Posts

Showing posts with the label cybersecurity

FC Barcelona Instagram hacker made $26K in Pump Fun rewards

Image
The official Instagram account of FC Barcelona was hacked yesterday to promote a phony crypto project on memecoin platform Pump Fun.  The hackers claimed that FC Barcelona was “building something massive on Solana,” and promised users that “we’re going to the moon” as it revealed the token’s address across two posts.  However, there’s no such announcement from the club’s official site.  FC Barcelona has over 144 million followers on its Instagram account. At one point, one of the posts, which was viewable for several hours before it was eventually taken down, had 169,000 views, over 1,600 comments, and 1,400 reposts .  One of the two posts which promoted the phony Barcelona Pump Fun token. Read more: Crypto scammer reported to ICE after stealing cancer patient’s treatment fund The token, as expected, rose and fell like many rugpulls have in the past. It was created at 0:45 AM UTC, and reached a market of $3 million before plummeting b...

Crypto Hackers Drain $42,000,000 From Decentralized Perps Exchange GMX, Sends Funds to Unknown Wallet: Report

Blockchain security firm PeckShield says that bad actors stole tens of millions of dollars from the decentralized perpetuals exchange GMX (GMX). Posting on the social media platform X, PeckShield says that a hacker has exploited the crypto exchange to the tune of $42 million, sending $9 million of the stolen funds to the Ethereum (ETH) network from Arbitrum (ARB). “GMX has been exploited for ~$42 million. The exploiter has bridged ~$9.6 million worth of cryptos to Ethereum.” GMX confirmed the hack on its own X account, saying that its Arbitrum-based liquidity pool was drained of $40 million, which was immediately sent to an unknown wallet. “The GLP pool of GMX V1 on Arbitrum has experienced an exploit. Approximately $40 million in tokens has been transferred from the GLP pool to an unknown wallet… Trading on GMX V1, and the minting and redeeming of GLP, have been disabled on both Arbitrum and Avalanche to prevent any further attack vectors and ...

Scammers are targeting crypto users with new ‘zero value TransferFrom’ trick

Image
The trick allows the attacker to confirm zero-value transactions from the victim’s wallet, hijacking the user’s transaction history. Data from Etherscan shows that some crypto scammers are targeting users with a new trick that allows them to confirm a transaction from the victim’s wallet, but without having the victim’s private key. The attack can only be performed for transactions of 0 value. However, it may cause some users to accidentally send tokens to the attacker as a result of cutting and pasting from a hijacked transaction history. Blockchain security firm SlowMist discovered the new technique in December and revealed it in a blog post. Since then, both SafePal and Etherscan have adopted mitigation techniques to limit its effect on users, but some users may still be unaware of its existence. Recently we have received reports from the community of a new type of scam: Zero Transfer Scam. Be careful if you see suspicious 0 transfer in your wallet record: 1/10 — Veronica (@V_...