Pages:
Author

Topic: ⚠ ⚠ CRYPTOPIA EXCHANGE HACKED! -- REALTIME INVESTIGATION THREAD ⚠ ⚠ - page 2. (Read 763 times)

jr. member
Activity: 2520
Merit: 1
I don't have new news about cryptopia, but I am very sad to hear the news. Even though I really want the tokens from ICO and prize bounty listings in that market. Hopefully there is positive news about cryptopia.
full member
Activity: 644
Merit: 100
Hope people will get all their money. And this guys will go jail. But looks like, that market tired from news and nobody cares)
hero member
Activity: 1260
Merit: 524
So it was really Cryptopia exit scam? Or it was another successful hacker attack?

There is a golden rule how to protect yourself: Do not safe your cryptocurrencies on CEXs (centralized exchanges)!

There is still no confirmation if this is an exit scam but I doubt if it is, they reported it to police and tech authority if this is an exit scam by Cryptopia then they will be caught, but of course, the police have to be that good to trace if it is an exit scam.
they are digging their own grave if they reported it to police and if they did it themselves, the hack was probably an inside job, probably an employee put some backdoor in the code and exploit it, it's a shame this exchange got hacked i actually like this exchange because of fast withdrawal, i usually use doge and the withdrawal will come out 1 second later, i probably still haven't seen all maybe just the tip of the iceberg.

unless you have a proof that it was an inside job it is not a great idea to spread rumor based on your intuition as it will scare more people away from crypto and it will reflect on the price. It would be beneficial to wait for few weeks to see what really happened. I don't really use that exchange but I've heard many people use it.

The reason behind the rumour is because their were past exchange hack which resulted in insider job, so everyone have their rights to express their view. Unless their is no insider person accessibility i dont think that exchanges can be hacked. Their should be insider person which will give the loophole to the hackers.

Now the exchange is in halt and no one knows that whose account got hacked and how much loss will be their until they dont give full details. Till then everything is stuck in the exchange.
member
Activity: 429
Merit: 10
That's a bad news for me that people must wait until the exchange recovers in cryptopia some how it has a possibility to refund or not those people invested in that exchange.
legendary
Activity: 1232
Merit: 1000
I guess that NZ police doesn't have enough competence in such a crypto hacks so it won't be able to solve this case any time soon. I regret for every user who kept money there. It will be another evidence that we shouldn't keep money anywhere except our cold wallets.
full member
Activity: 1358
Merit: 100
Some updates from NZ POLICE:

https://www.police.govt.nz/news/release/police-making-progress-crypto-currency-investigation

Quote
Police making progress in crypto-currency investigation
Tuesday, 22 January 2019 - 5:23pm
National News

Police continue to investigate the unauthorised transfer of crypto-currency worth a significant sum from Christchurch-based crypto-currency trading company Cryptopia on 13-14 January 2019.

Good progress is being made and positive lines of enquiry are being developed to identify the source of the transfer, and to identify where the crypto-currencies have been sent. The assistance of the crypto currency community is being sought as the investigation progresses.

This is a very complex investigation, involving expert digital forensic investigators from within New Zealand and in various overseas jurisdictions, as well as overseas authorities.

Members of the investigation team met with Cryptopia management and staff yesterday and today and outlined progress in the investigation.

Cryptopia management and staff have been co-operating with Police and providing considerable assistance in the investigation. 

The investigation is expected to take some to time complete, and the digital forensic team will be on-site at Cryptopia’s premises for some days to come.

Anyone with information which could assist the investigation can contact police by email at [email protected] .

ENDS

Issued by Police Media Centre
I hope that the police of New Zealand can solve this case, but I think the cryptos will not be retrieve to the owners.
hero member
Activity: 2520
Merit: 952
Those who removed their coins from cryptopia exchange on 'proof-of-keys' day, just got lucky. Those got hacked, just got their second reminder.
hero member
Activity: 1540
Merit: 500
So it was really Cryptopia exit scam? Or it was another successful hacker attack?

There is a golden rule how to protect yourself: Do not safe your cryptocurrencies on CEXs (centralized exchanges)!

There is still no confirmation if this is an exit scam but I doubt if it is, they reported it to police and tech authority if this is an exit scam by Cryptopia then they will be caught, but of course, the police have to be that good to trace if it is an exit scam.
they are digging their own grave if they reported it to police and if they did it themselves, the hack was probably an inside job, probably an employee put some backdoor in the code and exploit it, it's a shame this exchange got hacked i actually like this exchange because of fast withdrawal, i usually use doge and the withdrawal will come out 1 second later, i probably still haven't seen all maybe just the tip of the iceberg.

unless you have a proof that it was an inside job it is not a great idea to spread rumor based on your intuition as it will scare more people away from crypto and it will reflect on the price. It would be beneficial to wait for few weeks to see what really happened. I don't really use that exchange but I've heard many people use it.
hero member
Activity: 1232
Merit: 503
So it was really Cryptopia exit scam? Or it was another successful hacker attack?

