No ‘respite’ for exploits, flash loans or exit scams in 2023: Cybersecurity firm

Share This Post

The industry is likely to see “further attempts from hackers targeting bridges in 2023,” while users are urged to be warier of their private keys.

The new year is a fresh start for malicious actors in the crypto space and 2023 won’t likely see a slowdown in scams, exploits and hacks, according to CertiK.

The blockchain security company told Cointelegraph its expectations for the year ahead regarding bad actors in the space, saying:

“We saw a large number of incidents last year despite the crypto bear market, so we do not anticipate a respite in exploits, flash loans or exit scams.”

Regarding other ill-natured incidents the crypto community might face, the company pointed to the “devastating” exploits that took place on cross-chain bridges in 2022. Of the 10 largest exploits during the year, six were bridge exploits that stole around $1.4 billion.

Due to these historically high returns, CertiK noted the likelihood of “further attempts from hackers targeting bridges in 2023.”

Protect your keys

On the other hand, CertiK said there will likely be “fewer brute force attacks” on crypto wallets, given that the Profanity tool vulnerability — which has been used to attack a number of crypto wallets in the past — is now widely known.

The Profanity tool allows users to generate customized “vanity” crypto addresses. A vulnerability in the tool was used to exploit $160 million worth of crypto in the Sept. 2022 Wintermute hack, according to CertiK.

Instead, wallet compromises this year will likely come in the form of poor user security, stating:

“It’s possible that funds lost to private key compromises in 2023 will be due to poor management of private keys, bar any future vulnerability found in wallet generators.”

The firm said it will also be monitoring phishing techniques that could proliferate in the new year. It noted the slew of Discord group hacks in mid-2022 that tricked participants into clicking phishing links such as the Bored Ape Yacht Club (BAYC) Discord hack in June 2022 which stole 145 Ether (ETH).

Related: Revoke your smart contract approvals ASAP, warns crypto investor

Last year, $2.1 billion worth of crypto was stolen through just the 10 biggest incidents alone, while 2021 saw $10.2 billion total stolen from Decentralized Finance (DeFi) protocols according to peer security firm ImmuneFi.

The biggest incident in 2022, and the largest crypto heist of all time, was the Ronin bridge exploit with attackers making off with around $612 million. The largest flash loan attack was the $76 million Beanstalk Farms exploit and the largest DeFi protocol exploit was the $79.3 million stolen from Rari Capital.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

LayerZero Under Intensified Bearish Pressure, Halting Recovery Efforts

LayerZero (ZRO) is currently experiencing a tumultuous phase as its recent recovery attempts falter amid mounting bearish pressure After initially showcasing potential, the altcoin’s upward

From $3.6T to $1.2T: The Surprising Decline in Stablecoin Transfer Volume Unveiled

Since October kicked off, the stablecoin market has experienced a modest boost, though overall growth has remained quite slow Currently, the sector is valued at $1727 billion, with 489% of

Can BRICS Dethrone World Bank and IMF? Why Cuba Is Betting on Its Growing Dominance

BRICS is emerging as a potential alternative to the World Bank and International Monetary Fund (IMF), challenging the dominance of Western-led financial institutions, according to Cuba’s Permanent

Dogecoin Price Flashes Sell Signal After 10% Jump, Is It Time To Get Out?

Dogecoin, the world’s largest meme coin by market capitalization is now flashing a major sell signal, indicating that it may be time for investors to get out fast, and sell off their tokens before

Wall Street Giant Morgan Stanley Bets Big On Bitcoin ETF: $272 Million Revealed

Last January 10th, 2024, the US Securities and Exchange Commission finally approved the Bitcoin ETF applications of 11 funds, including Fidelity, Grayscale, and Blackrock’s IBIT Within a month,

XRP’s Legal Status Unshaken Amid SEC Appeal – Ripple Prepares Counterstrike

Ripple’s legal chief has reaffirmed that the core ruling declaring XRP not a security remains intact despite the appeal by the US Securities and Exchange Commission (SEC) The