All public logs
Jump to navigation
Jump to search
Combined display of all available logs of Quadriga Initiative Cryptocurrency Hacks, Scams, and Frauds Repository. You can narrow down the view by selecting a log type, the username (case-sensitive), or the affected page (also case-sensitive).
- 10:45, 28 January 2023 Azoundria talk contribs created page Meter.io Minting Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/meteriomintingexploit.php}} thumb|Meter.ioMeter.io is a large multi-chain bridge, which allows assets to be moved between different blockchain smart contract networks. As part of their setup, funds exist locked in smart contract hot wallets, which back representative tokens used in the transfer. Based on an attacker exploiting a missing validation check, extra tokens were mint...")
- 10:45, 28 January 2023 Azoundria talk contribs created page File:Meterio.jpg
- 10:45, 28 January 2023 Azoundria talk contribs uploaded File:Meterio.jpg
- 10:45, 28 January 2023 Azoundria talk contribs created page PayBito Customer Data Breach (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/paybitocustomerdatabreach.php}} thumb|PayBitoPayBito is a large cryptocurrency exchange operating in the US and India. On February 3rd, 2022, a ransom group apparently gained access to the records of over 100,000 customers, including weakly hashed passwords. The group also claimed they were going to publish the records if a ransom was not paid by February 21st. There is no ind...")
- 10:45, 28 January 2023 Azoundria talk contribs created page File:Paybito.jpg
- 10:45, 28 January 2023 Azoundria talk contribs uploaded File:Paybito.jpg
- 10:44, 28 January 2023 Azoundria talk contribs created page KlaySwap BGP Hijacking (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/klayswapbgphijacking.php}} thumb|KlaySwapKlaySwap suffered an advanced BGP hijack attack, when an adversary managed to modify the JavaScript on the site to a malicious version which changed all transactions into a request to send funds to them. In total, $1.9M was taken over a series of 407 transactions before the malicious code was removed. The KlaySwap team has created a re...")
- 10:44, 28 January 2023 Azoundria talk contribs created page File:Klayswap.jpg
- 10:44, 28 January 2023 Azoundria talk contribs uploaded File:Klayswap.jpg
- 10:44, 28 January 2023 Azoundria talk contribs created page Wormhole Network Signature Validation Loophole (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/wormholenetworksignaturevalidationloophole.php}} thumb|Wormhole NetworkWormhole Finance is a decentralized bridge between multiple chains including Ethereum, Solana, Terra, Binance Smart Chain, Polygon, Avalanche, and Oasis. A decentralized network of 19 guardians secure the bridge. An attacker exploited a signature verification vulnerability in the smart contract hot...")
- 10:44, 28 January 2023 Azoundria talk contribs created page File:Wormholenetwork.jpg
- 10:44, 28 January 2023 Azoundria talk contribs uploaded File:Wormholenetwork.jpg
- 10:43, 28 January 2023 Azoundria talk contribs created page Optimism Self Destruct Exploit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/optimismselfdestructexploit.php}} thumb|OptimismOptimism is a layer 2 scaling solution on Ethereum. A critical bug existed in the protocol which would have allowed an attacker to mint additional unbacked Ethereum. The bug was only exploited once, apparently by accident with no loss of funds. On February 2nd, 2022, a white hacker named Jay Freeman found and reported it. The is...")
- 10:43, 28 January 2023 Azoundria talk contribs created page File:Optimism.jpg
- 10:43, 28 January 2023 Azoundria talk contribs uploaded File:Optimism.jpg
- 10:43, 28 January 2023 Azoundria talk contribs created page The Heart Project Discord Hack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/theheartprojectdiscordhack.php}} thumb|The Heart ProjectJust days after creating a humourous "you got rugged" campaign, giving away rugs to different users, many users had their hearts stolen by hackers. The Heart Project discord was attacked, and malicious links were used to trick users into granting access to their NFTs, which the attacker then resold. This is a glo...")
- 10:43, 28 January 2023 Azoundria talk contribs created page File:Theheartproject.jpg
- 10:43, 28 January 2023 Azoundria talk contribs uploaded File:Theheartproject.jpg
- 10:43, 28 January 2023 Azoundria talk contribs created page Mars Stealer Malware (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/marsstealermalware.php}} thumb|Mars StealerMars Stealer is a new form of malware released last summer, which is gaining popularity. Once a user is tricked into installing it, it has the capacity to steal from a massive list of cryptocurrency wallets and extensions you may have installed. If you are affected, there are very limited means by which lost cryptocurrency can be...")
- 10:42, 28 January 2023 Azoundria talk contribs created page File:Marsstealer.jpg
- 10:42, 28 January 2023 Azoundria talk contribs uploaded File:Marsstealer.jpg
- 10:42, 28 January 2023 Azoundria talk contribs created page EmpiresX Ponzi Scheme (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/empiresxponzischeme.php}} thumb|EmpiresXEmpiresX promoted itself to investors primarily located in Florida, promising an easy "investment in the financial market, options, stock exchanges, trade and cryptocurrencies". They claimed to have an artificial intelligence trading bot named Robot EX which was capable of generating returns for investors, when in reality the scheme was...")
- 10:42, 28 January 2023 Azoundria talk contribs created page File:Empiresx.jpg
- 10:42, 28 January 2023 Azoundria talk contribs uploaded File:Empiresx.jpg
- 10:42, 28 January 2023 Azoundria talk contribs created page Qubit Finance Platform Deposit Hack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/qubitfinanceplatformdeposithack.php}} thumb|Qubit FinanceQubit Finance is a decentralized lending platform. Late on January 27th, an attacker brought funds from tornadocash and used them to exploit the smart contract hot wallet, creating a fake deposit and then withdrawing 206,809 Binance coins from the hot wallet. The platform has pledge to continue tracking the funds, a...")
- 10:42, 28 January 2023 Azoundria talk contribs created page File:Qubitfinance.jpg
- 10:42, 28 January 2023 Azoundria talk contribs uploaded File:Qubitfinance.jpg
- 10:41, 28 January 2023 Azoundria talk contribs created page OpenSea Old Contracts Exploited (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/openseaoldcontractsexploited.php}} thumb|OpenSeaOpenSea is one of the largest NFT marketplaces online. If an order is placed on the blockchain, it's available for future use unless cancelled or the NFT is no longer in the wallet which the offer applies to. If an NFT is moved from one wallet to another and back again, then OpenSea will fail to display the open order, which can...")
- 10:41, 28 January 2023 Azoundria talk contribs created page BHUNT Malware Targets Crypto Wallets (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/walletstargetedbybhuntmalware.php}} thumb|BHUNTBHUNT is a form of malware which distributes itself through downloads of unlicensed software such as operating systems. Once installed, the malware will find any wallet files for software wallets, monitor the clipboards, steal browser data, among various other measures. Wallets targeted include Exodus, Electrum, Atomic, Jaxx, Ethere...")
- 10:41, 28 January 2023 Azoundria talk contribs created page File:Bhunt.jpg
- 10:41, 28 January 2023 Azoundria talk contribs uploaded File:Bhunt.jpg
- 10:40, 28 January 2023 Azoundria talk contribs created page DualMine Misleading Payouts (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/dualminemisleadingpayouts.php}} thumb|DualMineDualMine claims that you can invest your money and earn a guaranteed payout through their cloud mining service. While the promised payout is lower than many schemes, this has all the hallmarks of a common ponzi scheme. The CEO has little presence outside of the registration. The returns are "guaranteed". There is no evidence of a...")
- 10:40, 28 January 2023 Azoundria talk contribs created page File:Dualmine.jpg
- 10:40, 28 January 2023 Azoundria talk contribs uploaded File:Dualmine.jpg
- 10:40, 28 January 2023 Azoundria talk contribs created page Wonderland Money Sifu Scandal (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/wonderlandmoneysifuscandal.php}} thumb|Wonderland MoneyWonderland is a DAO which invests funds on behalf of members and has a asset-backed TIME token. One of the founders was Michael Patryn, who has a long and concerning history. This wasn't disclosed to users. At one point, $8.4m of funds were taken out of the multi-sig treasury in order to avoid liquidation (which ha...")
- 10:40, 28 January 2023 Azoundria talk contribs created page File:Wonderlandmoney.jpg
- 10:40, 28 January 2023 Azoundria talk contribs uploaded File:Wonderlandmoney.jpg
- 10:40, 28 January 2023 Azoundria talk contribs created page Trezor Fault Injection Whitehack (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/trezorfaultinjectionwhitehack.php}} thumb|TrezorEarly model Trezor hardware wallets were vulnerable to a fault injection attack, since they would put the PIN and key into RAM during the firmware update process. These wallets could be exploited if an adversary gained physical access to the wallet, since they could potentially trigger a firmware update and read the private key of...")
- 10:39, 28 January 2023 Azoundria talk contribs created page MultiChain Infinite Approvals Critical Vulnerability (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/multichaininfiniteapprovalscriticalvulnerability.php}} thumb|MultiChainMultiChain (formerly AnySwap) is one of the largest decentralized token swap services around. As part of the trading process, users would grant unlimited approvals to the smart contract. Unfortunately, being human, the developers of the original AnySwap smart contract made a mistake which resulted in ris...")
- 10:39, 28 January 2023 Azoundria talk contribs created page File:Multichain.jpg
- 10:39, 28 January 2023 Azoundria talk contribs uploaded File:Multichain.jpg
- 10:39, 28 January 2023 Azoundria talk contribs created page Crypto.com Withdrawals Triggered (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/cryptocomwithdrawalstriggered.php}} thumb|Crypto.comCrypto.com is one of the largest cryptocurrency exchanges globally. While details are vague, it appears that a vulnerability allowed an attacker to trigger withdrawals without completing the 2FA checks which were intended to be necessary for a withdrawal. After the initial confusion, the company eventually admitted what ha...")
- 10:39, 28 January 2023 Azoundria talk contribs created page File:Cryptocom.jpg
- 10:39, 28 January 2023 Azoundria talk contribs uploaded File:Cryptocom.jpg
- 10:39, 28 January 2023 Azoundria talk contribs created page Coinbase Ethereum Stolen via Minecraft Mod (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/coinbaseethereumstolenviaminecraftmod.php}} thumb|CoinbaseOn January 15th, 2022, a 19 year old Minecraft player on the HyPixels server downloaded a malicious JAR file which was able to capture Coinbase and email account credentials. These were then used to access his Coinbase account and attempt a withdrawal. It appears that the attempt was not successful, instead resu...")
- 10:38, 28 January 2023 Azoundria talk contribs created page File:Coinbasehypixel.jpg
- 10:38, 28 January 2023 Azoundria talk contribs uploaded File:Coinbasehypixel.jpg
- 10:38, 28 January 2023 Azoundria talk contribs created page PolkaMetaverse Fake Audit (Created page with "{{Imported Case Study|source=https://www.quadrigainitiative.com/casestudy/polkametaversefakeaudit.php}} thumb|PolkaMetaversePolkaMetaverse is currently claiming to be audited when no such audit has been performed, according to Peckshield. It remains to be seen what will come of this project and any investments. The whitepaper claims a multi-sig but no one has looked into the code. This is a global/international case not involving a specific...")
- 10:38, 28 January 2023 Azoundria talk contribs created page File:Polkametaverse.jpg
- 10:38, 28 January 2023 Azoundria talk contribs uploaded File:Polkametaverse.jpg