Title: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: Dragonfund on September 26, 2020, 10:20:18 AM The slang not your keys not your fund isn't a phrase to joke with when it comes to fund management and security. Earlier today, kucoin announced security breach in their announcement blog with over 120 tokens affected. The transaction were carried out in the following address
Code: At 02:51 AM (UTC+8) on September 26, 2020, we received an alert from the risk management system for the first time, showing that an abnormal ETH transaction occurred with the TXID: 0x4b738df5d7f12e3fa1cbe83b8165c542da461ef0c9255fc1a3f275259a92623b According to KuCoin Global CEO Johnny Lyu Quote We are locating the reason for the incident, and will keep users updated once it is confirmed. Please rest assured that if any user fund is affected by this incident, it will be covered completely by KuCoin and our insurance fund. This is important for every member, learn to safeguard your tokens and fund on the wallet you hold the private key. Stay safe. Source https://www.kucoin.com/news/en-kucoin-ceo-livestream-recap-latest-updates-about-security-incident (https://www.kucoin.com/news/en-kucoin-ceo-livestream-recap-latest-updates-about-security-incident) Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: BitcoinGirl.Club on September 26, 2020, 10:42:26 AM It's already in here (https://bitcointalk.org/index.php?topic=5278281.0), any kind of discussion will better suit there more than in the Beginners & Help section.
Update: I have just made a quick search and found out few more topics talking about the same thing 😜 Not your keys, not your Crypto – Kucoin Hacked! $150m Stolen. (https://bitcointalk.org/index.php?topic=5278253.0) KUCOIN exchange got hacked. (https://bitcointalk.org/index.php?topic=5278271.0) Search helps. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: friends1980 on September 26, 2020, 10:56:20 AM Quoting "not your keys, not your coins" and "if any user fund is affected by this incident, it will be covered completely by KuCoin and our insurance fund" in the same post, is the same as contradicting yourself.
It's one thing or the other. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: Dragonfund on September 26, 2020, 11:26:51 AM Quoting "not your keys, not your coins" and "if any user fund is affected by this incident, it will be covered completely by KuCoin and our insurance fund" in the same post, is the same as contradicting yourself. Will you wait for an exchange to be hacked because insurance fund is guarantee? It's one thing or the other. Not a wise decision in my opinion, it's always better to safeguard your fund. Modified: What will happen if the insurance fund couldn't cover the hacked funds? The best way is to keep your gund to your self l Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: Jawhead999 on September 26, 2020, 12:19:02 PM Quoting "not your keys, not your coins" and "if any user fund is affected by this incident, it will be covered completely by KuCoin and our insurance fund" in the same post, is the same as contradicting yourself. Will you wait for an exchange to be hacked because insurance fund is guarantee? It's one thing or the other. Not a wise decision in my opinion, it's always better to safeguard your fund. Try providing suggestions with summary (https://bitcointalk.org/index.php?topic=5242171.msg54265063#msg54265063) not all exchanges will always have insurance funds and not all exchanges will able to recover the loss from hacked (e.g. MtGox). MtGox was a popular and trusted exchanges on 2014. But after they got hacked (loss around 840.000 Bitcoin), they suspended all the transaction and decide to close the websites. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: DdmrDdmr on September 26, 2020, 01:22:26 PM Going over @VB1001’s list of Hacked Exchanges since 2011 (https://bitcointalk.org/index.php?topic=5090869.0), this is certainly one of the biggies, and the amount is likely larger than the equivalent of 150M$, since this figure seems to be limited to ETH addresses (i.e. pending BTC toll and so forth).
Even if, as they state, their insurance will cover the losses, you never know where the amount is enough to draw the line and force the Exchange to close for good, with all that it entails for its customers. Can’t wait to see the “how” to these unfortunate events. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: 1miau on September 27, 2020, 12:09:06 AM Going over @VB1001’s list of Hacked Exchanges since 2011 (https://bitcointalk.org/index.php?topic=5090869.0), this is certainly one of the biggies, and the amount is likely larger than the equivalent of 150M$, since this figure seems to be limited to ETH addresses (i.e. pending BTC toll and so forth). I'm not sure what happened exactly, why the hacker got access to (a) hot wallet(s) but if his access was limited to ETH and ERC-20 based wallets (what it looks like) KuCoin evaded from suffering an even bigger loss. For now, I haven't heard anything about wallets containing Bitcoin / BCash / BSV or Shitcoin like XRP / Chainlink / Polkadot / Cardano ....... being hacked. Even if, as they state, their insurance will cover the losses, you never know where the amount is enough to draw the line and force the Exchange to close for good, with all that it entails for its customers. Can’t wait to see the “how” to these unfortunate events. Same here. I'm also in doubt if that amount can be covered from an insurance fund. 150M (possibly more) is huge, even for KuCoin, a very big exchange. I really wish luck to KuCoin, their service is one of the better centralized exchanges compared to all the shitcoin wash-trading and scamming user sites. :-\Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: pooya87 on September 27, 2020, 05:27:49 AM Even if, as they state, their insurance will cover the losses, you never know where the amount is enough to draw the line and force the Exchange to close for good, with all that it entails for its customers. Can’t wait to see the “how” to these unfortunate events. that's assuming they were actually hacked and not faked it. in the altcoin market that has lost a significant volume