<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
	<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=CoinPoker_Hot_Wallet_Third-party_Vulnerability</id>
	<title>CoinPoker Hot Wallet Third-party Vulnerability - Revision history</title>
	<link rel="self" type="application/atom+xml" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?action=history&amp;feed=atom&amp;title=CoinPoker_Hot_Wallet_Third-party_Vulnerability"/>
	<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=CoinPoker_Hot_Wallet_Third-party_Vulnerability&amp;action=history"/>
	<updated>2026-05-06T13:43:28Z</updated>
	<subtitle>Revision history for this page on the wiki</subtitle>
	<generator>MediaWiki 1.39.1</generator>
	<entry>
		<id>https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=CoinPoker_Hot_Wallet_Third-party_Vulnerability&amp;diff=6396&amp;oldid=prev</id>
		<title>Azoundria: Created page with &quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinpokerhotwalletthirdpartyvulnerability.php}} {{Unattributed Sources}}  CoinPoker Logo/HomepageCoinPoker is an online poker/gambling site where players can play Poker against one another. On November 7th, a large withdrawal occurred from their hot wallet. The system was brought offline the next day, and they sent the hacker an on-chain message roughly a wee...&quot;</title>
		<link rel="alternate" type="text/html" href="https://quadrigainitiative.com/cryptocurrencyhackscamfraudwiki/index.php?title=CoinPoker_Hot_Wallet_Third-party_Vulnerability&amp;diff=6396&amp;oldid=prev"/>
		<updated>2024-12-20T18:03:49Z</updated>

		<summary type="html">&lt;p&gt;Created page with &amp;quot;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinpokerhotwalletthirdpartyvulnerability.php}} {{Unattributed Sources}}  &lt;a href=&quot;/cryptocurrencyhackscamfraudwiki/index.php?title=File:Coinpoker.jpg&quot; title=&quot;File:Coinpoker.jpg&quot;&gt;thumb|CoinPoker Logo/Homepage&lt;/a&gt;CoinPoker is an online poker/gambling site where players can play Poker against one another. On November 7th, a large withdrawal occurred from their hot wallet. The system was brought offline the next day, and they sent the hacker an on-chain message roughly a wee...&amp;quot;&lt;/p&gt;
&lt;p&gt;&lt;b&gt;New page&lt;/b&gt;&lt;/p&gt;&lt;div&gt;{{Imported Case Study With About|source=https://www.quadrigainitiative.com/casestudy/coinpokerhotwalletthirdpartyvulnerability.php}}&lt;br /&gt;
{{Unattributed Sources}}&lt;br /&gt;
&lt;br /&gt;
[[File:Coinpoker.jpg|thumb|CoinPoker Logo/Homepage]]CoinPoker is an online poker/gambling site where players can play Poker against one another. On November 7th, a large withdrawal occurred from their hot wallet. The system was brought offline the next day, and they sent the hacker an on-chain message roughly a week later. In response, it appears that the hacker decided to move the funds through TornadoCash.&amp;lt;ref name=&amp;quot;web3isgoinggreat-16983&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;cyversalertstwitter-16984&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;etherscan-16985&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;etherscan-16986&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;coinpokerofftwitter-16987&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;coinpokerofftwitter-16988&amp;quot; /&amp;gt;&amp;lt;ref name=&amp;quot;web3isgoinggreat-16989&amp;quot; /&amp;gt;&lt;br /&gt;
&lt;br /&gt;
== About CoinPoker ==&lt;br /&gt;
&amp;quot;Join the No.1 Crypto Poker Site and Receive up to $2,000 Welcome Bonus! Instant withdrawals to your crypto wallet. 150% welcome bonus + 33% rakeback. Customer funds secure &amp;amp; visible on-chain&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== The Reality ==&lt;br /&gt;