There is a golden rule how to protect yourself: Do not safe your cryptocurrencies on CEXs (centralized exchanges)!

There is still no confirmation if this is an exit scam but I doubt if it is, they reported it to police and tech authority if this is an exit scam by Cryptopia then they will be caught, but of course, the police have to be that good to trace if it is an exit scam.
they are digging their own grave if they reported it to police and if they did it themselves, the hack was probably an inside job, probably an employee put some backdoor in the code and exploit it, it's a shame this exchange got hacked i actually like this exchange because of fast withdrawal, i usually use doge and the withdrawal will come out 1 second later, i probably still haven't seen all maybe just the tip of the iceberg.
legendary
Activity: 2450
Merit: 1047
So it was really Cryptopia exit scam? Or it was another successful hacker attack?

There is a golden rule how to protect yourself: Do not safe your cryptocurrencies on CEXs (centralized exchanges)!

There is still no confirmation if this is an exit scam but I doubt if it is, they reported it to police and tech authority if this is an exit scam by Cryptopia then they will be caught, but of course, the police have to be that good to trace if it is an exit scam.
full member
Activity: 588
Merit: 100
So it was really Cryptopia exit scam? Or it was another successful hacker attack?

There is a golden rule how to protect yourself: Do not safe your cryptocurrencies on CEXs (centralized exchanges)!
hero member
Activity: 2702
Merit: 510
Leading Crypto Sports Betting & Casino Platform
Most coins and tokens were sent to BINANCE exchange.
The account is not at freeze, KUDOS to the BINANCE TEAM that they quickly act on the incidents.
What will happen to cryptopia then and to their users.
There are some altcoins which have already sent to the binance exchange site. but not all of funds have sent to the binance. CEO of binance has stated if his team has already suspended and blocked that account from any activity just like buy, sell, deposit and wothdrawal.
copper member
Activity: 28
Merit: 0
Interesting read about Cryptopia hack incident here: https://elementus.io/blog/cryptopia-hack-transparency/

Quote

Some overdue transparency into the Cryptopia exchange hack
20 January 2019

In the five days since the Cryptopia hack was first reported, we've seen surprisingly little information about what actually happened.

Nobody seems to know:


    * How the theft took place: How, when, and where were the funds taken?
    * How much was lost: Cryptopia has not disclosed how much was stolen. Media reports on the total value of stolen assets range from $3m to $13m.
    * The current status of the stolen funds: We've seen a few blips about exchanges freezing stolen funds, but nothing on how much was frozen or where the rest of the funds sit.

This hack impacts thousands of people who have funds in Cryptopia's custody. While Cryptopia may have their reasons for remaining quiet, we think it's important for the facts to be known.

Ironically, definitive answers to all the questions above are hiding in plain sight, encoded in a public database called the Ethereum blockchain, which is unfortunately not well designed for human consumption. However, our technology is designed to enable just that.

Based on data sourced via the Elementus query engine, here is how the Cryptopia hack actually went down.

Edit: As we know there is a lot of bad information going around, we've posted the raw data used in this analysis online so that anyone can validate it for themselves.
What happened?

This case is quite different from other high profile hacks we've seen in the past. But before explaining what makes this case so unusual, here is a brief overview of what's been reported and what we can deduce from the blockchain.

All times below are Eastern Time (GMT-5).

    - Sunday 13-Jan, 8:28am: Funds begin moving out of Cryptopia's two core hot wallets, one holding ether and the other holding tokens.
    - Sunday 13-Jan, 11:58pm: With the core wallets empty, residual quantities of funds begin leaving Cryptopia's 76k+ secondary wallets, a process that would continue for several days.
    - Monday 14-Jan, 6:00am: Cryptopia suspends trading, announcing they are undergoing unscheduled maintenance.
    - Tuesday 15-Jan, 3:00am: Cryptopia discloses the security breach and New Zealand law enforcement steps in.
    - Thursday 17-Jan, 5:58am: The last of Cryptopia's funds are drained.

