Share this article

LocalBitcoins User Funds Stolen After Chat Client Hack

P2P marketplace LocalBitcoins has experienced a hack on its chat client, resulting in the distribution of malware and loss of customer funds.

Updated Dec 10, 2022, 3:17 p.m. Published Jan 29, 2015, 9:24 a.m.
hacker hands

Peer-to-peer bitcoin marketplace LocalBitcoins suffered a hack this week that resulted in the distribution of malware and a loss of customer funds.

Affected users will be granted refunds after taking steps to address security vulnerabilities, according to the company.

STORY CONTINUES BELOW
Don't miss another story.Subscribe to the Crypto Daybook Americas Newsletter today. See all newsletters

LocalBitcoins

vice president Nikolaus Kangas acknowledged the hackhttps://localbitcoins.com/forums/#!/general-discussion:localbitcoins-livechat-comp?ch=35qy on 27th January in a forum post, outlining how the intrusion took place through its LiveChat account, with an estimated 17 BTC lost from customer wallets.

The bitcoin marketplace has experienced security-related problems before, including an incident last year when a hacker gained access to its servers for a brief period of time, though according to LocalBitcoins no customer data was lost. Customers have also reported running afoul of fraudulent users in the past.

Kangas told CoinDesk that he believed the hackers used an unknown kind of malware that was able to bypass existing security measures, and took personal responsibility for the LiveChat intrusion.

He explained:

“The attacker used that LiveChat access to spread some kind of Windows executable, which probably was some new kind of keylogger software which is not yet detected by virus protection mechanisms. If the user got that executable installed, with some social engineering, the attacker managed to get access to different accounts of those victims.”

Customer postings on LocalBitcoins suggest that at least one user reportedly lost funds through other bitcoin-related accounts, but that user later reported that discussions with the company were underway on a possible solution.

Awareness prevented spread

According to the company, three users were identified as having lost funds during the hack. Reports indicate that a lack of two-factor authentication may have been to blame for the fraudulent withdrawals, and LocalBitcoins advised customers to ensure that they are using such security measures to protect their accounts.

Kangas said that thanks to the combined efforts of LocalBitcoins employees and users of the site, information about the LiveChat compromise was disseminated relatively quickly, noting:

“Due to fast actions by the Localbitcoins support staff and Localbitcoins.com community, the impact of the attack remained limited. The amount of users affected was fairly low due to general awareness of the users.”

Kangas added that the company is looking at how they can improve their internal security protocols to avoid similar incidents in the future, and suggested that the incident was illustrative of the costs and challenges of participating in a digital economy.

“This is not only a challenge to bitcoin users, but to all Internet services and users in general, about how to make those attacks equally expensive for those attackers,” he said.

Malware image via Shutterstock

More For You

Protocol Research: GoPlus Security

GP Basic Image

What to know:

  • As of October 2025, GoPlus has generated $4.7M in total revenue across its product lines. The GoPlus App is the primary revenue driver, contributing $2.5M (approx. 53%), followed by the SafeToken Protocol at $1.7M.
  • GoPlus Intelligence's Token Security API averaged 717 million monthly calls year-to-date in 2025 , with a peak of nearly 1 billion calls in February 2025. Total blockchain-level requests, including transaction simulations, averaged an additional 350 million per month.
  • Since its January 2025 launch , the $GPS token has registered over $5B in total spot volume and $10B in derivatives volume in 2025. Monthly spot volume peaked in March 2025 at over $1.1B , while derivatives volume peaked the same month at over $4B.

More For You

Crypto stocks pare gains as bitcoin retreats from $90,000 rally

(CoinDesk)

Crypto-linked stocks pulled back, with miners like MARA Holdings (MARA) down 4.8% and Core Scientific (CORZ) down 6%.

What to know:

  • The crypto market rally reversed, with bitcoin (BTC) falling 3.9% to around $86,500 and ether (ETH) losing 5.3% and and XRP dropping 4.1%.
  • Crypto-linked stocks also pulled back, with miners like MARA Holdings (MARA) down 4.8% and Core Scientific (CORZ) down 6%.
  • Hut 8 (HUT) remains up 12.8% after signing a $7 billion lease agreement.