANO twice, allowing users to withdraw more than they held on the exchange. After hackers repeatedly exploited this glitch in the withdrawal mechanism to steal 2.5m NANO from massive hot wallets on the site, Mr. Firano, who managed BitGrail largely by himself, did not choose to address the issue. He did not even choose to announce the issue or the loss. His sole action was to ban the offending users. Unsurprisingly, abuse of the exploit continued for months, including a future loss of over 7.5m more NANO.  Months later, with the price of NANO significantly higher, Mr. Firano attempted to resolve the matter by asking the NANO team to create a hard fork (of months and months of transactions which had been being stolen continuously). When that didn’t work, he made a plan to relaunch the exchange and use ongoing profits to repay victims, however his plan failed to include any sort of security upgrades, change of leadership, or addition of new talent to address the extreme lack of competence. Mr. Firano posted a vague poll to the general public via Twitter, in which 80% of respondents requested he go into bankruptcy as opposed to relaunching. He then ignored both this poll and a court order, restarting the exchange for all of a few hours. The end result was that both he and the exchange were declared bankrupt, and assets of the exchange were seized. The BitGrail website is full of information on the ongoing bankruptcy proceedings which continue to this day.&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This exchange or platform is based in Italy, or the incident targeted people primarily in Italy.&amp;lt;ref name=&amp;quot;bitcoinmagazine-6&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;kylegibson-86&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-107&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;fortune-149&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-150&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;thenextweb-151&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bitgrailvictimsmedium-152&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;newsdotbitcoin-153&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;finder-154&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;marketswikicrypto-155&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;dropbox-156&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;techcrunch-157&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bomberfrancytwitter-158&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;thenextweb-159&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cryptopotato-161&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;blockexplorer-162&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;fintechnews-164&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-197&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bitcoinexchangeguide-218&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;ciphertrace-1152&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;slowmisthacked-1160&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cryptonewsbullsmedium-7990&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;reddit-7991&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;reddit-9270&amp;quot; /&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;This exchange or platform is based in Italy, or the incident targeted people primarily in Italy.&amp;lt;ref name=&amp;quot;bitcoinmagazine-6&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;kylegibson-86&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-107&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;fortune-149&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-150&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;thenextweb-151&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bitgrailvictimsmedium-152&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;newsdotbitcoin-153&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;finder-154&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;marketswikicrypto-155&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;dropbox-156&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;techcrunch-157&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bomberfrancytwitter-158&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;thenextweb-159&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cryptopotato-161&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;blockexplorer-162&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;fintechnews-164&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cointelegraph-197&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;bitcoinexchangeguide-218&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;ciphertrace-1152&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;slowmisthacked-1160&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cryptonewsbullsmedium-7990&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;reddit-7991&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;reddit-9270&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;carnegieendowment-9983&lt;/ins&gt;&amp;quot; /&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== About BitGrail ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== About BitGrail ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l58&quot;&gt;Line 58:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 58:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;|&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;|&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;|}&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;|}&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;== Technical Details ==&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;This section includes specific detailed technical analysis of any security breaches which happened. What specific software vulnerabilities contributed to the problem and how were they exploited?&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== Total Amount Lost ==&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;== Total Amount Lost ==&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot; id=&quot;mw-diff-left-l141&quot;&gt;Line 141:&lt;/td&gt;
&lt;td colspan=&quot;2&quot; class=&quot;diff-lineno&quot;&gt;Line 144:&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref name=&amp;quot;reddit-7991&amp;quot;&amp;gt;[https://www.reddit.com/r/CryptoCurrency/comments/7whjln/francesco_firano_bitgrail_stole_millions_never/ FRANCESCO FIRANO (BITGRAIL) STOLE MILLIONS. NEVER FORGET THIS FACE. : CryptoCurrency] (Jun 8, 2022)&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref name=&amp;quot;reddit-7991&amp;quot;&amp;gt;[https://www.reddit.com/r/CryptoCurrency/comments/7whjln/francesco_firano_bitgrail_stole_millions_never/ FRANCESCO FIRANO (BITGRAIL) STOLE MILLIONS. NEVER FORGET THIS FACE. : CryptoCurrency] (Jun 8, 2022)&amp;lt;/ref&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot;&gt;&lt;/td&gt;&lt;td style=&quot;background-color: #f8f9fa; color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #eaecf0; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;br/&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;−&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #ffe49c; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref name=&amp;quot;reddit-9270&amp;quot;&amp;gt;[https://www.reddit.com/r/CryptoCurrency/comments/7u1hs4/either_you_die_a_programmer_or_live_long_enough/ &amp;quot;Either you die a programmer, or live long enough to become a scammer&amp;quot; - Owner of Bitgrail : CryptoCurrency] (Oct 17, 2022)&amp;lt;/ref&amp;gt;&amp;lt;/references&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&amp;lt;ref name=&amp;quot;reddit-9270&amp;quot;&amp;gt;[https://www.reddit.com/r/CryptoCurrency/comments/7u1hs4/either_you_die_a_programmer_or_live_long_enough/ &amp;quot;Either you die a programmer, or live long enough to become a scammer&amp;quot; - Owner of Bitgrail : CryptoCurrency] (Oct 17&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;, 2022)&amp;lt;/ref&amp;gt;&lt;/ins&gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt; &lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;tr&gt;&lt;td colspan=&quot;2&quot; class=&quot;diff-side-deleted&quot;&gt;&lt;/td&gt;&lt;td class=&quot;diff-marker&quot; data-marker=&quot;+&quot;&gt;&lt;/td&gt;&lt;td style=&quot;color: #202122; font-size: 88%; border-style: solid; border-width: 1px 1px 1px 4px; border-radius: 0.33em; border-color: #a3d3ff; vertical-align: top; white-space: pre-wrap;&quot;&gt;&lt;div&gt;&lt;ins style=&quot;font-weight: bold; text-decoration: none;&quot;&gt;&amp;lt;ref name=&amp;quot;carnegieendowment-9983&amp;quot;&amp;gt;[https://carnegieendowment.org/specialprojects/protectingfinancialstability/timeline Timeline of Cyber Incidents Involving Financial Institutions - Carnegie Endowment for International Peace] (Dec 12&lt;/ins&gt;, 2022)&amp;lt;/ref&amp;gt;&amp;lt;/references&amp;gt;&lt;/div&gt;&lt;/td&gt;&lt;/tr&gt;
&lt;/table&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=3477&amp;oldid=prev</id>
		<title>Azoundria at 16:34, 14 April 2023</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=3477&amp;oldid=prev"/>
		<updated>2023-04-14T16:34:19Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;a href=&quot;https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;amp;diff=3477&amp;amp;oldid=1991&quot;&gt;Show changes&lt;/a&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=1991&amp;oldid=prev</id>
		<title>Azoundria at 05:32, 17 February 2023</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=1991&amp;oldid=prev"/>
		<updated>2023-02-17T05:32:46Z</updated>

		<summary type="html">&lt;p&gt;&lt;/p&gt;
&lt;a href=&quot;https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;amp;diff=1991&amp;amp;oldid=299&quot;&gt;Show changes&lt;/a&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=299&amp;oldid=prev</id>
		<title>Azoundria: Created page with &quot;{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/bitgrailnanohack.php}}  BitGrail stored vast sums of NANO in the form of hot wallets and contained an exploit which allowed traders to withdraw their NANO twice, allowing users to withdraw more than they held on the exchange. After hackers repeatedly exploited this glitch in the withdrawal mechanism to steal 2.5m NANO from massive hot wallets on the site, Mr. Firano, who managed BitGrail largely by...&quot;</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=BitGrail_NANO_Hack&amp;diff=299&amp;oldid=prev"/>
		<updated>2023-01-24T21:11:06Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/bitgrailnanohack.php}}  BitGrail stored vast sums of NANO in the form of hot wallets and contained an exploit which allowed traders to withdraw their NANO twice, allowing users to withdraw more than they held on the exchange. After hackers repeatedly exploited this glitch in the withdrawal mechanism to steal 2.5m NANO from massive hot wallets on the site, Mr. Firano, who managed BitGrail largely by...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/bitgrailnanohack.php}}&lt;br /&gt;
&lt;br /&gt;
BitGrail stored vast sums of NANO in the form of hot wallets and contained an exploit which allowed traders to withdraw their NANO twice, allowing users to withdraw more than they held on the exchange. After hackers repeatedly exploited this glitch in the withdrawal mechanism to steal 2.5m NANO from massive hot wallets on the site, Mr. Firano, who managed BitGrail largely by himself, did not choose to address the issue. He did not even choose to announce the issue or the loss. His sole action was to ban the offending users. Unsurprisingly, abuse of the exploit continued for months, including a future loss of over 7.5m more NANO.  Months later, with the price of NANO significantly higher, Mr. Firano attempted to resolve the matter by asking the NANO team to create a hard fork (of months and months of transactions which had been being stolen continuously). When that didn’t work, he made a plan to relaunch the exchange and use ongoing profits to repay victims, however his plan failed to include any sort of security upgrades, change of leadership, or addition of new talent to address the extreme lack of competence. Mr. Firano posted a vague poll to the general public via Twitter, in which 80% of respondents requested he go into bankruptcy as opposed to relaunching. He then ignored both this poll and a court order, restarting the exchange for all of a few hours. The end result was that both he and the exchange were declared bankrupt, and assets of the exchange were seized. The BitGrail website is full of information on the ongoing bankruptcy proceedings which continue to this day.&lt;br /&gt;
&lt;br /&gt;
This exchange or platform is based in Italy, or the incident targeted people primarily in Italy.&lt;br /&gt;
&lt;br /&gt;
== About BitGrail ==&lt;br /&gt;
“An obscure Italian cryptocurrency exchange called BitGrail claims that it was hacked late last week and lost roughly $195 million worth of customers’ cryptocurrency.” &amp;quot;Just last Thursday, the core team was contacted by Firano in regard to a loss from the BitGrail wallet. According to a leaked conversation, 15 million Nano was reported ‘stolen’ by Firano, and a request was made to fork the chain. However, Nano developer Zack Shapiro pointed out the fact that the situation had been going on for months. It seems as though Firano was dealing with undisclosed issues of insolvency rather than an apparent hack.&amp;quot; “The court notes that in July 2017, 2.5 million Nano were stolen from the exchange, and that Firano has been aware of it and announced that the involved exchange accounts have been blacklisted on Twitter in the same month. According to the ruling, in October of the same year — three months later — another 7.5 million Nano was stolen.” “it was the BitGrail exchange that [because of a software flaw] actually requested to the node multiple times to allow the funds to leave the wallet” and “not the Nano network that allowed the multiple withdrawals.&lt;br /&gt;
&lt;br /&gt;
Furthermore, the exchange also reportedly stored all of its Nano cryptocurrency holdings in a “hot wallet,” which compromised its security.” “BitGrail was offline at the time. He claimed to be torn between claiming bankruptcy (which would absolve himself of the responsibility to pay the money back), or returning 20 percent of the lost funds immediately with a pledge to eventually give back the rest.” “The Italian Bankruptcy Court published the sentence on Jan. 21. A post by the BGVG published the same day as the court sentence explains that “the court concluded that both Bitgrail and Mr. Firano, personally, be declared bankrupt, authorizing seizures of many of Mr. Firano’s personal assets.”&lt;br /&gt;
&lt;br /&gt;
&amp;quot;The man who ran Italian-based cryptocurrency exchange BitGrail was arrested for allegedly defrauding more than 230,000 people of €120 million ($146 million) collectively. In what was deemed &amp;quot;the biggest cyber-financial attack in Italy and one of the biggest in the world,&amp;quot; the BitGrail boss faced charges of computer fraud, fraudulent bankruptcy, and money laundering.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;In 2018, the same man alerted police of a Nano Coin hack, communicating the loss of &amp;quot;a huge sum.&amp;quot; Ivano Gabrielli, who is the head of the National Centre for Cyber Crimes in Italy, said that when their team started investigating, it became clear that the man was actually the head of BitGrail “[and] it…[was]...not yet clear whether he participated actively in the theft or if he simply decided not to increase security measures after discovering it.” The police further allege that the man, a 34-year-old known as &amp;quot;F.F.,&amp;quot; interfered to prevent them from halting the continuing theft.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
This exchange or platform is based in Italy, or the incident targeted people primarily in Italy.&lt;br /&gt;
&lt;br /&gt;
The background of the exchange platform, service, or individuals involved, as it would have been seen or understood at the time of the events.&lt;br /&gt;
&lt;br /&gt;
Include:&lt;br /&gt;
&lt;br /&gt;
* Known history of when and how the service was started.&lt;br /&gt;
* What problems does the company or service claim to solve?&lt;br /&gt;
* What marketing materials were used by the firm or business?&lt;br /&gt;
* Audits performed, and excerpts that may have been included.&lt;br /&gt;
* Business registration documents shown (fake or legitimate).&lt;br /&gt;
* How were people recruited to participate?&lt;br /&gt;
* Public warnings and announcements prior to the event.&lt;br /&gt;
&lt;br /&gt;
Don't Include:&lt;br /&gt;
&lt;br /&gt;
* Any wording which directly states or implies that the business is/was illegitimate, or that a vulnerability existed.&lt;br /&gt;
* Anything that wasn't reasonably knowable at the time of the event.&lt;br /&gt;
There could be more than one section here. If the same platform is involved with multiple incidents, then it can be linked to a main article page.&lt;br /&gt;
&lt;br /&gt;
== The Reality ==&lt;br /&gt;
This sections is included if a case involved deception or information that was unknown at the time. Examples include:&lt;br /&gt;
&lt;br /&gt;
* When the service was actually started (if different than the &amp;quot;official story&amp;quot;).&lt;br /&gt;
* Who actually ran a service and their own personal history.&lt;br /&gt;
* How the service was structured behind the scenes. (For example, there was no &amp;quot;trading bot&amp;quot;.)&lt;br /&gt;
* Details of what audits reported and how vulnerabilities were missed during auditing.&lt;br /&gt;
&lt;br /&gt;
== What Happened ==&lt;br /&gt;
The specific events of the loss and how it came about. What actually happened to cause the loss and some of the events leading up to it.&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|+Key Event Timeline - BitGrail NANO Hack&lt;br /&gt;
!Date&lt;br /&gt;
!Event&lt;br /&gt;
!Description&lt;br /&gt;
|-&lt;br /&gt;
|February 1st, 2018 12:00:58 AM&lt;br /&gt;
|First Event&lt;br /&gt;
|This is an expanded description of what happened and the impact. If multiple lines are necessary, add them here.&lt;br /&gt;
|-&lt;br /&gt;
|&lt;br /&gt;
|&lt;br /&gt;
|&lt;br /&gt;
|-&lt;br /&gt;
|&lt;br /&gt;
|&lt;br /&gt;
|&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
== Total Amount Lost ==&lt;br /&gt;
The total amount lost is unknown.&lt;br /&gt;
&lt;br /&gt;
How much was lost and how was it calculated? If there are conflicting reports, which are accurate and where does the discrepancy lie?&lt;br /&gt;
&lt;br /&gt;
== Immediate Reactions ==&lt;br /&gt;
How did the various parties involved (firm, platform, management, and/or affected individual(s)) deal with the events? Were services shut down? Were announcements made? Were groups formed?&lt;br /&gt;
&lt;br /&gt;
== Ultimate Outcome ==&lt;br /&gt;
What was the end result? Was any investigation done? Were any individuals prosecuted? Was there a lawsuit? Was any tracing done?&lt;br /&gt;
&lt;br /&gt;
== Total Amount Recovered ==&lt;br /&gt;
It is unknown how much was recovered.&lt;br /&gt;
&lt;br /&gt;
What funds were recovered? What funds were reimbursed for those affected users?&lt;br /&gt;
&lt;br /&gt;
== Ongoing Developments ==&lt;br /&gt;
What parts of this case are still remaining to be concluded?&lt;br /&gt;
&lt;br /&gt;
== Prevention Policies ==&lt;br /&gt;
Coming soon.&lt;br /&gt;
&lt;br /&gt;
== References ==&lt;br /&gt;
[https://bitcoinmagazine.com/articles/infographic-overview-compromised-bitcoin-exchange-events Infographic: An Overview of Compromised Bitcoin Exchange Events] (Jan 29)&lt;br /&gt;
&lt;br /&gt;
[https://medium.com/@kylegibson/100-crypto-thefts-a-timeline-of-hacks-glitches-exit-scams-and-other-lost-cryptocurrency-873c87fd5522 100 Crypto Thefts: A Timeline of Hacks, Glitches, Exit Scams, and other Lost Cryptocurrency Incidents] (Jan 24)&lt;br /&gt;
&lt;br /&gt;
[https://cointelegraph.com/news/from-coincheck-to-bithumb-2018-s-largest-security-breaches-so-far From Coincheck to Bithumb: 2018’s Largest Security Breaches So Far] (Feb 22)&lt;br /&gt;
&lt;br /&gt;
[https://fortune.com/2018/02/11/bitgrail-cryptocurrency-claims-hack/ BitGrail Cryptocurrency Exchange Claims $195 Million Lost to Hackers] (Feb 24)&lt;br /&gt;
&lt;br /&gt;
[https://cointelegraph.com/news/owner-of-hacked-crypto-exchange-bitgrail-sentenced-to-return-funds-to-customers Owner of Hacked Crypto Exchange BitGrail Sentenced to Return Funds to Customers] (Feb 24)&lt;br /&gt;
&lt;br /&gt;
[https://thenextweb.com/hardfork/2019/01/28/bitgrail-court-cryptocurrency-nano/ Italian court forces BitGrail CEO to repay $170M in ‘lost’ cryptocurrency] (Feb 24)&lt;br /&gt;
&lt;br /&gt;
[https://medium.com/@bitgrailvictims/the-bitgrail-exchange-ruling-a-win-for-cryptocurrency-exchange-users-50df6c383571 THE BITGRAIL EXCHANGE RULING: A WIN FOR CRYPTOCURRENCY EXCHANGE USERS] (Feb 24)&lt;br /&gt;
&lt;br /&gt;
[https://news.bitcoin.com/italian-court-orders-bitgrail-founder-to-refund-170m-of-missing-cryptocurrency/ Italian Court Orders Bitgrail Founder Firano $170 Million of Missing Cryptocurrency] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://www.finder.com.au/the-nano-bitgrail-saga-is-now-over-and-its-changed-cryptocurrency The Nano-Bitgrail saga is now over, and it's changed cryptocurrency | finder.com.au] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[http://crypto.marketswiki.com/index.php?title=BitGrail BitGrail - CryptoMarketsWiki] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://www.dropbox.com/s/3g38y67luolfvqs/Colin_ZS_Bitgrail_chat_log.pdf?dl=0 Dropbox - Colin_ZS_Bitgrail_chat_log.pdf - Simplify your life] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://techcrunch.com/2018/02/12/bitgrail-hack-nano/ Italian cryptocurrency exchange gets hacked for $170 million in Nano – TechCrunch] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://twitter.com/bomberfrancy/status/965223247494119424 Francesco The Bomber on Twitter: &amp;quot;Cosa preferireste che facesse BitGrail?&amp;quot;] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://thenextweb.com/hardfork/2018/02/20/bitgrail-cryptocurrency-exchange-nano/ Cryptocurrency exchange BitGrail contemplates exit scheme on Twitter] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://cryptopotato.com/lessons-learned-from-the-biggest-crypto-hacks-in-history/ Lessons Learned from the Biggest Crypto Hacks in History] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://blockexplorer.com/news/biggest-cryptocurrency-hacks-2018/ The Biggest Cryptocurrency Hacks of 2018 (A Year in Which $1 Billion Crypto Was Stolen)] (Feb 25)&lt;br /&gt;
&lt;br /&gt;
[https://fintechnews.sg/23594/blockchain/cryptocurrency-hack-binance/ A Look Back on Some of the Most Devastating Crypto Hacks | Fintech Singapore] (Feb 26)&lt;br /&gt;
&lt;br /&gt;
[https://cointelegraph.com/news/crypto-exchange-hacks-in-review-proactive-steps-and-expert-advice Crypto Exchange Hacks in Review: Proactive Steps and Expert Advice] (Mar 1)&lt;br /&gt;
&lt;br /&gt;
[https://bitcoinexchangeguide.com/bitcoin/scams-hacks/ Bitcoin Scams and Cryptocurrency Hacks List - BitcoinExchangeGuide.com] (Mar 4)&lt;br /&gt;
&lt;br /&gt;
[https://ciphertrace.com/wp-content/uploads/2021/01/CipherTrace-Cryptocurrency-Crime-and-Anti-Money-Laundering-Report-012821.pdf CipherTrace Cryptocurrency Crime and Anti-Money Laundering Report 2020] (Jun 19)&lt;br /&gt;
&lt;br /&gt;
[https://hacked.slowmist.io/en/?c=Exchange SlowMist Hacked - SlowMist Zone] (Jun 25)&lt;br /&gt;
&lt;br /&gt;
[https://medium.com/@cryptonewsbulls/is-mercatox-involved-in-195-million-dollar-bitgrail-heist-d14cc95165c https://medium.com/@cryptonewsbulls/is-mercatox-involved-in-195-million-dollar-bitgrail-heist-d14cc95165c] (Jun 8)&lt;br /&gt;
&lt;br /&gt;
[https://www.reddit.com/r/CryptoCurrency/comments/7whjln/francesco_firano_bitgrail_stole_millions_never/ FRANCESCO FIRANO (BITGRAIL) STOLE MILLIONS. NEVER FORGET THIS FACE. : CryptoCurrency] (Jun 8)&lt;br /&gt;
&lt;br /&gt;
[https://www.reddit.com/r/CryptoCurrency/comments/7u1hs4/either_you_die_a_programmer_or_live_long_enough/ &amp;quot;Either you die a programmer, or live long enough to become a scammer&amp;quot; - Owner of Bitgrail : CryptoCurrency] (Oct 17)&lt;/div&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
</feed>