By our calculations, the total value of the stolen crypto (ether and various tokens), at current market prices, comes out to about $16 million. This number includes only what's on the Ethereum blockchain (ether and ERC20 tokens). We have not examined the Bitcoin blockchain or other blockchains to see if funds were stolen there as well.
The thieves took ether and ERC20 tokens valued at about $16 million

Cryptopia hack - market value of losses by coin

The breakdown of losses by cryptoasset is shown below.
Asset    Value (USD)
ETH           $3,570,124
Dentacoin   $2,446,212
Oyster Pearl   $1,948,223
Lisk ML   $1,718,610
Centrality   $1,148,144
Mothership   $880,141
Ormeus   $452,841
DAPS           $384,425
Zap           $147,158
Pillar           $254,521
Other tokens   $3,051,709
Total           $16,002,108

Market value of crypto assets stolen from Cryptopia, valued at 19-Jan-2019 market prices. For more detail, see the full breakout by token / full list of transactions out of Cryptopia into the hackers' wallets
Where are the stolen funds now?

For the last few days, the hackers have been shuffling the funds around in small pieces and gradually moving them into exchanges to cash out. The table below shows how much has been sent to each exchange.

How much have the thieves attempted to cash-out at exchanges?

Exchange    Deposits    Value (USD)
Bibox   44   $326,581
Binance   63   $279,525
Huobi   21   $147,715
HitBTC   23   $56,648
CoinExchange   9   $22,908
Digifinex   6   $13,017
Bittrex   2   $11,865
Changelly   8   $8,152
Kucoin   4   $6,597
ABCC   6   $4,978
Mercatox   2   $3,199
LAToken   1   $1,381
Bitmart   1   $66
Gate   2   $0
Total   192   $882,632

Market value of stolen crypto assets that have been sent to exchanges

Of the $16m that was stolen, the vast majority (~$15m) remains in two wallets controlled by the thieves:

    0x9007a0421145b06a0345d55a8c0f0327f62a2224
    0xaa923cd02364bb8a4c3d6f894178d2e12231655c


We are continuing to watch the movement of the funds and will keep the figures in this post updated.

What makes this hack so unusual?


This hack is quite different from other high-profile heists on the blockchain. Normally, they fit one of two profiles:

    * Smart contract exploits (e.g. Parity, The DAO, SpankChain): Hackers discover a vulnerability in a wallet's smart contract code, which allows them to empty its funds. These cases may involve many wallets, if the same vulnerability is present in all of them. But once the first wallet is breached, things come to a head rather quickly, as it typically becomes a race between the hackers and the wallet owners (sometimes assisted by white hat hackers) to get to the money first.

    * Unauthorized access credentials (e.g. Coinrail, Tether, Gatecoin): Someone outside (or perhaps inside) the company manages to get a hold of a wallet's private key and simply withdraws the funds into their own blockchain wallet. These cases typically involve the breach of a single wallet, and by the time the theft becomes publicly known, the funds are long gone.

The Cryptopia hack differs from these profiles in two glaring ways.

The hack involved a large number of wallets.

The funds were taken from more than 76k different wallets, none of which were smart contracts. The thieves must have gained access to not one private key, but thousands of them.

The hack continued for days after Cryptopia discovered the breach.

The lack of urgency on the part of the thieves is striking. Rather than withdrawing the funds as fast as possible, as is the case in most crypto hacks, they took their time extracting the assets over the course of nearly five days.

After Cryptopia discovered the hack, they watched the funds continue to flow out of their wallets for four more days, seemingly powerless to stop it. As these wallets were not smart contracts, there should have been no technical complications preventing Cryptopia from securing the funds.

The only plausible explanation for Cryptopia's inaction is that they no longer had access to their own wallets.

It seems Cryptopia not only lost their funds, they also lost access to all, or nearly all, of their 76k+ Ethereum wallets.

One possible explanation is that Cryptopia had their private keys stored in a single server with no redundancy. If the thieves managed to gain access to this server, they could have downloaded the private keys before wiping them from the server, leaving Cryptopia unable to access their own wallets.
Conclusions

Our conclusions from the investigation.

2,000 Ethereum wallets and $46k in Ether remain at risk.

We count about 2,000 remaining Cryptopia wallets holding a combined balance of ~380 ETH (about $46k). Most of these funds were deposited by Cryptopia users after the initial hack took place, apparently unaware of the security breach.

Assuming the thieves have access to these wallets, and Cryptopia does not, recovering the funds is a lost cause. However, if Cryptopia knows the identities of these users, hopefully they've had the foresight to contact them and let them know not to send any more funds.

It's likely Cryptopia has additional funds safely stashed away somewhere.

The value of stolen ETH amounts to "only" about $3.5m. While this is by no means a small amount in absolute terms, it is small relative to what we would expect Cryptopia to hold in user deposits. This leads us to think Cryptopia must have a cache of ether stashed away.

If these funds are out there, they would either be stored on-chain in a cold wallet or off-chain in the custody of another exchange.

Exchanges should be freezing these funds as soon as they arrive.

No excuses. On the blockchain there is nowhere to hide, and no reason 100% of these transfers should not have been frozen immediately.

