On the Site:

NATIONAL NEWS

Crypto heists are only getting bigger. Here’s what you should know

Dec 12, 2021, 8:08 AM | Updated: 3:18 pm

A person uses a cell phone to pay with Bitcoins during the Latin Bitcoin conference (LABITCONF) in ...

A person uses a cell phone to pay with Bitcoins during the Latin Bitcoin conference (LABITCONF) in San Salvador, on November 18, 2021. (Photo by Sthanly ESTRADA / AFP) (Photo by STHANLY ESTRADA/AFP via Getty Images)

(Photo by STHANLY ESTRADA/AFP via Getty Images)

(CNN) — Over the summer, an anonymous hacker stole roughly $600 million in cryptocurrency from Poly Network, a decentralized finance network many outside the crypto world had likely never heard of. Then the hacker gave it back.

Four months later, hackers stole at least $150 million from crypto exchange Bitmart. According to one analysis, unidentified hackers used a stolen private key to open two “hot wallets” and extract funds.

Security incidents like these are not new in the crypto world, but the size of these hacks appears to be growing as cryptocurrency prices have surged over the past year, drawing more mainstream attention.

Five of the 10 largest crypto thefts of all time have happened this year, according to data compiled by consumer website Comparitech. And these incidents may only continue due to increased cryptocurrency usage, according to financial tech experts.

Here’s what you should know about what’s happening — and how to keep your digital assets safe.

 

What is happening?

 

The two main targets of crypto hacks currently are centralized exchanges and decentralized finance (DeFi) services, according to Tom Robinson, chief scientist at London-based crypto compliance firm Elliptic.

Centralized exchanges have been the prime target of hacking groups for several years. These exchanges store a user’s assets in “hot wallets,” or digital wallets that are connected to the internet. This makes them more accessible for users, but also potentially more vulnerable to savvy hackers.

The recent BitMart hack was one such example. Another is the Coincheck attack in 2018, which saw roughly $530 million stolen, making it the biggest crypto heist ever — until the Poly Network incident this year, according to Comparitech’s data.

DeFi services are a newer part of the crypto world. DeFi software applications cut out exchanges all together, as they are run directly on top of blockchain platforms, and hacks of these services are usually due to coding errors or issues with design of apps, according to Robinson. Major examples include Poly Network as well as a more recent hack of Badger DAO, a platform that gives users vaults in which to store bitcoin and earn profit. The Badger DAO hack resulted in the loss of $120 million.

“What’s clear from the majority of these attacks this year is that it’s often a vulnerability that’s being exploited,” says Rebecca Moody, head of research at Comparitech. “With the industry growing at an exponential rate and relying on open source technology, this leaves platforms open to exploitation when hackers are able to find a weakness in the code.”

 

What are you really at risk of losing?

 

Just because an exchange suffers a hack doesn’t necessarily mean you lose all your money.

Each crypto service has varying levels of resources to cover hacks. BitMart, for example, pledges to cover all stolen assets.

According to crypto-crime analyst Joe McGill of TRM Labs, if an entity does not have the ability to compensate impacted users, there is still the chance that law enforcement — like the IRS Criminal Investigations Cyber Unit — is able to recover the stolen funds.

But there is no guarantee. While many banks typically offer deposit insurance up to a certain amount, there is no such promise when holding crypto assets in a third-party service. Some companies might have insurance to cover losses, but the level of coverage — if there is any at all — varies by platform.

As for the cryptocurrency that’s stolen, it could be gone forever. “More often than not, hackers successfully get away with stolen funds as cryptocurrency is virtually untraceable and easily disguised by laundering it through wallets in a matter of minutes,” Adam Morris, co-founder of Crypto Head, told CNN Business.

 

How can cryptocurrency holders protect themselves?

 

When using a crypto wallet or exchange, experts say users should scrutinize the scale and professionalism of the company behind it.

“Do they have people responsible for cybersecurity? Does the company have a good track record? What’s the size of the company? How many employees does it have? Those are all indicators that you can have confidence that that business is going to secure your assets in a responsible way,” says Robinson.

There are also basic security measures users can take when accessing their crypto account. McGill recommends two-factor authentication or hardware keys, which are essentially passwords kept on offline devices. He also recommends requiring approval for all crypto withdrawals as well as whitelisting addresses, which only allows certain addresses in your contact list to receive crypto funds from your account.

“There is no 100% guarantee of avoiding cybercrime,” McGill warns, but he said it is important to understand the exchanges being used, their history with cybercrime and the response systems in place.

Another way to protect one’s crypto assets, according to Morris, is to use a hardware wallet, known as “cold storage,” rather than storing it with a service. While considered the most secure method of storing crypto, this route puts all the responsibility on the user to store private keys. If those keys get stolen or lost, there is no larger financial entity to offer support.

The-CNN-Wire
™ & © 2021 Cable News Network, Inc., a WarnerMedia Company. All rights reserved

KSL 5 TV Live

National News

Police responded to a disturbance on plane in New Orleans when a passenger climbed on to a plane's ...

Shawn Nottingham, CNN

A passenger opened an emergency exit and climbed onto a plane’s wing while the aircraft was at the gate

A man on a Southwest Airlines flight opened an emergency exit door and climbed onto the plane’s wing Sunday while the aircraft was at a gate at New Orleans Louis Armstrong International Airport, authorities said.

9 hours ago

FILE - A Merriam-Webster dictionary sits atop their citation files at the dictionary publisher's of...

Leanne Italie, Associated Press

‘Authentic’ is the Merriam-Webster’s word of the year for 2023

In an age of deepfakes and post-truth, as artificial intelligence rose and Elon Musk turned Twitter into X, the Merriam-Webster word of the year for 2023 is “authentic.”

14 hours ago

Jimmy and Rosalynn Carter at the arrival of Deng Xiaoping, Deputy Premier of China, in Washington, ...

Christina Maxouris, CNN

Rosalynn Carter to lie in repose in Atlanta today as the world prepares for final farewell

Former first lady Rosalynn Carter’s motorcade traveled from her small hometown of Plains, Georgia, to Atlanta Monday, where she is set to lie in repose for members of the public to pay their respects and share their final goodbyes.

15 hours ago

Taylor Swift performs onstage during "Taylor Swift | The Eras Tour."
Mandatory Credit:	Buda Mendes/...

Marianne Garvey, CNN

Taylor Swift will celebrate her birthday by sending her ‘Eras Tour’ to streaming

 Are you ready for it? Taylor Swift has announced that her “Taylor Swift: The Eras Tour concert film” will be available to rent or buy on streaming services.

16 hours ago

FIlE - Surrounded by Army cadets, President Donald Trump watches the first half of the 121st Army-N...

Associated Press

Trump hints at expanded role for the military within the US; A legacy law gives him few guardrails

Campaigning in Iowa this year, Donald Trump said he was prevented during his presidency from using the military to quell violence in primarily Democratic cities and states.

18 hours ago

Salutatorian Alasia Baker, 17, center, and Khyli Barbee, 15, following Baker, leave a graduation ce...

Associated Press

Diplomas for sale: $465, no classes required. Inside one of Louisiana’s unapproved schools

Unlike public schools, formal homeschooling programs or traditional private schools, nearly 9,000 private schools in Louisiana don’t need state approval to grant degrees.

18 hours ago

Sponsored Articles

Stylish room interior with beautiful Christmas tree and decorative fireplace...

Lighting Design

A Step-by-Step Guide to Prepare Your Home for the Holidays

Get ready for festive celebrations! Discover expert tips to prepare your home for the holidays, creating a warm and welcoming atmosphere for unforgettable moments.

Battery low message on mobile device screen. Internet and technology concept...

PC Laptops

9 Tips to Get More Power Out of Your Laptop Battery

Get more power out of your laptop battery and help it last longer by implementing some of these tips from our guide.

Users display warnings about the use of artificial intelligence (AI), access to malicious software ...

Les Olson

How to Stay Safe from Cybersecurity Threats

Read our tips for reading for how to respond to rising cybersecurity threats in 2023 and beyond to keep yourself and your company safe.

Design mockup half in white and half in color of luxury house interior with open plan living room a...

Lighting Design

Lighting Design 101: Learn the Basics

These lighting design basics will help you when designing your home, so you can meet both practical and aesthetic needs.

an antler with large horns int he wilderness...

Three Bear Lodge

Yellowstone in the Fall: A Wildlife Spectacle Worth Witnessing

While most people travel to this park in the summer, late fall in Yellowstone provides a wealth of highlights to make a memorable experience.

a diverse group of students raising their hands in a classroom...

Little Orchard Preschool

6 Benefits of Preschool for Kids

Some of the benefits of preschool for kids include developing independence, curiosity, and learning more about the world.

Crypto heists are only getting bigger. Here’s what you should know