NATIONAL NEWS

Crypto heists are only getting bigger. Here’s what you should know

Dec 12, 2021, 8:08 AM | Updated: Mar 7, 2024, 5:01 pm

A person uses a cell phone to pay with Bitcoins during the Latin Bitcoin conference (LABITCONF) in ...

A person uses a cell phone to pay with Bitcoins during the Latin Bitcoin conference (LABITCONF) in San Salvador, on November 18, 2021. (Photo by Sthanly ESTRADA / AFP) (Photo by STHANLY ESTRADA/AFP via Getty Images)

(Photo by STHANLY ESTRADA/AFP via Getty Images)

(CNN) — Over the summer, an anonymous hacker stole roughly $600 million in cryptocurrency from Poly Network, a decentralized finance network many outside the crypto world had likely never heard of. Then the hacker gave it back.

Four months later, hackers stole at least $150 million from crypto exchange Bitmart. According to one analysis, unidentified hackers used a stolen private key to open two “hot wallets” and extract funds.

Security incidents like these are not new in the crypto world, but the size of these hacks appears to be growing as cryptocurrency prices have surged over the past year, drawing more mainstream attention.

Five of the 10 largest crypto thefts of all time have happened this year, according to data compiled by consumer website Comparitech. And these incidents may only continue due to increased cryptocurrency usage, according to financial tech experts.

Here’s what you should know about what’s happening — and how to keep your digital assets safe.

 

What is happening?

 

The two main targets of crypto hacks currently are centralized exchanges and decentralized finance (DeFi) services, according to Tom Robinson, chief scientist at London-based crypto compliance firm Elliptic.

Centralized exchanges have been the prime target of hacking groups for several years. These exchanges store a user’s assets in “hot wallets,” or digital wallets that are connected to the internet. This makes them more accessible for users, but also potentially more vulnerable to savvy hackers.

The recent BitMart hack was one such example. Another is the Coincheck attack in 2018, which saw roughly $530 million stolen, making it the biggest crypto heist ever — until the Poly Network incident this year, according to Comparitech’s data.

DeFi services are a newer part of the crypto world. DeFi software applications cut out exchanges all together, as they are run directly on top of blockchain platforms, and hacks of these services are usually due to coding errors or issues with design of apps, according to Robinson. Major examples include Poly Network as well as a more recent hack of Badger DAO, a platform that gives users vaults in which to store bitcoin and earn profit. The Badger DAO hack resulted in the loss of $120 million.

“What’s clear from the majority of these attacks this year is that it’s often a vulnerability that’s being exploited,” says Rebecca Moody, head of research at Comparitech. “With the industry growing at an exponential rate and relying on open source technology, this leaves platforms open to exploitation when hackers are able to find a weakness in the code.”

 

What are you really at risk of losing?

 

Just because an exchange suffers a hack doesn’t necessarily mean you lose all your money.

Each crypto service has varying levels of resources to cover hacks. BitMart, for example, pledges to cover all stolen assets.

According to crypto-crime analyst Joe McGill of TRM Labs, if an entity does not have the ability to compensate impacted users, there is still the chance that law enforcement — like the IRS Criminal Investigations Cyber Unit — is able to recover the stolen funds.

But there is no guarantee. While many banks typically offer deposit insurance up to a certain amount, there is no such promise when holding crypto assets in a third-party service. Some companies might have insurance to cover losses, but the level of coverage — if there is any at all — varies by platform.

As for the cryptocurrency that’s stolen, it could be gone forever. “More often than not, hackers successfully get away with stolen funds as cryptocurrency is virtually untraceable and easily disguised by laundering it through wallets in a matter of minutes,” Adam Morris, co-founder of Crypto Head, told CNN Business.

 

How can cryptocurrency holders protect themselves?

 

When using a crypto wallet or exchange, experts say users should scrutinize the scale and professionalism of the company behind it.

“Do they have people responsible for cybersecurity? Does the company have a good track record? What’s the size of the company? How many employees does it have? Those are all indicators that you can have confidence that that business is going to secure your assets in a responsible way,” says Robinson.

