North Korean Hackers Deploy BeaverTail Malware via Fake Crypto Job Offers
A sophisticated social engineering campaign leverages fake job opportunities to distribute advanced malware, directly compromising user credentials and crypto wallets.
Crypto.com Employees Compromised by Social Engineering, Internal Systems Accessed
Social engineering against exchange personnel exposes internal systems, underscoring critical human-factor vulnerabilities in centralized platforms.
AdsPower Users Lose Millions to Malicious Browser Extension Supply Chain Attack
A compromised software supply chain enabled attackers to distribute malicious wallet extensions, directly exposing users' private keys and draining substantial digital assets.
BingX Exchange Hot Wallets Compromised, $52 Million Drained across Multiple Chains
A compromise of centralized exchange hot wallets exposes significant user assets to exfiltration, undermining trust in custodial security.
LLM-Enabled Malware Emerges, Threatening Digital Asset Security with Dynamic Exploits
This emerging class of malware leverages large language models to dynamically generate malicious code, bypassing traditional defenses and escalating risk for digital asset holders.
Shibarium Bridge Drained by Flash Loan and Validator Key Compromise
A critical flaw in Shibarium's validator key management, exacerbated by flash loan manipulation, enabled a $2.4M cross-chain bridge drain.
Cryptocurrency Traders Targeted by ClickFix Malware Campaign
A sophisticated phishing campaign leverages "ClickFix" lures and compiled malware executables, posing an immediate risk of system compromise for cryptocurrency and retail sector personnel.
Chrome V8 Engine Flaw Exposes User Crypto Wallets to Theft
A critical V8 engine vulnerability in Chromium-based browsers allows remote code execution, directly jeopardizing user private keys and digital assets.
WEMIX Blockchain Gaming Platform Suffers $6.1 Million Authentication Key Compromise
Compromised authentication keys granted threat actors unauthorized access, enabling the exfiltration of millions in WEMIX tokens and exposing critical off-chain security vulnerabilities.