Any exchanges who care about compliance and want to block these illicit funds are encouraged to get in touch. We will set up a real-time alert to notify you the moment any of these stolen funds hit your accounts, free of charge.

No excuses.

copper member
Activity: 28
Merit: 0
Some updates from NZ POLICE:

https://www.police.govt.nz/news/release/police-making-progress-crypto-currency-investigation

Quote
Police making progress in crypto-currency investigation
Tuesday, 22 January 2019 - 5:23pm
National News

Police continue to investigate the unauthorised transfer of crypto-currency worth a significant sum from Christchurch-based crypto-currency trading company Cryptopia on 13-14 January 2019.

Good progress is being made and positive lines of enquiry are being developed to identify the source of the transfer, and to identify where the crypto-currencies have been sent. The assistance of the crypto currency community is being sought as the investigation progresses.

This is a very complex investigation, involving expert digital forensic investigators from within New Zealand and in various overseas jurisdictions, as well as overseas authorities.

Members of the investigation team met with Cryptopia management and staff yesterday and today and outlined progress in the investigation.

Cryptopia management and staff have been co-operating with Police and providing considerable assistance in the investigation. 

The investigation is expected to take some to time complete, and the digital forensic team will be on-site at Cryptopia’s premises for some days to come.

Anyone with information which could assist the investigation can contact police by email at [email protected] .

ENDS

Issued by Police Media Centre
hero member
Activity: 2072
Merit: 542
DGbet.fun - Crypto Sportsbook
Most coins and tokens were sent to BINANCE exchange.
The account is not at freeze, KUDOS to the BINANCE TEAM that they quickly act on the incidents.
What will happen to cryptopia then and to their users.
Can you elaborate more or send some link on the article? Don't know why Binance is involved in this.
copper member
Activity: 112
Merit: 0
Velic Ecosystem
This is very bad especially at a time like this when the market is already in a bad place, the last thing we need right now is more bad news but what has happened has happened.
full member
Activity: 1004
Merit: 111
Most coins and tokens were sent to BINANCE exchange.
The account is not at freeze, KUDOS to the BINANCE TEAM that they quickly act on the incidents.
What will happen to cryptopia then and to their users.
sr. member
Activity: 434
Merit: 250
So far the only coins we know are affected for sure is ETH and a large amount of ERC-20 tokens. But to be honest, I think that which coins are affected doesn't really matter. If Cryptopia goes bankrupt because of this, we most likely can say bye-bye to our coins. If they don't but can't pay back all users, whatever is left may or may not be split between users. I highly doubt they will only let the holders of affected coins take the whole hit if they can't pay the whole amount after their own pockets .

As for news, they are most likely under strict instructions from law enforcement not to talk about anything (even Cryptopia themselves may not know everything police knows). It's for everyone's own good to talk about nothing until they know exactly what happens, as news could potentially tip off whoever did this.

For now, all we can do is hope Cryptopia have a "crisis fund" set up, and will simply refund every user once the investigation is over, and they will pick up where they left off (minus a lot of their reputation).
copper member
Activity: 28
Merit: 0
NEW UPDATES

source:r/Cryptopia

Quote
Posted byu/spammero
4 hours ago
Stolen ORME from cryptopia going to Bibox wallet...

Sooo after tracking stolen ORME coins from "hacker" wallet, they transferred the ORME coins from cryptopia to Bibox exchange wallet.

It was the transfers in order: hacker wallet - all stolen ORME to random wallet - all stolen ORME from random wallet to many random wallets (splitted in 400k-800k transactions) - all ORME from random wallets to Bibox main wallet.

https://i.imgur.com/I8z2Xrn.png

You can check the last transfers to Bibox exchange wallet on this img or checking it in etherscan.

https://etherscan.io/token/0x516e5436bafdc11083654de7bb9b95382d08d5de --- ORME token

https://ethplorer.io/address/0xf73c3c65bde10bf26c2e1763104e609a41702efe#transfers=2 --- Bibox wallet
Pab
legendary
Activity: 1862
Merit: 1012
This is my first time that an exchange was supposed to be hacked where i have some port polio in it. Honestly i am scared right now on losing my money on that exchange. Does anybody here know on what would be the future of our money on that exchange if it is true that it was hacked?
In old good time when exchanges were hacked then funds was lost
Only one difference was Poloniex what gave back to users  all stolen funds
biggest hacks Mintpal Cryptsy traders lost everything
In a case of Cryptsy Mintpal it was not hack funds were stolen by owners
I don't know how it will be in a case of Cryptopia
There was hacked exchange in past what sign agreement with insurgence company and users get back his money
Maybe hackers will get in panic and they will return some of funds it will be hard for them to sell all that coins with KYC all over
Pages:
Jump to: