Trending now

Building for Tomorrow: Anand Lalaji Calls for…

Switching from Peachtree to QuickBooks can simplify…

QuickBooks Passwords and Password Recovery: Ensuring Account…

ImFact Declares Connection of 6.8 Billion Devices…

More Than Movement: Rachelle Clingo Walker Smithfield…

Deipno® Tea and Spice Blends Expands Spice…

Drug-Free Tennessee Helps Youth in Ripley Tackle…

THAIFEX – ANUGA ASIA 2025 Opens with…

BLOOD and GOLD: A Wake-Up Call Wrapped…

Tearline’s ChatPilot Surpasses 2.5M Interactions — The…

Mrjung.net

  • Ethereum
    • Ethereum

      The Anatomy of Anonymity: How Dandelion Could Make…

      September 13, 2018

      Ethereum

      A Newly Launched Stablecoin You’ve Never Heard of…

      September 13, 2018

      Ethereum

      Bitstamp: An Overview of the Industry’s Oldest Active…

      September 13, 2018

      Ethereum

      Bitcoin Price Analysis: Strong Rally Tests Trend-Changing Behavior

      September 13, 2018

      Ethereum

      Bitcoin as a Privacycoin: This Tech is Making…

      September 13, 2018

  • Bitcoin
    • Bitcoin

      Abra CEO Believes Bitcoin ETF Eminent, SEC Just…

      September 13, 2018

      Bitcoin

      Mt. Gox Opens Rehabilitation Filing System to Corporate…

      September 13, 2018

      Bitcoin

      World Economic Forum and the Chinese Cryptocurrency Space

      September 13, 2018

      Bitcoin

      Federal Judge Applies Long Established Securities Law to…

      September 13, 2018

      Bitcoin

      Biking Across America, Crypto Cyclists Look to Raise…

      September 13, 2018

  • Markets
    • Markets

      OKEx Founder Released After Questioning in Connection With…

      September 13, 2018

      Markets

      Two-for-One: SEC Slaps Crypto Hedge Fund, Broker With…

      September 13, 2018

      Markets

      Ripple and R3 Reach Settlement in Year-Long Court…

      September 13, 2018

      Markets

      DevCon 4 Will Set the Stage for Ethereum’s…

      September 13, 2018

      Markets

      Stellar-Based Lightyear Acquires Chain, Forms New Entity

      September 13, 2018

  • Guides
    • Guides

      Bitcoin Magazine’s Week in Review: Lightning, Launches and…

      September 13, 2018

      Guides

      Equity Trust Builds New Frontier of Crypto-Based Retirement…

      September 13, 2018

      Guides

      Crypto, Blockchain Companies Shine in LinkedIn’s Top 50…

      September 13, 2018

      Guides

      Distributed Dialogues: Governance and Decentralized Platforms

      September 13, 2018

      Guides

      Battle of the Privacycoins: Why Dash Is Not…

      September 13, 2018

  • Analytic
    • Analytic

      Bitcoin crash: This man lost his savings when…

      September 13, 2018

      Analytic

      Bitcoin crash: This man lost his savings when…

      September 13, 2018

      Analytic

      Lightning Ramp and Casa Join Hands to Develop…

      September 13, 2018

      Analytic

      You Can Now Pay With Bitcoin Via Lightning…

      September 13, 2018

      Analytic

      Abra Supports SEPA Bank Transfers, Enabling Crypto Purchases…

      September 13, 2018

  • Exchange
    • Exchange

      IBM Introduces ‘World Wire’ Payment System on Stellar…

      September 13, 2018

      Exchange

      Lightning Is Made at the #LightningHackday Series in…

      September 13, 2018

      Exchange

      Pellentesque mattis ex eget malesuada consequat. Sed blandit…

      September 13, 2018

      Exchange

      Goldman Sachs Puts Plans for a Crypto Trading…

      September 13, 2018

      Exchange

      Pellentesque mattis ex eget malesuada consequat. Sed blandit…

      September 13, 2018

  • Contact
Mrjung.net
News

Singaporean Blockchain Wallet Security Company Discovers New Type of Scam Targeting Centralized Exchanges

by Binary News NetworkAugust 6, 20240132

Fraudulent Transactions Exploit Wallet Vulnerability, Could Have Stolen More than $3 Million in TRX

Singapore, 6th August 2024, ZEX PR WIRE, CoinsDo, a Singaporean blockchain asset security company, has uncovered a sophisticated scam involving fake transactions and multiple smart contracts targeting major centralized cryptocurrency exchanges. While only a single successful instance of this scam has been confirmed, further analysis of the smart contracts in question revealed that the perpetrators initiated hundreds of these fake transactions, potentially defrauding exchanges, payment gateways, and centralized wallet companies of more than $3 million USD worth of TRX. 

It is highly possible that both firms who built their own wallet infrastructure as well as major wallet solution providers like Fireblocks are not adequately prepared to detect this type of fraudulent transfers. This presents a major operational loophole to be exploited by malicious actors.

The scam began with the perpetrator initiating a fraudulent TRX transfer to their deposit address on a centralized exchange. Through the use of multiple smart contracts, they were able to trick the exchange’s wallet infrastructure into validating the fraudulent transaction. This led the exchange to credit the equivalent amount of cryptocurrency to the perpetrator’s account, which they promptly liquidated for cash. 

The transaction looks just like a regular, successful transfer via smart contract.

The perpetrator had mass-triggered a smart contract (Smart Contract A) to initiate multiple transfers via a proxy smart contract (Smart Contract B) to roughly 100 end-user deposit addresses on various centralized exchanges

Smart Contract A was programmed to interact with Smart Contract B to initiate transfers as internal transactions, a sophisticated technique allowing the perpetrator to make fraudulent transactions appear legitimate. 

Graphical illustration on how the fraudulent transaction was made

What was so insidious about this fraudulent transaction was the fact that it could only be identified by a single parameter in the transaction data – “rejected”: true.

A tell-tale sign of a fraudulent transaction.

Malicious actors are getting more creative in their ways of stealing funds, targeting previously overlooked loopholes and vulnerabilities instead of private keys. Just look at the recent WazirX and Lmnl case, which resulted in losses over $230 million. This raises the question of whether wallet providers are overly focused on encryption technologies and algorithms, potentially at the expense of more practical security measures.

To better protect yourself from scams like the one mentioned, it is recommended that all wallet solution providers take extra care to verify transaction details, both internal and external, especially when smart contracts are involved. 

Source: https://www.coinsdo.com/en/blog/new-scam-alert-tron

The Post Singaporean Blockchain Wallet Security Company Discovers New Type of Scam Targeting Centralized Exchanges first appeared on ZEX PR Wire



Information contained on this page is provided by an independent third-party content provider. Binary News Network and this Site make no warranties or representations in connection therewith. If you are affiliated with this page and would like it removed please contact [email protected]

Share0
previous post
Anastasia Schipanova at the Paris Olympics opening: opulence, surprises, and controversies
next post
Paul Kaulesar Shares His Insights on Real Estate in an Exclusive Interview on Inspirery
Binary News Network

Related posts

Traci Thomas, CEO of NTT Management Group, Inc., Returns To Harvard to Extend Her Degree in FinTech

Binary News NetworkAugust 6, 2021

Industry leaders to highlight emerging technologies in satellite communications at the 29th edition of CABSAT

Binary News NetworkMay 3, 2023

The Most Peaceful Animal in the World Sit Back and Hold Capybara Has Come to Solana Blockchain, Blessing Everyone

Binary News NetworkDecember 16, 2021

Recent Posts

  • Building for Tomorrow: Anand Lalaji Calls for Leadership That Lasts
  • Switching from Peachtree to QuickBooks can simplify accounting, increase accessibility, and support future growth
  • QuickBooks Passwords and Password Recovery: Ensuring Account Security and Access
  • ImFact Declares Connection of 6.8 Billion Devices via On-Device and Personal Blockchain
  • More Than Movement: Rachelle Clingo Walker Smithfield Shares Her Insights on How to Tell a Story Through Dance

Popular posts

Francisco Faraco Believes People Are Better Off with...

Binary News NetworkOctober 30, 2022
October 30, 2022

Participate in Web City Club’s PFP NFT Collection...

Binary News NetworkApril 12, 2023
April 12, 2023

Experts From Eclipse Forensics Excel in Uncovering Evidence...

Binary News NetworkJune 17, 2025
June 17, 2025

TYMMI, A Music College in Abu Dhabi, Offers...

Binary News NetworkApril 3, 2023
April 3, 2023

Bullishmarketcap, Fast Growing Platform For Discovery Of New,...

Binary News NetworkMay 3, 2024
May 3, 2024

BITCOINEER Now Becomes the Most Reliable Online Crypto...

Binary News NetworkDecember 16, 2022
December 16, 2022
@2022 - mrjung.net. Manage by Binary News Network
Mrjung.net
FacebookTwitterInstagramGoogleYoutube
  • Ethereum
  • Bitcoin
  • Markets
  • Guides
  • Analytic
  • Exchange
  • Contact