Hackers Stole $4 Million From IOTA Wallets

post image

Holders of IOTA reported that they had been thieved for about $4 million of cryptocurrency from their wallets. This was caused by malicious online generators of seed-phrases. The identity of the attackers could not be established.

When users create a new wallet for IOTA, they need to enter a secret phrase consisting of 81 characters. According to the HelloIOTA site, there are several workarounds that simplify this task. In particular, users can use a seed generator based on IPFS or create a key using a Mac or Linux terminal. However, none of these methods can be called simple, so beginners who do not have the necessary knowledge and skills to use them, are forced to resort to alternative solutions, among which are online generators of seed-phrases.

One of the most popular sites in this segment, iotaseed.io , has now stopped working, and when you try to access it, the following message is displayed: "Closed. Excuse us".

To create a secret code, this generator offered users to move the mouse to "generate randomness," and then provide a seed-phrase that meets the requirements of the IOTA wallet.

As the member of the IOTA Evangelist Network Ralph Rottmann reports , the attackers carried out a DDoS attack on the known full IOTA nodes to prevent the victims of this fraudulent scheme from recovering their funds.

The attackers knew the code phrases. You yourself invited them into your wallets, passing the keys on a silver platter. The community of full node operators discusses various strategies for protecting community nodes from certain similar DDoS attacks in the future.

Currently, in the community of full node operators, various approaches are being discussed to improve the protection of public nodes from this kind of DDoS attack in the future.

In the community, IOTA has repeatedly warned users that when using online seed-phrase generators, they should change parts of them to avoid losing money. The developers of the project also repeatedly pointed out that these vulnerabilities are not related to IOTA technology and are associated only with seed generators.

Recall that in December IOTA denied information about the partnership with Microsoft, which caused a wave of criticism of the project. Its creators were accused of intentionally informing the wrong information to manipulate the market, and then had to refute it.

As for the theft of users' funds, earlier this month hackers withdrew $ 400,000 from the BlackWallet crypto in Stellar Lumen (XLM). To do this, they intercepted the DNS domain record of the wallet and redirected it to their server.

Information Source: CCN

Canada Reports Blockchain To Be Amongst Its Highest Paying Industries
A report recently published by the Canadian Digital Chamber of Commerce proves that the money involved in the blockchain industry of the nation is at the...
OKCoin Founder Was Detained in China Amid Fraud Allegations
The founding father of the second largest cyber-money bourse on the planet OKCoin was reportedly detained on the occasion of suspected crypto-scam. According...
Amazon Partnering With a Startup To Bring Blockchain To Its Clients
Facebook is not the only tech titan that is looking into the blockchain and cryptos. Amazon, and its cloud computing arm, in particular, is considering...
Reddit Co-Founder Alexis Ohanian Says ETH Will Hit $15,000 Before 2019
Some days ago bitcoiner Tim Draper predicted the surge of the first crypto to the margin of $250,000 in four years, whereas earlier Fundstrat’s Tom Lee...
$1.6 bln Blockchain Fund to Support Startups With a 30% Inflow From Chinese Gov’t
It is tough for crypto-enthusiasts to survive in China, which has already shut local cyber money bourses as well as announced the taboo on ICOs. Neither...
Securities or Not? Israeli SAC Clarified its Position on Cryptos
Israel clarified how it is going to classify bitcoin and its ilks – as securities or not. The country’s Securities Authority Committee, which is focused...
Binance to Launch a Decentralized Crypto Exchange, Based on Blockchain
The crypto market is going to get enriched by another cyber money trading venue, and this time – based in the blockchain. The news has been announced by...
Venezuelan Authorities Opened A School For Teaching Cryptocurrency And Trading
A few days after the launch of El Petro, the Venezuelan government opened a state training center whose task is to teach citizens how to buy, sell and mine...
Will Switzerland Become a ‘Crypto Valley’?
Whilst lots of governments all over the world are troubled about the cyber money frenzy, which induces money laundering and other illicit actions as well...
Hold It Or Take Profits? VC, Early Bitcoin Investor Knows The Answer
Bitcoin has demonstrated quite a significant growth for itself in 2017, soaring up by around 1,400% between January and mid-December. Currently, the king...
A 23-Year Old Engineer Used Bitcoin Cash to Buy a $415,000 House In U.S.
Purchasing the real estate using bitcoin or its ilks will soon stop being just a dream. For example, not long ago the trans-border property marketplace...
Why The Ripple Rate Flew Above $ 3.8
Ripple continues to set records and grow steadily. The reason for the next surge in purchases were rumors that the cryptocurrency will be added to the digital...
Charles Schwab’s Strategist Dare Not to Compare Bitcoin to Common Bubbles
This year, full of highs and lows in cryptocurrency market, according to several analysts, bitcoin plunged by 30% around six times and each time it managed...
Is Bitcoin a Bubble or a Good Investment?
While Bitcoin breaks to new heights, pessimists have only to wonder: “When are we going to hear a pop?” Now, bubble or not, Bitcoin seems deaf to negative...
Altcoin to Invest: Siacoin
There are more and more platforms in the cryptocurrency world with practical and useful ideas. Siacoin (SC) plans to oust the existing cloud storages and...