Posts

Showing posts with the label cybersecurity

Is the US targeting Solana devs in Russia with crypto 'infostealers'?

Russian Solana devs are being targeted by “infostealer” malware, possibly deployed by US state-sponsored actors, according to research by software supply chain security firm, Safety.  The findings, published by Safety’s Head of Research Paul McCarty, led to speculation from security news outlet The Register, that it could point to an attempt from the US to disrupt Kremlin-linked ransomware gangs. According to McCarthy’s research, a threat actor using a cryptocurrency-focused “infostealer” dubbed “Solana-scan” has been targeting Solana community members with Russian IPs. The malicious packages, “solana-pump-test” and “solana-spl-sdk,” were uploaded to the JavaScript registry NPM by someone with the username “cryptohan.” They pretend to scan “for Solana SDK components” while stealing data on crypto credentials and owned tokens.  “Cryptohan” is a popular moniker in the crypto community and was presumably chosen to give the malware...

$2.24 billion stolen in crypto hacks in H1 2025 – Finbold report

The crypto industry faced another turbulent first half of the year, with $2.24 billion lost to hacks between January and June 2025, according to the Finbold H1 2025 Cryptocurrency Report, citing data tracked by blockchain security firm SlowMist. The damage was driven by a handful of large-scale incidents, most notably the $1.5 billion Bybit wallet breach, which remains the largest crypto hack of the year so far. Other major losses included $230 million from a contract vulnerability at Cetus Protocol, a $100 million rug pull at LIBRA, and security flaws exploited at Nobitex ($90M) and UPCX ($70M). Interestingly, the bulk of the stolen funds were drained in Q1, which saw $1.77 billion in losses. By contrast, Q2 hack volume dropped significantly to $465 million, suggesting improved exchange-level security or attacker fatigue, though it may also reflect a lag in incident reporting. Bybit accounted for 85% of all Q1 losses In Q1 alone, the Bybit breach accounte...

Euler team denies on-chain sleuth was a suspect in hack case

Image
The investigator claimed to be targeted as a suspect because they maintained a crypto security repo on GitHub. The pseudonymous Twitter user and Blockchain investigator Officer’s Notes believes they may have been a suspect in the $195 million Euler Finance hack. In an April 4 Twitter thread, the Security researcher stated, “Seems like I was a suspect in this case, as usual.” The Euler team has denied that Officer's Notes was a suspect , claiming instead that the researcher was helpful in the investigation. they urgently woke me up in the middle of the night and been asking for help when the attack happened… we even had a google meet call lmao WTF Euler was this just to get my GitHub access data logs from my OpSec repo (which I did lol)… Seems like I was a suspect in this… — Officer's Notes (@officer_cia) April 5, 2023 Officer’s Notes, also known as Officer_cia, is a security researcher, blogger, and auditor for blockchain security firm Pessimistic, according to the user...