Cryptocurrency platform loses estimated $600 million in cyberheist

The heist appears to be one of the biggest ever in cryptocurrency markets

cyber security, cyber attacks, cybersecurity, data, privacy, hackers, hacking
Representational image
Reuters HONG KONG/SINGAPORE/LONDON
3 min read Last Updated : Aug 12 2021 | 2:08 AM IST

A cryptocurrency platform has lost an estimated $600 million in digital tokens after one of the sector's biggest ever hacking attacks, according to details of the heist which emerged on Wednesday.

Poly Network, a decentralised finance platform (DeFi), announced the hack on Twitter and posted details of digital wallets to which it said the money was transferred, urging people to blacklist tokens from those addresses.

The value of the tokens in the wallets cited by Poly was just over $600 million at the time of the announcement, according to crypto trade publication The Block.

The heist appears to be one of the biggest ever in cryptocurrency markets, and compares with the $530 million in cryptocurrency stolen from Tokyo-based bitcoin exchange Coincheck in 2018.

Crypto exchange Mt. Gox, also based in Tokyo, collapsed in 2014 after losing half a billion dollars in bitcoin.

The latest attack comes as losses from theft, hacks and fraud related to decentralised finance hit an all-time high, raising the risk of both investing in the sector and of regulators looking to shake it down.

DeFi https://www.reuters.com/article/us-crypto-currencies-lending-insight-idUSKBN25M0GP refers to peer-to-peer cryptocurrency platforms that allow transactions without traditional gatekeepers such as banks or exchanges. Poly Network allows users to swap tokens across different blockchains.

"It is a massive hack ... as large as Mt. Gox," said Bobby Ong, co-founder of crypto analytics website CoinGecko, although he noted the fallout had not yet hurt major crypto prices.

"This project is finished in my opinion. (It is) going to take a lot to regain confidence," Ong said.

Poly did not immediately respond to a request on Wednesday for more detail about the incident. It was not immediately clear where the platform is based, or whether any law enforcement agency was investigating the heist.

STOLEN TOKENS

Poly tweeted it planned to take legal action and urged the hackers to return the assets, a move analysts said underscored how hard it is to recover stolen tokens.

"It is not like an ordinary bank heist where the money is stolen from the bank who remains the victim," said Jake Moore, cybersecurity specialist at cybersecurity firm ESET and former head of digital forensics at Britain's Dorset Police.

"Money stolen which is stored in digital ledgers is taken from individual accounts and this is what worries those choosing to store their money in these locations," Moore added.

The stolen funds amount to more than the criminal losses registered by the entire DeFi sector from January to July of a record $474 million, according to a report from crypto intelligence company CipherTrace.

Proponents of DeFi say the technology will allow more people and businesses to access financial services. Yet it is mostly unregulated, with tech flaws and weaknesses in the code many platforms use leaving it vulnerable to hacks and heists.

Still, a message embedded in transactions from one of the wallets controlling the missing funds said: "I need a secured multisig wallet from you," possibly in an attempt to try and return the loot.

"It's already a legend to win so much fortune," read a subsequent message.

The chief technology officer of Tether, a stablecoin, also said on Twitter the company had frozen $33 million connected with the hack, and top management at large crypto exchanges responded to Poly on Twitter saying they would try to help.

 

(Reporting by Alun John in Hong Kong, Tom Wilson in London and Tom Westbrook in Singapore; Editing by Jane Wardell and David Holmes)

(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)

*Subscribe to Business Standard digital and get complimentary access to The New York Times

Smart Quarterly

₹900

3 Months

₹300/Month

SAVE 25%

Smart Essential

₹2,700

1 Year

₹225/Month

SAVE 46%
*Complimentary New York Times access for the 2nd year will be given after 12 months

Super Saver

₹3,900

2 Years

₹162/Month

Subscribe

Renews automatically, cancel anytime

Here’s what’s included in our digital subscription plans

Exclusive premium stories online

  • Over 30 premium stories daily, handpicked by our editors

Complimentary Access to The New York Times

  • News, Games, Cooking, Audio, Wirecutter & The Athletic

Business Standard Epaper

  • Digital replica of our daily newspaper — with options to read, save, and share

Curated Newsletters

  • Insights on markets, finance, politics, tech, and more delivered to your inbox

Market Analysis & Investment Insights

  • In-depth market analysis & insights with access to The Smart Investor

Archives

  • Repository of articles and publications dating back to 1997

Ad-free Reading

  • Uninterrupted reading experience with no advertisements

Seamless Access Across All Devices

  • Access Business Standard across devices — mobile, tablet, or PC, via web or app

More From This Section

Topics :Hackingcryptocurrencycrypto trading

First Published: Aug 11 2021 | 4:03 PM IST

Next Story