Pages:
Author

Topic: 🚨 Galxe has been hacked (Read 215 times)

sr. member
Activity: 1358
Merit: 326
Eloncoin.org - Mars, here we come!
October 11, 2023, 02:53:05 PM
#27
Just in case someone here was touched by the hack, but is not following their social media, here's their latest announcement[1] about this matter.

But in short: everyone affected will receive 100% of the the lost funds in USDT (on Polygon) and an extra 10%.

[1] https://help.galxe.com/en/articles/8461267-october-6th-security-incident-fund-recovery-plan

This is very good step from Galxe team and I think the only way to bring back projects partnership and attraction of Galxe users. This hack force people to think for other web 3 projects. No one wants to connect wallet with site which has been hacked once. So now those user whose wallet not hacked would pray why their wallet not hacked to get 10% extra. I used Galxe two or three times and at the time when Galxe hacked, I was holding only 150$. I sent all payment to other wallets and also I checked in site that my wallet posses no risk.
Anyone from our forum lost any amount?
staff
Activity: 3402
Merit: 6065
October 11, 2023, 01:07:02 PM
#26
Just in case someone here was touched by the hack, but is not following their social media, here's their latest announcement[1] about this matter.

But in short: everyone affected will receive 100% of the the lost funds in USDT (on Polygon) and an extra 10%.

[1] https://help.galxe.com/en/articles/8461267-october-6th-security-incident-fund-recovery-plan
legendary
Activity: 1680
Merit: 1343
October 09, 2023, 01:54:34 PM
#25
Latest estimate is around $270K affecting about 1,120 users. How it happened is quite ridiculous. Dynadot got fooled by the hacker when he impersonated someone from Galxe using fake documents. I don't know about their contract but Galxe should probably ask for compensation from Dynadot because they made a huge blunder.
It is very ridiculous. In this case, any scammer can use a social engineering attack and contact the ignorant Dynadot support and then submit documents that he forged using Photoshop or any other tool to bypass their security processes and obtain access to the domain account for any project and then redirect the domain users to a phishing domain and steals their crypto.

The 1,120 affected users are supposed to be compensated through the Dynadot team. The hacker has succeeded and managed to hack many Galxe users through the mistake caused by their support team. It is good that the Galxe team published in this announcement that they are working hard with many bodies and parties to recover the stolen money and identify the hackers, and I hope they will succeed in this in the end.
legendary
Activity: 1708
Merit: 1364
🔃EN>>AR Translator🔃
October 08, 2023, 12:37:43 PM
#24
A new hacking operation has been completed successfully. This is unfortunate because the hacking operations happen simultaneously and the victims are always the users. Fortunately, the lost amount is not considered large compared to the number of users on the site, and the site can compensate for the losses, but this remains evidence of weak development and lack of updates.

I express my gratitude to MetaMask, which I use - today he blocked access to the Galxe website and warned me. And this is not advertising.
This is not new to MetaMask because we are accustomed to taking similar measures with any site suspected of being hacked or any links to suspicious sites. They have a well organized support team that reacts quickly to most updates, especially regarding sites linking to the wallet.

But sometimes they are late to block so on your own you should be diligent if you read or there's speculation or report you should be hurry to take action and always up to date on the latest news about platforms and exchanges you're working on or your wallet is connected.
Hackers and scammers are working 24/7 so you should be vigilant, as much as possible subscribe to newsletters and online magazines about Cryptocurrency and technology, awareness is the first step to safety.

MetaMask is nothing but a wallet that acts as an interaction gateway with the blockchain, and therefore it is not its function at all to alert to dangerous links or block connection with them. On this basis, it is not permissible to blame her, especially since she cannot deal with every emergency in a timely manner. There is time to spend verifying and checking before deciding to alert users. What MetaMask does is considered a distinctive service, and based on it, it brings in a larger number of users who become more reliable with it.
sr. member
Activity: 966
Merit: 276
★Bitvest.io★ Play Plinko or Invest!
October 08, 2023, 12:02:53 PM
#23
For those who are familiar with the platform, and use it on a regular basis to complete tasks for different projects, you should stop using it. Don't connect your wallet, and don't sign any transactions either. It has been hacked as mentioned here[1].

I see some people reporting some losses of huge numbers, but not sure if they're just trolling or it's real. Either way, don't use it for now.

[1] https://twitter.com/Galxe/status/1710318639381881280
I think galaxe is solved the issue. What happen there is normal sign message convert as all approval message. If you are accepted it your funds are gone. If you are victim of the galaxe incident,create a support ticket on their discord. You have to give all the details.
Yes as their post in twitter yesterday, galxe team tweeted that the website is now safe to use again. Luckily they acted quickly, even binance and other website posted the issue about hacking that's why users have been alerted and did not connect their wallet on galxe website.
member
Activity: 468
Merit: 13
October 08, 2023, 08:56:59 AM
#22
For those who are familiar with the platform, and use it on a regular basis to complete tasks for different projects, you should stop using it. Don't connect your wallet, and don't sign any transactions either. It has been hacked as mentioned here[1].

