Hack

Hack

Finance

A fake Ledger app on the Apple App Store drained $9.5 million in crypto

A malicious Ledger Live clone slipped onto Apple’s App Store, draining millions from dozens of victims across multiple blockchains in a week-long phishing campaign.

Hacker sitting in a room

Finance

Crypto exchange Kraken targeted in extortion attempt but says there was no breach and no client funds at risk

The firm said a criminal group is attempting to extort it over limited insider-related data access incidents affecting about 2,000 accounts. Kraken says it will not pay and is working with law enforcement.

Kraken on phone (PiggyBank/ Unsplash)

Policy

U.S. Treasury to loop in crypto sector on hacker warnings shared with traditional firms

The Department of the Treasury announced it's letting crypto firms sign up for timely information-sharing on cybersecurity threats.

U.S. Treasury Department (Jesse Hamilton/CoinDesk)

Tech

How North Korea's 6-month long secret espionage program has crypto community rethinking security

For years, the DeFi industry has treated security as a technical problem: something that could be solved with better code. But the Drift incident suggests something far more complex: that the real vulnerabilities may lie outside the codebase altogether.

(Gorodenkoff/Shutterstock)

Tech

Solana Foundation unveils security overhaul days after $270 million Drift exploit

The program includes 24/7 threat monitoring for protocols with more than $10 million in deposits and a dedicated incident response network of security firms.

Solana logo

Tech

AI is making crypto's security problem even worse, Ledger CTO warns

Ledger’s Charles Guillemet says artificial intelligence is making hacks cheaper and faster, forcing a rethink of how crypto systems stay secure.

Charles Guillemet, CTO of Ledger (CoinDesk TV)

Finance

Circle under fire after $285 million Drift hack over inaction to freeze stolen USDC

Prominent blockchain sleuth ZachXBT alleged faster action by Circle could have limited crypto losses, but freezing asset without legal authorization carries legal risks.

Jeremy Allaire, Co-Founder, Chairman and CEO, Circle Speaks at Hong Kong Fintech Week in 2024 (HK Fintech Week)

Tech

How a Solana feature designed for convenience let attackers drain more than $270 million from Drift

The exploit did not involve a bug in Drift's code. It used "durable nonces," a legitimate Solana transaction feature, to pre-sign administrative transfers weeks before executing them, bypassing the protocol's multisig security in minutes.

Hacker (Getty Images/Seksan Mongkhonkhamsao)

Finance

North Koreans hackers likely behind $286 million Drift Protocol exploit: Elliptic

The blockchain analytics firm pointed to cross-chain laundering patterns and Solana-specific tracing challenges that mirror prior North Korean state-linked operations.

North Korea, Kim Jong Un (Shutterstock)

Tech

Galaxy Digital's testnet suffers hack but no client funds or information were compromised

Mike Novogratz’s crypto financial services firm said unauthorized access was limited to a segregated R&D workspace; trading systems and client accounts were unaffected.

Galaxy Digital CEO Mike Novogratz: ‘Crypto Revolution Is Here’