Bitcoin Forum
May 06, 2024, 09:30:37 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: EXMO hacked: Losses 5% of total assets  (Read 199 times)
Dave1 (OP)
Hero Member
*****
Offline Offline

Activity: 1302
Merit: 522



View Profile
December 22, 2020, 10:54:04 PM
Merited by The Sceptical Chymist (3)
 #1

According to their blog:

Quote
Dear EXMO users,

We have spotted some large withdrawals since December 21st at 2:27:02 UTC.

We are still investigating the incident, but as of now, the security audit report showed that some amounts of BTC, XRP, ZEC, USDT, ETC and ETH in EXMO’s hot wallets were transferred out of the exchange. We reacted immediately and re-deployed hot wallets. The affected hot wallets comprise near 5% of the total assets. Let us stress that all the assets in the cold wallets are safe.

https://info.exmo.com/en/notifications/exmo-security-incident-update/

We are just about to end 2020, but criminals are not resting even in this holidays and will strike no matter what. Although this exchanges is not that well known, but still the loot of $5M is too big for one exchange to lose.

Addresses of the supposedly hackers:

  • BTC — 1A4PXZE5j8v7UuapYckq6fSegmY5i8uUyq
  • USDT (ERC20) — 0x4BA6B2fF35055aF5406923406442cD3aB29F50Ce
  • ETH — 0x4BA6B2fF35055aF5406923406442cD3aB29F50Ce
  • BCH — qrfrw5q9gag2vp6jc5nlx0haplm2jlhx9vsvxd9u3e
  • ZEC — t1StUQiw1YyHT515xDxwxjfhEcw2iGSq2yL
  • XRP — rwU8rAiE2eyEPz3sikfbHuqCuiAtdXqa2v (tag 2033412069)
  • ETC — 0x4d9EF6846126Da2867AF503448be0508542C971e

R


▀▀▀▀▀▀▀██████▄▄
████████████████
▀▀▀▀█████▀▀▀█████
████████▌███▐████
▄▄▄▄█████▄▄▄█████
████████████████
▄▄▄▄▄▄▄██████▀▀
LLBIT
  CRYPTO   
FUTURES
 1,000x 
LEVERAGE
COMPETITIVE
    FEES    
 INSTANT 
EXECUTION
.
   TRADE NOW   
1715031037
Hero Member
*
Offline Offline

Posts: 1715031037

View Profile Personal Message (Offline)

Ignore
1715031037
Reply with quote  #2

1715031037
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1715031037
Hero Member
*
Offline Offline

Posts: 1715031037

View Profile Personal Message (Offline)

Ignore
1715031037
Reply with quote  #2

1715031037
Report to moderator
1715031037
Hero Member
*
Offline Offline

Posts: 1715031037

View Profile Personal Message (Offline)

Ignore
1715031037
Reply with quote  #2

1715031037
Report to moderator
1715031037
Hero Member
*
Offline Offline

Posts: 1715031037

View Profile Personal Message (Offline)

Ignore
1715031037
Reply with quote  #2

1715031037
Report to moderator
TimeTeller
Hero Member
*****
Offline Offline

Activity: 2716
Merit: 588


View Profile
December 22, 2020, 11:02:56 PM
 #2

Never heard of this exchange til now.
And searching a bit, they are Russian-based exchange.
At least, they have seen the withdrawals at early stage so the hackers just managed to get 5% of their assets.
With this small loss, I hope they can easily give the funds to its users who lost money.
Another lesson here for crypto traders/users, never leave your funds in the exchange.

bitmover
Legendary
*
Offline Offline

Activity: 2296
Merit: 5921


bitcoindata.science


View Profile WWW
December 22, 2020, 11:15:12 PM
 #3

5% is not a huge loss. Well, that may be a lot of money cause it is a bit exchange, but they can certainly recover from it
Always good to rememebr; not your keys, not your coins.