I see some people reporting some losses of huge numbers, but not sure if they're just trolling or it's real. Either way, don't use it for now.

[1] https://twitter.com/Galxe/status/1710318639381881280
I think galaxe is solved the issue. What happen there is normal sign message convert as all approval message. If you are accepted it your funds are gone. If you are victim of the galaxe incident,create a support ticket on their discord. You have to give all the details.
legendary
Activity: 2058
Merit: 1315
October 08, 2023, 08:22:30 AM
#21
No, this is a wrong observation. If you look at the transactions on the scammer's wallet, you will see that coins are withdrawn from almost all networks, including BSC, Poligon, Avalanche and Fantom networks, that is, from those networks where ETH is not a native token.
It seems Ive just checked the eth but you are right. These are thieves assumed that all wallets are also gonna be sweep but the hacker prioritize the wallet with bigger assets being shown. Anywat thanka for the link, this is bad considering galxe is one of the used social campaign for all projects.
legendary
Activity: 2268
Merit: 1655
To the Moon
October 08, 2023, 07:24:04 AM
#20
...Also it worth noticing that the hacker only moving funds from those wallets that contain bigger amount of eth and neglect the smaller values...

No, this is a wrong observation. If you look at the transactions on the scammer's wallet, you will see that coins are withdrawn from almost all networks, including BSC, Poligon, Avalanche and Fantom networks, that is, from those networks where ETH is not a native token.

In addition, I remind everyone that you can check your wallet on a specially created page - https://revoke.cash/exploits/galxe
sr. member
Activity: 1526
Merit: 412
October 07, 2023, 11:08:30 PM
#19
Latest estimate is around $270K affecting about 1,120 users. How it happened is quite ridiculous. Dynadot got fooled by the hacker when he impersonated someone from Galxe using fake documents. I don't know about their contract but Galxe should probably ask for compensation from Dynadot because they made a huge blunder.

[....]is it really hacked or is it just a rumor.
Are you serious? OP already posted a tweet from Galxe confirming the security breach.
sr. member
Activity: 1120
Merit: 253
October 07, 2023, 03:48:07 PM
#18
Current survey from all airdrop participants are happiness with Galxe have been hacked, they are not happy when participating in airdrop campaign linked with Galxe to earn reward and connected their wallet with this platform. Hope any one with their wallet connected with Galxe can disconnect as soon possible because I saw with hacker wallet connection fund increasing up every time. Due many platform of cryptocurrency exactly required with wallet connected not secure yet, for all investor or airdrop campaign participants never use your main wallet and as soon possible not recommended holding fund in your wallet have indicated connected in every site for the future.

Make one wallet use for connecting with all cryptocurrency platform, when get hacking we don't worry about our fund loss because not as primary wallet and don't save assets there.
legendary
Activity: 2702
Merit: 1220
October 07, 2023, 12:16:58 PM
#17
For those who are familiar with the platform, and use it on a regular basis to complete tasks for different projects, you should stop using it. Don't connect your wallet, and don't sign any transactions either. It has been hacked as mentioned here[1].

I see some people reporting some losses of huge numbers, but not sure if they're just trolling or it's real. Either way, don't use it for now.

[1] https://twitter.com/Galxe/status/1710318639381881280

This indicates that any platform ask to connect our wallet is not totally safe since issue same with galxe will happen. Galxe is popular site and to many people which hope to earn huge from doing some task, but now that this site has been hacked it open some sleeping consciousness that we must secure our wallets and don't ever trust any site even if they are popular since the same issue might happen then for sure we can't afford to be their victim.

I also see a lots of post saying their lose regarding on incident but we can't verify if this is true and hopefully that's case since if many got scam with that for sure these scammers will attack for second time so we need to be ready or careful on next platform to be attack so that we can assure that we are safe from getting hack.
hero member
Activity: 2814
Merit: 571
Leading Crypto Sports Betting & Casino Platform
October 07, 2023, 11:59:50 AM
#16
A new hacking operation has been completed successfully. This is unfortunate because the hacking operations happen simultaneously and the victims are always the users. Fortunately, the lost amount is not considered large compared to the number of users on the site, and the site can compensate for the losses, but this remains evidence of weak development and lack of updates.

I express my gratitude to MetaMask, which I use - today he blocked access to the Galxe website and warned me. And this is not advertising.
This is not new to MetaMask because we are accustomed to taking similar measures with any site suspected of being hacked or any links to suspicious sites. They have a well organized support team that reacts quickly to most updates, especially regarding sites linking to the wallet.

But sometimes they are late to block so on your own you should be diligent if you read or there's speculation or report you should be hurry to take action and always up to date on the latest news about platforms and exchanges you're working on or your wallet is connected.
Hackers and scammers are working 24/7 so you should be vigilant, as much as possible subscribe to newsletters and online magazines about Cryptocurrency and technology, awareness is the first step to safety.
legendary
Activity: 1708
Merit: 1364
🔃EN>>AR Translator🔃
October 07, 2023, 11:12:39 AM
#15
A new hacking operation has been completed successfully. This is unfortunate because the hacking operations happen simultaneously and the victims are always the users. Fortunately, the lost amount is not considered large compared to the number of users on the site, and the site can compensate for the losses, but this remains evidence of weak development and lack of updates.

I express my gratitude to MetaMask, which I use - today he blocked access to the Galxe website and warned me. And this is not advertising.
This is not new to MetaMask because we are accustomed to taking similar measures with any site suspected of being hacked or any links to suspicious sites. They have a well organized support team that reacts quickly to most updates, especially regarding sites linking to the wallet.
hero member
Activity: 2520
Merit: 783
October 07, 2023, 10:41:51 AM
#14
For those who are familiar with the platform, and use it on a regular basis to complete tasks for different projects, you should stop using it. Don't connect your wallet, and don't sign any transactions either. It has been hacked as mentioned here[1].

I see some people reporting some losses of huge numbers, but not sure if they're just trolling or it's real. Either way, don't use it for now.

[1] https://twitter.com/Galxe/status/1710318639381881280

Oh my not a good news since there's a lot of people using this platform. If bad thing happened and those hackers will have full control of these platform for sure there's a lot of users will get affected with it especially that they connect their wallets before they can do some task there. And to awful to read that there are couple of people has been affected already and maybe best for users to drain their wallet before the hacker can locate it.

Lucky to use a dummy wallet on their platform so I don't have anything to lose there, but other people might get affected with this especially those people who are late to receive this news since provably they might wake up that they don't have anything left on their wallet and that is bad sight to see especially those balances is their hard earned crypto's from participating on multiple platforms.
hero member
Activity: 2254
Merit: 658
Revolutionized copy gaming platform
October 07, 2023, 09:16:34 AM
#13
My wallet was not drained after the incident as I didn’t logged in to Galxe that day. After reading the X post of Galxe regarding the incident, I checked to see if the address being mentioned by them was in my history of approvals that needs to be revoked.

But good thing it wasn’t. I’ve also disconnected my wallet from Galxe. If I was not aware of the incident and immediately go to Galxe and approve signature, I might be one of those people who are affected and got hacked.

Thank God I did my homework making sure that all of the hardwork that I’ve built would not be put to waste, especially those NFTs and OATs that I’ve minted.

I really feel for those people who have lost their money and drained to the hacker’s wallet who compromised Galxe back then.

Stay SAFU everyone!
sr. member
Activity: 1288
Merit: 257
Chainjoes.com
October 07, 2023, 09:12:12 AM
#12
Seeing that the amount of loss is quite large, sometimes negative thoughts come out about hacking like this, is it really hacked or is it just a rumor, thank you for the information provided. I hope my wallet is safe because the day before the incident I was still working on one of the programs there.
sr. member
Activity: 1329
Merit: 258
Undeads.com - P2E Runner Game
October 07, 2023, 09:00:59 AM
#11
very surprising this incident, even though there are many programs that I followed there,
and haven't gotten the results, (sad) after I got the info I rushed to break the connection to Galxe
sr. member
Activity: 1358
Merit: 267
Degens.bet - On-chain 1000x Futures
October 07, 2023, 05:03:31 AM
#10
I was lucky, yesterday I didn't use Galxe at all. But the situation is sad, although not unique over the past 1-2 months. The system of approvals itself - signatures for identification - is very convenient, but as we see, it is not safe. That is, we need to make changes to the signature mechanism itself; it should not be directly related to the funds in our wallet. As for Revoke, it’s worth remembering the situation in the summer when he too was attacked using fake contracts. Any service is vulnerable.
I express my gratitude to MetaMask, which I use - today he blocked access to the Galxe website and warned me. And this is not advertising.
legendary
Activity: 2058
Merit: 1315
October 07, 2023, 02:52:44 AM
#9
I see some people reporting some losses of huge numbers, but not sure if they're just trolling or it's real. Either way, don't use it for now.
Ive saw the news too. Ive easily disconnected my wallet within galxe. It seems the hackers are having fun on exchanging oat to 1eth per wallet. What a crazy thing to happened actually, how could they exploit just like that. Also it worth noticing that the hacker only moving funds from those wallets that contain bigger amount of eth and neglect the smaller values.

Its like the process has autoskipped on contracts if the wallet only have few gas and cant even profit from transfer.  Very smart and scary hacker.
sr. member
Activity: 1624
Merit: 292
Eloncoin.org - Mars, here we come!
October 07, 2023, 02:25:00 AM
#8
According to information shared, it seems that users have lost money from this scam. Funds from the Galxe hack were transferred to a wallet address 0x4103…6163d. More notably, that the wallet address receiving money from this Galxe hack is closely related to the hacker who attacked the Balancer protocol on Sep 20.

Perhaps we have all received warnings to stop using and connecting to galxe at this time, according to what I have been told, Revoke should be done in this situation. But in terms of scale and severity, we can still hope that this is just a small incident and Dev is still diligently finding a way to fix it.
Pages:
Jump to: