<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=Centrifuge_%24YUMI_AI_Token_Twitter%2FX_Compromise</id>
	<title>Centrifuge $YUMI AI Token Twitter/X Compromise - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=Centrifuge_%24YUMI_AI_Token_Twitter%2FX_Compromise"/>
	<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=Centrifuge_$YUMI_AI_Token_Twitter/X_Compromise&amp;action=history"/>
	<updated>2026-05-30T08:28:51Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.39.1</generator>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=Centrifuge_$YUMI_AI_Token_Twitter/X_Compromise&amp;diff=6523&amp;oldid=prev</id>
		<title>Azoundria: Created page with &quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/centrifuge$yumiaitokentwitterxcompromise.php}} {{Unattributed Sources}}  Centrifuge Logo/HomepageCentrifuge, a platform for tokenizing real-world assets (RWAs) within decentralized finance (DeFi), was compromised when its official Twitter account was hacked on January 3rd. The attacker used a replica of Twitter’s login page to steal login credentials and...&quot;</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=Centrifuge_$YUMI_AI_Token_Twitter/X_Compromise&amp;diff=6523&amp;oldid=prev"/>
		<updated>2025-02-06T22:13:57Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/centrifuge$yumiaitokentwitterxcompromise.php}} {{Unattributed Sources}}  &lt;a href=&quot;/cryptocurrencyhackscamfraudwiki/index.php?title=File:Centrifugeio.jpg&quot; title=&quot;File:Centrifugeio.jpg&quot;&gt;thumb|Centrifuge Logo/Homepage&lt;/a&gt;Centrifuge, a platform for tokenizing real-world assets (RWAs) within decentralized finance (DeFi), was compromised when its official Twitter account was hacked on January 3rd. The attacker used a replica of Twitter’s login page to steal login credentials and...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/centrifuge$yumiaitokentwitterxcompromise.php}}&lt;br /&gt;
{{Unattributed Sources}}&lt;br /&gt;
&lt;br /&gt;
[[File:Centrifugeio.jpg|thumb|Centrifuge Logo/Homepage]]Centrifuge, a platform for tokenizing real-world assets (RWAs) within decentralized finance (DeFi), was compromised when its official Twitter account was hacked on January 3rd. The attacker used a replica of Twitter’s login page to steal login credentials and bypass 2FA, gaining full access to the account. They posted fraudulent links, including a fake fundraising address disguised as an AI project token, which led to the theft of 93.57 SOL. The fraudster also promoted an &amp;quot;AI pool&amp;quot; investment scam and targeted Solana holders. Centrifuge acted quickly by partnering with security experts, alerting the community, and working with Twitter to regain control by January 6th. After securing the account, the platform implemented additional security measures, such as hardware security keys and enhanced training to prevent future breaches.&amp;lt;ref name=&amp;quot;odailynews-17872&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;centrifuge-17873&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;centrifugetwitter-17874&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;coinrankiotwitter-17875&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;jefferystuarttwitter-17876&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;gbbigbuytwitter-17877&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cryptalihanwallets-17878&amp;quot; /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== About Centrifuge ==&lt;br /&gt;
Centrifuge and Plume Network have partnered to drive next-generation innovation in tokenized real-world assets (RWAs) within decentralized finance (DeFi). Centrifuge's platform provides the infrastructure for tokenizing a wide range of assets, enabling seamless management of funds and access to real-time on-chain data. With over $675 million in assets financed and more than 1,600 assets tokenized, Centrifuge supports asset managers and investors by offering a transparent, scalable, and flexible environment for RWA investments. The platform is designed to enhance efficiency while providing full transparency of asset performance and transactions.&lt;br /&gt;
&lt;br /&gt;
The partnership with Plume Network aims to further revolutionize the DeFi ecosystem by integrating real-world assets into decentralized finance protocols, creating new opportunities for liquidity and institutional adoption. Centrifuge’s commitment to this innovative market is demonstrated through its strategic collaborations with key industry players, such as Aave, BlockTower, MakerDAO, and others. These partnerships help unlock the potential of tokenized RWAs, enhancing the stability of DeFi ecosystems and paving the way for broader institutional participation in blockchain-based finance. Centrifuge is now positioned as a leader in real-world asset tokenization, focused on accelerating DeFi's evolution by providing essential tools and expertise to the sector.&lt;br /&gt;