Nowadays lots of exchanges offer some interest if you give your coins to them. Dont. Remember that they can be hacked.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
SFR10
Legendary
*
Offline Offline

Activity: 2996
Merit: 3421


Crypto Swap Exchange


View Profile WWW
December 23, 2020, 10:03:01 AM
 #4

I hope they can easily give the funds to its users who lost money.
Luckily none of their users were affected by this...

Please mind that users’ account balances remain untouched by the attack. You can check it yourself by logging into the platform.

5% is not a huge loss. Well, that may be a lot of money cause it is a bit exchange,
It is. The hacker in question managed to withdraw almost 292 BTCitcoins [I didn't check other coins].

Update on the incident

We are planning on enabling deposits and withdrawals on Thursday, December 24th, 2020.

~Snipped~

Traced that some funds (XRP and ETH) went to the Poloniex exchange and immediately contacted its support team to block the associated account.
I'm not one of their users but I do like the steps they're taking for dealing with this matter... Having said those, seeing how fast they're dealing with the issue made me wonder how they didn't notice sooner before allowing that hacker to make "40 successful large withdrawals in quick successions". Something doesn't seem right here [perhaps it could be an inside job of some sort] Undecided

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
o_e_l_e_o
In memoriam
Legendary
*
Offline Offline

Activity: 2268
Merit: 18510


View Profile
December 23, 2020, 04:31:37 PM
Last edit: December 24, 2020, 09:49:12 AM by o_e_l_e_o
Merited by ranochigo (1)
 #5

Luckily none of their users were affected by this...

Please mind that users’ account balances remain untouched by the attack. You can check it yourself by logging into the platform.
This is meaningless. As a centralized exchange, the balances which are displayed on a user's account are simply numbers on a spreadsheet. Once you have deposited coins to the exchange, you account is credited with the appropriate balance and your money is swept in to their central wallets. Just like when you log in to an online bank account, there isn't actually a safe in the bank with your name on it and the exact amount of fiat inside it - it's just entries on an internal database. Their hot wallets and cold wallets could be hacked, be completely emptied, be corrupted, be lost in an explosion, etc. and your account balance wouldn't change.

The main question here is whether or not they are still holding enough cryptocurrency to cover all customers' deposited funds, and there is no way they are going to admit to being insolvent if that is the case. For their users' sake hopefully 5-6% loss is enough for them to cover and continue to operate, but if you have funds on this exchange, now would be a good time to withdraw them to your own wallet.

We kindly ask all the services and exchanges to block all the accounts that are connected to these wallets. Currently, we are locating the reason for the incident and will keep this list updated.
As usual, this backwards way of thinking crops up again. It is not other exchanges' responsibility to deal with the fallout of your poor security. More importantly, we should not be policing the blockchain nor blacklisting addresses because of your poor security. You made your bed, now you lie in it. Stop trying to censor bitcoin because of your mistakes.
stomachgrowls
Hero Member
*****
Offline Offline

Activity: 2856
Merit: 768



View Profile
December 23, 2020, 07:43:23 PM
 #6

Hmm, what to expect from this dubious exchange. Doubtful reputation, levies for inactive accounts (have you seen an exchange somewhere else that charges fees for an inactive account?) And this hack.

Another big signal that it's time to forget about this exchange, and those who have assets there, immediately withdraw everything from there.

Cant really remove those kind of suspicions when it comes to hacking incident where you would really be doubtful if its really indeed a hack or just some sort of show off and just trying to steal out peoples funds.

This is my first time on hearing out this platform and in all exchanges that do currently exist as of today then its no surprise that hacking incidents like this isnt something new.
These places are just like honey pots of hackers knowing that its been storing lots of money.

5% wont really be that big though rather than on losing 30-50% or entire total funds of said platform.It can be easily patched it up though.

███████████████████████████
███████▄████████████▄██████
████████▄████████▄████████
███▀█████▀▄███▄▀█████▀███
█████▀█▀▄██▀▀▀██▄▀█▀█████
███████▄███████████▄███████
███████████████████████████
███████▀███████████▀███████
████▄██▄▀██▄▄▄██▀▄██▄████
████▄████▄▀███▀▄████▄████
██▄███▀▀█▀██████▀█▀███▄███
██▀█▀████████████████▀█▀███
███████████████████████████
.
.Duelbits.
▄▄█▄▄░░▄▄█▄▄░░▄▄█▄▄
███░░░░███░░░░███
░░░░░░░░░░░░░
░░░░░░░░░░░░
▀██████████
░░░░░███░░░░
░░░░░███▄█░░░
░░██▌░░███░▀░░██▌
█░██░░███░░░██
█▀▀▀█▌░███░░█▀▀▀█▌
▄█▄░░░██▄███▄█▄░░▄██▄
▄███▄
░░░░▀██▄▀
.
REGIONAL
SPONSOR
███▀██▀███▀█▀▀▀▀██▀▀▀██
██░▀░██░█░███░▀██░███▄█
█▄███▄██▄████▄████▄▄▄██
██▀ ▀███▀▀░▀██▀▀▀██████
███▄███░▄▀██████▀█▀█▀▀█
████▀▀██▄▀█████▄█▀███▄█
███▄▄▄████████▄█▄▀█████
███▀▀▀████████████▄▀███
███▄░▄█▀▀▀██████▀▀▀▄███
███████▄██▄▌████▀▀█████
▀██▄█████▄█▄▄▄██▄████▀
▀▀██████████▄▄███▀▀
▀▀▀▀█▀▀▀▀
.
EUROPEAN
BETTING
PARTNER
magneto
Hero Member
*****
Offline Offline

Activity: 1666
Merit: 753


View Profile
December 23, 2020, 09:04:52 PM
Merited by ranochigo (1)
 #7

This is the difficulty of auditing CEX's. There is always a risk of insider activity that may not be picked up by even impartial auditors because they can cover their tracks so well. I'm not saying that EXMO is guilty of this, but simply that you can never be sure with CEX's and it can therefore be difficult to find recourse if you are a depositor.

I would actually think that 5% of total assets is a lot, especially considering that exchanges may not have all deposits in liquid BTC and invested in other assets to earn interest.

How they deal with this will be interesting. Will shareholder equity simply take a hit to cover the 5%? Or do all depositors just lose 5% of their balance held with the exchange? The paths that can be taken have drastically different legal implications.
rat03gopoh
Hero Member
*****
Offline Offline

Activity: 2086
Merit: 639


Your keys your responsibility


View Profile WWW
December 24, 2020, 07:05:08 AM
 #8

Please mind that users’ account balances remain untouched by the attack. You can check it yourself by logging into the platform.
It was an attempt to placate the customer from leaving the exchange, in fact it was a loss that was shared by all their customers. Fortunately, only "5%" (their admission). Given that I've never heard of this exchange, it may be a small exchange.