and also most of the remaining volume has gone into other bad exchanges like Binance, "getting hacked" can be very profitable. they just transfer the funds from one pocket to the other and then pay a portion of users a portion of what they lost over a very long time and pocket the profit. ;)Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: Twinkledoe on September 27, 2020, 05:31:00 AM Even if, as they state, their insurance will cover the losses, you never know where the amount is enough to draw the line and force the Exchange to close for good, with all that it entails for its customers. Can’t wait to see the “how” to these unfortunate events. that's assuming they were actually hacked and not faked it. in the altcoin market that has lost a significant volume and also most of the remaining volume has gone into other bad exchanges like Binance, "getting hacked" can be very profitable. they just transfer the funds from one pocket to the other and then pay a portion of users a portion of what they lost over a very long time and pocket the profit. ;)I believe the amount lost was not significant as compared to their total assets. Though we are already talking hundreds of millions of dollars. Their hot wallets were compromised not their cold wallets. So I think they can still recover fast. But when it comes to paying those clients who lost their funds, I don't know yet what's their take on that. Are they going to fully compensate those users? Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: cryptomaniac_xxx on September 27, 2020, 06:20:33 AM Going over @VB1001’s list of Hacked Exchanges since 2011 (https://bitcointalk.org/index.php?topic=5090869.0), this is certainly one of the biggies, and the amount is likely larger than the equivalent of 150M$, since this figure seems to be limited to ETH addresses (i.e. pending BTC toll and so forth). I'm not sure what happened exactly, why the hacker got access to (a) hot wallet(s) but if his access was limited to ETH and ERC-20 based wallets (what it looks like) KuCoin evaded from suffering an even bigger loss. For now, I haven't heard anything about wallets containing Bitcoin / BCash / BSV or Shitcoin like XRP / Chainlink / Polkadot / Cardano ....... being hacked. Quote Q1: What is the reason for the assets outflow? So definitely they've lost BTC or at least it was part of the hack. But the leakage of private key arose suspicion of inside job to me? How can the hackers get their private key unless someone is a willing participate for the inside.Johnny: It is due to the leakage of the private key of KuCoin hot wallets. We have re-deployed our hot wallets already. Q2: Which tokens were affected? Johnny: Mostly BTC, ETH and other ERC-20 tokens. We are still working on the list. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: UserU on September 27, 2020, 10:20:51 AM We cannot trust any exchange whether it be Binance or Kucoin. Both of them were hacked and our funds are not safe in online exchanges. The best approach is to withdraw all the money from these exchanges and keep only limited funds there through which we can trade. Keeping your savings in an online exchange is not a wise decision. Might be hard for daily traders due to liquidity and also the fees involved. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: aioc on September 27, 2020, 10:41:48 AM The slang not your keys not your fund isn't a phrase to joke with when it comes to fund management and security. We cannot trust any exchange whether it be Binance or Kucoin. Both of them were hacked and our funds are not safe in online exchanges. The best approach is to withdraw all the money from these exchanges and keep only limited funds there through which we can trade. Keeping your savings in an online exchange is not a wise decision. But they already announced that trader's funds are secured they need to do this, they are regulated and they have an insurance and of course they have a good standing in the industry they do not want to lose the reputation, but an incident like this cannot be ignored they are aware that hackers are roaming around, they are aware that they need the best security and yet this things happen, who can we trust now. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: coupable on September 27, 2020, 12:30:27 PM The slang not your keys not your fund isn't a phrase to joke with when it comes to fund management and security. We cannot trust any exchange whether it be Binance or Kucoin. Both of them were hacked and our funds are not safe in online exchanges. The best approach is to withdraw all the money from these exchanges and keep only limited funds there through which we can trade. Keeping your savings in an online exchange is not a wise decision. But they already announced that trader's funds are secured they need to do this, they are regulated and they have an insurance and of course they have a good standing in the industry they do not want to lose the reputation, but an incident like this cannot be ignored they are aware that hackers are roaming around, they are aware that they need the best security and yet this things happen, who can we trust now. Title: Re: Kucoin exchange has experienced security breach with over 120 tokens affected Post by: pixie85 on September 27, 2020, 07:11:52 PM Going over @VB1001’s list of Hacked Exchanges since 2011 (https://bitcointalk.org/index.php?topic=5090869.0), this is certainly one of the biggies, and the amount is likely larger than the equivalent of 150M$, since this figure seems to be limited to ETH addresses (i.e. pending BTC toll and so forth). Even if, as they state, their insurance will cover the losses, you never know where the amount is enough to draw the line and force the Exchange to close for good, with all that it entails for its customers. Can’t wait to see the “how” to these unfortunate events. You could find many examples of this happening starting with Gox where they had a hack, claimed that everything was fine, thought they could make the money back from fees but it didn't work and finally shut down and went bankrupt. I don't believe them and if I had any money there available for withdrawal I'd be moving. |