There are also basic security measures users can take when accessing their crypto account. McGill recommends two-factor authentication or hardware keys, which are essentially passwords kept on offline devices. He also recommends requiring approval for all crypto withdrawals as well as whitelisting addresses, which only allows certain addresses in your contact list to receive crypto funds from your account.

“There is no 100% guarantee of avoiding cybercrime,” McGill warns, but he said it is important to understand the exchanges being used, their history with cybercrime and the response systems in place.

Another way to protect one’s crypto assets, according to Morris, is to use a hardware wallet, known as “cold storage,” rather than storing it with a service. While considered the most secure method of storing crypto, this route puts all the responsibility on the user to store private keys. If those keys get stolen or lost, there is no larger financial entity to offer support.

The-CNN-Wire
™ & © 2021 Cable News Network, Inc., a WarnerMedia Company. All rights reserved

KSL 5 TV Live

National News

In this Friday, Nov. 10, 2017 photo, a rhesus macaques monkey observes kayakers as they navigate al...

Associated Press

Last 4 escaped monkeys are captured in South Carolina after months on the loose

Officials say they have recaptured the final four monkeys who escaped two months ago from a South Carolina compound.

2 hours ago

FILE - Water is dropped by helicopter on the Palisades Fire in Mandeville Canyon, Jan. 11, 2025, in...

Any Taxin, Associated Press

Trump targets California water policy as he prepares to tour LA fire damage

As President Donald Trump prepares to tour wildfire damage in California, he's zeroing in on one of his frequent targets for criticism: State water policy.

8 hours ago

FILE - The Ford company logo is seen, Oct. 24, 2021, on a sign at a Ford dealership in southeast De...

Associated Press

Ford recalls more than 270,000 Broncos and Mavericks due to loss of power problem

Ford Motor Co. is recalling 272,827 Broncos and Mavericks due to a power problem that can cause vehicles to stop unexpectedly or fail to start.

9 hours ago

First lady Melania Trump looks on as President Donald Trump speaks with reporters before boarding M...

Will Weissert and Christ Megerian, Associated Press

Trump departs White House to visit disaster zones in North Carolina and California

President Donald Trump is heading to hurricane-battered North Carolina and wildfire-ravaged Los Angeles.

10 hours ago

A general view outside the United Healthcare corporate headquarters is seen here on December 4 in M...

Ramishah Maruf, CNN

UnitedHealthcare has a new CEO

UnitedHealthcare announced a new CEO on Thursday, filling in the spot after Brian Thompson was shot and killed in midtown Manhattan in a targeted attack.

22 hours ago

An Orem firetruck outside of the Palisades Fire in California in January 2025....

Alex Cabrero

Utah firefighters reflect on unprecedented wildfire experience in southern California

After two weeks of helping to fight the devastating wildfires in southern California, Utah firefighters are on their last 24-hour shift.

1 day ago

Sponsored Articles

holiday gift basket with blue tissue paper and gingerbread cookies...

Kneaders Bakery & Cafe

Holiday hacks for a stress-free season

Get more out of your time with family and loved ones over the holidays by following these tips for a stress-free season.

2 computer techs in a computer shop holding up a computer server with the "hang loose" sign...

PC Laptops

A comprehensive guide to choosing the right computer

With these tips, choosing the right computer that fits your needs and your budget will be easier than ever.

crowds of people in a German style Christmas market...

This Is The Place Heritage Park

Celebrate Christkindlmarket at This Is The Place Heritage Park!

The Christkindlmarket is an annual holiday celebration influenced by German traditions and generous giving.

Image of pretty woman walking in snowy mountains. Portrait of female wearing warm winter earmuff, r...

Lighting Design

Brighten your mood this winter with these lighting tricks

Read our lighting tips on how to brighten your mood in the winter if you are experiencing seasonal affective disorder.

A kitchen with a washer and dryer and a refrigerator...

Appliance Man

Appliance Man: a trusted name in Utah’s home appliance industry

Despite many recent closures of local appliance stores, Appliance Man remains Utah's trusted home appliance business and is here to stay.

abstract vector digital social network technology background...

Les Olson

Protecting yourself against social engineering attacks

Learn more about the common types of social engineering to protect your online or offline assets from an attack.

Crypto heists are only getting bigger. Here’s what you should know