&lt;br /&gt;
== The Reality ==&lt;br /&gt;
It would appear that the team managing the Centrifuge Twitter/X account was not trained in understanding phishing attacks.&lt;br /&gt;
&lt;br /&gt;
== What Happened ==&lt;br /&gt;
&amp;quot;The official X account of the RWA lending protocol Centrifuge was compromised, and fake information was posted.&amp;quot;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|+Key Event Timeline - Centrifuge $YUMI AI Token Twitter/X Compromise&lt;br /&gt;
!Date&lt;br /&gt;
!Event&lt;br /&gt;
!Description&lt;br /&gt;
|-&lt;br /&gt;
|January 4th, 2025 8:45:00 PM MST&lt;br /&gt;
|Jeffrey Stuart Bullish On Hack&lt;br /&gt;
|According to one trader, &amp;quot;hacking corporate crypto accounts with anime waifus is the meta we need&amp;quot; and &amp;quot;thats why its bullish dummy&amp;quot;.&lt;br /&gt;
|-&lt;br /&gt;
|January 4th, 2025 10:39:00 PM MST&lt;br /&gt;
|CoinRank News Posted&lt;br /&gt;
|CoinRank posts an announcement that on January 5, the official Twitter account of the RWA lending protocol Centrifuge was hacked. The hacker posted a fundraising address disguised as an AI project token, which currently holds 93.57 SOL. Users are warned not to interact with the compromised account and are urged to remain vigilant to protect their assets.&lt;br /&gt;
|-&lt;br /&gt;
|January 5th, 2025 2:57:00 AM MST&lt;br /&gt;
|@0x4Graham Warning Tweet&lt;br /&gt;
|&amp;quot;The @centrifuge account has been hacked. We've been emailing you for 2 days now, but to no avail. Please, if anything just suspend the account so the HACKERS cannot post anymore scams.&amp;quot;&lt;br /&gt;
|-&lt;br /&gt;
|January 5th, 2025 7:09:00 AM MST&lt;br /&gt;
|YUMI AI Pool Post&lt;br /&gt;
|A reported tweet shares that there are 48 hours left to get in on the AI pool, with as little as 1 Solana invested.&lt;br /&gt;
|-&lt;br /&gt;
|January 5th, 2025 8:01:54 AM MST&lt;br /&gt;
|Victim Sending Funds Transaction&lt;br /&gt;
|One of the largest transactions, transfering 209.22 Solana into a fraudster's wallet.&lt;br /&gt;
|-&lt;br /&gt;
|January 5th, 2025&lt;br /&gt;
|Odaily Planet Daily Report&lt;br /&gt;
|Odaily Planet Daily reports that the official X account of the RWA lending protocol Centrifuge was hacked and false information was posted. Users are advised to remain vigilant and be cautious of risks.&lt;br /&gt;
|-&lt;br /&gt;
|January 5th, 2025 7:19:00 PM MST&lt;br /&gt;
|Whales Still Holding/Trading&lt;br /&gt;
|Apparently there are still 25 whales holding and trading the $YUMI token, despite Centrifugre reportedly confirming that their Twitter account was hacked.&lt;br /&gt;
|-&lt;br /&gt;
|January 6th, 2025 1:47:00 PM MST&lt;br /&gt;
|Post About Regained Access&lt;br /&gt;
|The Centrifuge team posts on Twitter/X to announce that they have successfully recovered access to the account after it was hacked on January 3rd. The attacker reportedly used a replica of Twitter's website to steal login details and bypass 2FA, allowing them to post malicious links. In response, Centrifuge partnered with security experts, alerted the community, and worked with Twitter to regain control by January 6th. Following the recovery, the team implemented enhanced security measures, including new 2FA settings, credential resets, and mandatory hardware security keys for critical services to prevent future attacks. They thank the community for their vigilance.&lt;br /&gt;
|-&lt;br /&gt;
|January 7th, 2025 3:24:00 AM MST&lt;br /&gt;
|Pandaly List Inclusion&lt;br /&gt;
|The incident is included in a list of recent hack/scam events compiled by Pandaly.&lt;br /&gt;
|-&lt;br /&gt;
|January 7th, 2025 10:08:00 AM MST&lt;br /&gt;
|Public Call Live Now&lt;br /&gt;
|The Centrifuge team are reportedly having a public call.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
== Technical Details ==&lt;br /&gt;
Fraudsters exploited Centrifuge's official Twitter account by creating a replica of the Twitter login page to steal sensitive information. On January 3rd, the attacker tricked the account’s followers into providing their account ID, password, and a one-time password generated by the two-factor authentication (2FA) system. This allowed the hacker to gain full access to the account, which enabled them to log out all active sessions, modify the 2FA settings, and prevent account recovery through standard methods.&lt;br /&gt;
&lt;br /&gt;
With control of the account, the fraudster set up a mobile passkey to bypass any password reset attempts, effectively locking out legitimate account holders from regaining control. The attacker then used the compromised account to post malicious links, promoting a scam token. These posts misled followers into engaging with a fake fundraising address disguised as part of an AI project token, encouraging them to send funds to the scam address. This address was later found to hold 93.57 SOL, which represents the amount stolen through the fraud. These actions exploited the trust of Centrifuge’s community and put their assets at risk, underlining the need for swift intervention and enhanced security measures to prevent similar attacks in the future.&lt;br /&gt;
&lt;br /&gt;
Some of the schemes launched by fraudsters included:&lt;br /&gt;
&lt;br /&gt;
Fake Fundraising Address (Disguised as an AI Project Token): The primary scam involved posting a fraudulent fundraising address on Centrifuge's compromised Twitter account. The address was presented as part of an AI project token, luring followers into thinking they were contributing to a legitimate cause. This scam address eventually held 93.57 SOL.&lt;br /&gt;
&lt;br /&gt;
AI Pool Investment Scam: In another attempt to deceive users, a tweet about a fake &amp;quot;AI pool&amp;quot; was shared, claiming that there were 48 hours left to participate with as little as 1 Solana. This was designed to encourage users to invest in the scam token $YUMI, which was linked to the fraudulent activities.&lt;br /&gt;
&lt;br /&gt;
Phishing for Solana (SOL): A victim transferred 209.22 Solana into the scammer's wallet, highlighting that the attacker was directly targeting Solana holders by tricking them into sending funds to the fraudulent address. This type of scam is a classic example of a &amp;quot;phishing&amp;quot; attempt, where users are manipulated into sending cryptocurrency to an illegitimate wallet.&lt;br /&gt;
&lt;br /&gt;
== Total Amount Lost ==&lt;br /&gt;
Losses appear to be significant, however there is no tally of all wallets which could be located.&lt;br /&gt;
&lt;br /&gt;
The total amount lost is unknown.&lt;br /&gt;
&lt;br /&gt;
== Immediate Reactions ==&lt;br /&gt;
Centrifuge reports that they quickly partnered with security experts, alerted the community, and attempted recovery through Twitter's standard process. They escalated the issue with Twitter, regaining control by January 6th. Immediate security measures were implemented, such as resetting credentials and 2FA settings.&lt;br /&gt;
&lt;br /&gt;
== Ultimate Outcome ==&lt;br /&gt;
By January 6th, the account was secured, and Centrifuge implemented immediate security measures, including resetting credentials and 2FA, to prevent future breaches. Additionally, Centrifuge took further steps to enhance security, such as requiring hardware-based security keys for critical services and providing their team with enhanced training to detect phishing attacks. The compromised funds from the scam address were not mentioned as recovered, but the security of the account was restored, and the team emphasized their commitment to preventing similar incidents in the future.&lt;br /&gt;
&lt;br /&gt;
== Total Amount Recovered ==&lt;br /&gt;
There do not appear to have been any funds recovered in this case.&lt;br /&gt;
&lt;br /&gt;
What funds were recovered? What funds were reimbursed for those affected users?&lt;br /&gt;
&lt;br /&gt;
== Ongoing Developments ==&lt;br /&gt;
What parts of this case are still remaining to be concluded?&lt;br /&gt;
== Individual Prevention Policies ==&lt;br /&gt;
{{Prevention:Individuals:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Individuals:End}}&lt;br /&gt;
&lt;br /&gt;
== Platform Prevention Policies ==&lt;br /&gt;
{{Prevention:Platforms:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Platforms:End}}&lt;br /&gt;
&lt;br /&gt;
== Regulatory Prevention Policies ==&lt;br /&gt;
{{Prevention:Regulators:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Regulators:End}}&lt;br /&gt;
&lt;br /&gt;
== References ==&lt;br /&gt;
&amp;lt;references&amp;gt;&amp;lt;ref name=&amp;quot;odailynews-17872&amp;quot;&amp;gt;[https://www.odaily.news/newsflash/411298 Centrifuge官方X账户被盗并发布虚假信息，请当心风险_快讯-odaily] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;centrifuge-17873&amp;quot;&amp;gt;[https://centrifuge.io/ Centrifuge | The Platform for Onchain Finance] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;centrifugetwitter-17874&amp;quot;&amp;gt;[https://twitter.com/centrifuge/status/1876370075403317725 @centrifuge Twitter] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;coinrankiotwitter-17875&amp;quot;&amp;gt;[https://twitter.com/CoinRank_io/status/1875779227242602979 @CoinRank_io Twitter] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;jefferystuarttwitter-17876&amp;quot;&amp;gt;[https://twitter.com/jeffery__stuart/status/1875750565940166954 @jeffery__stuart Twitter] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;gbbigbuytwitter-17877&amp;quot;&amp;gt;[https://twitter.com/Gbbigbuy/status/1876677246393659491 @Gbbigbuy Twitter] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;cryptalihanwallets-17878&amp;quot;&amp;gt;[https://twitter.com/cryptalihan/status/1875869848133369874 cryptalihan - &amp;quot;Wallets connected to draine dont know if it helps&amp;quot; - Twitter/X] (Accessed Feb 6, 2025)&amp;lt;/ref&amp;gt;&amp;lt;/references&amp;gt;&lt;/div&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
</feed>