Truflation
September 25, 2024
•[ financial, malware, finance ]
Crypto project Truflation loses over $5 million from its treasury multisig and personal wallets in a malware attack
OpenAI's press account on X
September 23, 2024
•[ financial, social, finance ]
Crypto scammers hijack OpenAI Newsroom, OpenAI's press account on X, formerly Twitter, to advertise a nonexistent token $OPENAI.
Equiniti Trust Company, formerly known as American Stock Transfer & Trust Company
September 19, 2024
•[ financial, phishing, finance ]
Equiniti Trust Company agrees to pay $850K after an unknown threat actor, pretending to be an employee of a U.S.-based public issuer client of American Stock Transfer, instructed the Company to issue millions of new shares, liquidate those shares, and send the proceeds to an bank in Hong Kong, leading to a loss of roughly $4.78 million.
Equiniti Trust Company, formerly known as American Stock Transfer & Trust Company
September 19, 2024
•[ financial, misconfiguration, finance ]
In a second breach, an unknown threat actor was able to create fake accounts with American Stock Transfer & Trust, by using stolen Social Security numbers of various American Stock Transfer accountholders, allowing them to liquidate securities held in the legitimate accounts and transfer approximately $1.9 million to external bank accounts.
Maestro Bot
September 19, 2024
•[ financial, finance ]
Reports emerge that even the users of the cryptocurrency trading bot Maestro are drained of $200,000 worth of digital assets.
DeltaPrime
September 16, 2024
•[ financial, finance ]
DeltaPrime, a decentralized finance (DeFi) platform, announces that its Arbitrum-based protocol, DeltaPrime Blue, was exploited in a cyber attack that drained approximately $5.98 million.
Marin Housing Authority
September 15, 2024
•[ financial, government ]
Threat actors steal $950,000 that was earmarked for the rehabilitation of public housing in Marin City, from the Marin Housing Authority.
Kraken
June 19, 2024
•[ financial, misconfiguration, finance ]
The Kraken crypto exchange discloses that alleged security researchers exploited a zero-day website bug to steal $3 million in cryptocurrency and then refused to return the funds.
1,899 victims in Singapore
June 14, 2024
•[ financial, hack, malware ]
A Singapore police-led law enforcement operation dismantles a regional cybercrime ring that carried out malware-enabled scams to steal tens of millions of dollars from victims since 2023.
QuoteWizard
June 10, 2024
•[ financial, misconfiguration, finance ]
Financial services firm LendingTree confirms that QuoteWizard, one of its subsidiaries, was potentially affected by a cybersecurity incident following a wider attack on customers of data storage company Snowflake.
Loopring
June 9, 2024
•[ financial, misconfiguration, finance ]
Loopring announces a security breach involving its two-factor authentication service Guardian, affecting two wallets, with one of them was drained of about $5 million.
Town of Arlington
June 5, 2024
•[ financial, phishing, government ]
The town of Arlington discloses that it had lost nearly $446,000 in a monthslong business email compromise (BEC) scam.
Official Microsoft India account on X (formerly Twitter)
June 3, 2024
•[ financial, hack, phishing ]
The official Microsoft India account on X (formerly Twitter), with over 211,000 followers, is hijacked by cryptocurrency scammers to impersonate Roaring Kitty, the handle used by notorious meme stock trader Keith Gill.
Gala Games
May 21, 2024
•[ financial, finance ]
An attacker steals more than $206 million and returns $22 million worth of cryptocurrency the day after from Gala Games.
Pump.fun
May 16, 2024
•[ insider, financial, finance ]
Solana-based memecoin launchpad Pump.fun says that a former employee was behind an exploit that resulted in the misappropriation of approximately 12,300 SOL, valued at about $1.9 million.
Undisclosed crypto investor
May 3, 2024
•[ financial, hack, phishing ]
An individual loses around $71 million worth of bitcoin in what appears to be an address poisoning attack. A week later the author of the attack returns the stolen bounty.
South African Department of Justice and Constitutional Development
May 1, 2024
•[ hack, financial, government ]
The South African Department of Justice and Constitutional Development (DJ&CD) suffers a cyber security incident affecting child maintenance payments.
Pike Finance
April 26, 2024
•[ financial, finance ]
Pike Finance suffers its second exploit in three days, resulting in the loss of $1.68 million worth of digital assets.
Pacific Guardian Life Insurance
April 25, 2024
•[ financial, hack, finance ]
Pacific Guardian Life Insurance says that 165,000 people had their financial info stolen in 2023 attack.
Hedgey Finance
April 19, 2024
•[ financial, finance ]
Token infrastructure platform Hedgey Finance undergoes two simultaneous exploits that resulted in a combined loss of $44.7 million