This sections is included if a case involved deception or information that was unknown at the time. Examples include:&lt;br /&gt;
&lt;br /&gt;
* When the service was actually started (if different than the &amp;quot;official story&amp;quot;).&lt;br /&gt;
* Who actually ran a service and their own personal history.&lt;br /&gt;
* How the service was structured behind the scenes. (For example, there was no &amp;quot;trading bot&amp;quot;.)&lt;br /&gt;
* Details of what audits reported and how vulnerabilities were missed during auditing.&lt;br /&gt;
&lt;br /&gt;
== What Happened ==&lt;br /&gt;
&amp;quot;On November 8, a hacker breached the CoinPoker’s hot wallet, resulting in the unauthorized draining of approximately $2M USD.&amp;quot;&lt;br /&gt;
{| class=&amp;quot;wikitable&amp;quot;&lt;br /&gt;
|+Key Event Timeline - CoinPoker Hot Wallet Third-party Vulnerability&lt;br /&gt;
!Date&lt;br /&gt;
!Event&lt;br /&gt;
!Description&lt;br /&gt;
|-&lt;br /&gt;
|November 7th, 2024 11:01:35 PM MST&lt;br /&gt;
|First Transfer To Theif&lt;br /&gt;
|The first transfer to the thief address based on the address contacted by CoinPoker.&lt;br /&gt;
|-&lt;br /&gt;
|November 8th, 2024 4:01:00 AM MST&lt;br /&gt;
|Withdrawals Under Maintenance&lt;br /&gt;
|The CoinPoker team announces that the withdrawals system is presently undergoing maintenance.&lt;br /&gt;
|-&lt;br /&gt;
|November 8th, 2024 12:55:00 PM MST&lt;br /&gt;
|Withdrawals Back Online&lt;br /&gt;
|The CoinPoker team announces that the withdrawal system is now back online.&lt;br /&gt;
|-&lt;br /&gt;
|November 11th, 2024 8:36:00 AM MST&lt;br /&gt;
|Application Under Maintenance&lt;br /&gt;
|The application is currently unavailable for some &amp;quot;necessary maintenance&amp;quot;.&lt;br /&gt;
|-&lt;br /&gt;
|November 16th, 2024 4:27:11 AM MST&lt;br /&gt;
|Blockchain Direct Message&lt;br /&gt;
|The CoinPoker team reached out to the attacker on the blockchain, willing to negotiate a potential bounty for the safe return of the funds.&lt;br /&gt;
|-&lt;br /&gt;
|November 17th, 2024 12:57:35 AM MST&lt;br /&gt;
|TornadoCash Depositing&lt;br /&gt;
|The funds start to be deposited into TornadoCash.&lt;br /&gt;
|-&lt;br /&gt;
|November 18th, 2024 3:23:00 AM MST&lt;br /&gt;
|CyversAlert Tweeting&lt;br /&gt;
|CyversAlert tweets about the incident.&lt;br /&gt;
|}&lt;br /&gt;
&lt;br /&gt;
== Technical Details ==&lt;br /&gt;
&amp;quot;The attack spanned across multiple blockchain networks, including BNB Chain, Ethereum, and Polygon networks.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Total Amount Lost ==&lt;br /&gt;
The total amount lost has been estimated at $2,000,000 USD.&lt;br /&gt;
&lt;br /&gt;
How much was lost and how was it calculated? If there are conflicting reports, which are accurate and where does the discrepancy lie?&lt;br /&gt;
&lt;br /&gt;
== Immediate Reactions ==&lt;br /&gt;
&amp;quot;Hey everyone! Just a quick heads-up: our withdrawal feature is taking a little break for some maintenance. We’re on it and expect to have it back up and running soon! Depositing remains available. Thanks for your understanding and patience!&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;Good news all, Withdrawals are working again! Happy Friday :)&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;ALERT! Our system recently flagged multiple hack transactions involving @CoinPoker_OFF across the #Bnb, #Ethereum, and #Polygon chains. It appears that an unauthorized address gained control of CoinPoker's hot wallet. The attacker transferred around $2M $USDT, swapped it into native currencies on various chains, and then funneled the funds through @TornadoCash. The transaction patterns suggest that CoinPoker's hot wallet has utilized a custodian service with a specific policy in place!&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Ultimate Outcome ==&lt;br /&gt;
&amp;quot;To the individual responsible for the recent exploit:&lt;br /&gt;
We are aware of the activity involving funds stolen from the wallet address 0x3c1727C283370e476a63768C7cAb843B8bd63130. This message is from CoinPoker to confirm its authenticity.&lt;br /&gt;
We seek to establish secure communication to address this matter constructively. If you are open to a resolution, please respond via email to incident.response@coinpoker.com&lt;br /&gt;
We are willing to discuss terms, including a potential bounty, for the safe return of the funds.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
&amp;quot;Later, [the attacker] funneled through Tornado Cash to obscure the trail and to launder the funds.&amp;quot;&lt;br /&gt;
&lt;br /&gt;
== Total Amount Recovered ==&lt;br /&gt;
There do not appear to have been any funds recovered in this case.&lt;br /&gt;
&lt;br /&gt;
What funds were recovered? What funds were reimbursed for those affected users?&lt;br /&gt;
&lt;br /&gt;
== Ongoing Developments ==&lt;br /&gt;
What parts of this case are still remaining to be concluded?&lt;br /&gt;
== Individual Prevention Policies ==&lt;br /&gt;
{{Prevention:Individuals:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Individuals:End}}&lt;br /&gt;
&lt;br /&gt;
== Platform Prevention Policies ==&lt;br /&gt;
{{Prevention:Platforms:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Platforms:End}}&lt;br /&gt;
&lt;br /&gt;
== Regulatory Prevention Policies ==&lt;br /&gt;
{{Prevention:Regulators:Placeholder}}&lt;br /&gt;
&lt;br /&gt;
{{Prevention:Regulators:End}}&lt;br /&gt;
&lt;br /&gt;
== References ==&lt;br /&gt;
&amp;lt;references&amp;gt;&amp;lt;ref name=&amp;quot;web3isgoinggreat-16983&amp;quot;&amp;gt;[https://www.web3isgoinggreat.com/?id=coinpoker-hack CoinPoker exploited for $2 million] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;cyversalertstwitter-16984&amp;quot;&amp;gt;[https://twitter.com/CyversAlerts/status/1858455889029550545 @CyversAlerts Twitter] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;etherscan-16985&amp;quot;&amp;gt;[https://etherscan.io/tx/0x9c40a0fbbeef9e0da5cbc31bf99bd971fa8a51d5db716060a36979fcca3e2344 Ethereum Transaction Hash (Txhash) Details | Etherscan] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;etherscan-16986&amp;quot;&amp;gt;[https://etherscan.io/tx/0xed51cbab66dcfaf33351acd72cafda339763a32b10080ef5a014ad43bdf5969d Ethereum Transaction Hash (Txhash) Details | Etherscan] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;coinpokerofftwitter-16987&amp;quot;&amp;gt;[https://twitter.com/CoinPoker_OFF/status/1855998056849604790 @CoinPoker_OFF Twitter] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;coinpokerofftwitter-16988&amp;quot;&amp;gt;[https://twitter.com/CoinPoker_OFF/status/1854841777024360582 @CoinPoker_OFF Twitter] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&lt;br /&gt;
&lt;br /&gt;
&amp;lt;ref name=&amp;quot;web3isgoinggreat-16989&amp;quot;&amp;gt;[https://www.web3isgoinggreat.com/archive/2024-11-08-0/0 Archived tweet – Web3 is Going Just Great] (Accessed Dec 11, 2024)&amp;lt;/ref&amp;gt;&amp;lt;/references&amp;gt;&lt;/div&gt;</summary>
		<author><name>Azoundria</name></author>
	</entry>
</feed>