▓██   ██▓ ▒█████   █    ██  ██▀███      ██ ▄█▀▓█████▓██   ██▓  ██████   
 ▒██  ██▒▒██▒  ██▒ ██  ▓██▒▓██ ▒ ██▒    ██▄█▒ ▓█   ▀ ▒██  ██▒▒██    ▒   
  ▒██ ██░▒██░  ██▒▓██  ▒██░▓██ ░▄█ ▒   ▓███▄░ ▒███    ▒██ ██░░ ▓██▄     
  ░ ▐██▓░▒██   ██░▓▓█  ░██░▒██▀▀█▄     ▓██ █▄ ▒▓█  ▄  ░ ▐██▓░  ▒   ██▒ 
  ░ ██▒▓░░ ████▓▒░▒▒█████▓ ░██▓ ▒██▒   ▒██▒ █▄░▒████▒ ░ ██▒▓░▒██████▒▒ 
   ██▒▒▒ ░ ▒░▒░▒░ ░▒▓▒ ▒ ▒ ░ ▒▓ ░▒▓░   ▒ ▒▒ ▓▒░░ ▒░ ░  ██▒▒▒ ▒ ▒▓▒ ▒ ░ 
 ▓██ ░▒░   ░ ▒ ▒░ ░░▒░ ░ ░   ░▒ ░ ▒░   ░ ░▒ ▒░ ░ ░  ░▓██ ░▒░ ░ ░▒  ░ ░ 
 ▒ ▒ ░░  ░ ░ ░ ▒   ░░░ ░ ░   ░░   ░    ░ ░░ ░    ░   ▒ ▒ ░░  ░  ░  ░   
 ░ ░         ░ ░     ░        ░        ░  ░      ░  ░░ ░           ░   
 ░ ░                                                 ░ ░                 
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀▄▄██▀▀⠀▄▄▄⠀⠀▀▀█▄▄▄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀▄█▀▀⠀⠀⠀⠀⠀███⠀⠀⠀⠀⠀⠀⠀▐▀█▄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀▀⠀⠀⠀⠀⠀⠀⠀⠀▐████████████⠀⠀█⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀▄▄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀██████████████▄⠀⠀⠀⠀⠀⠀⠀⠀⠀▄⠀▄⠀⠀⠀⠀⠀
⠀⠀██▀⠀⠀⠀⠀⠀⠀▄▄▄⠀⠀⠀⠀⠀⠀▀█████████████⠀⠀⠀⠀⠀⠀⠀▐██████▄▄⠀⠀⠀
⠀⠀▐⠀⠀⠀⠀⠀⠀⠀⠀█▄██▄⠀⠀⠀⠀⠀⠀▀███████████⠀▄⠀⠀⠀⠀⠀⠀██⠀⠀⠀██▌⠀⠀
⠀⠀⠀⠀⠀⠀▄⠀⠀⠀⠀███▄▄▌⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀▀█▀⠀⠀█▌⠀⠀⠀⠀██▀▀██▀⠀⠀⠀
⠀⠀⠀⠀⠀█▌⠀⠀⠀▐▀███▀▄█▄▄▄▄▄▄▄▄▄▄⠀⠀⠀⠀⠀⠀▀█▌⠀⠀⠀⠀▄██▌⠀⠀▄██⠀⠀⠀
⠀⠀⠀⠀⠀█▌⠀⠀⠀⠀███⠀⠀██▀██▀██▀██▀████▄⠀⠀██⠀⠀⠀⠀⠀⠀█▀▀█▀▀▀⠀⠀⠀
⠀⠀⠀⠀▐██⠀⠀⠀⠀█▀⠀⠀⠀⠀▀⠀▀▀⠀▀▀⠀▀█⠀█▀█▀██⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀█▌⠀⠀⠀⠀`⠀⠀▄⠀▐██████▄▄⠀⠀▀▐▀██▀██⠀⠀⠀⠀⠀⠀⠀▄██▀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀▀█⠀⠀⠀⠀⠀⠀██⠀█⠀⠀▀██████▄▄⠀⠀█▀⠀▀⠀⠀⠀⠀⠀⠀███▀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀▄⠀⠀██⠀▄⠀⠀⠀`▀███⠀█⠀▀▀██████▄⠀⠀⠀██⠀⠀⠀▄███⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀█⠀⠀⠀▀⠀⠀▀▀▄▄⠀⠀▀████▀▄⠀▀██████▄▄▄█▄█████⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀▀▌⠀⠀⠀⠀⠀⠀⠀⠀▀▌⠀⠀⠀▐███▄█⠀▄⠀▀▀█████████▀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀█⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀█⠀⠀⠀⠀⠀██████▄▀⠀⠀▀▀▀▀▀⠀⠀▄⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀▄⠀⠀⠀⠀⠀▌▀▀⠀⠀▄⠀⠀⠀⠀⠀⠀⠀▀█⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀▀▀███▀▀⠀⠀▐█⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀⠀
▓██   ██▓ ▒█████   █    ██  ██▀███      ██▀███  ▓█████   ██████  ██▓███   ▒█████   ███▄    █   ██████  ██▓ ▄▄▄▄    ██▓ ██▓     ██▓▄▄▄█████▓▓██   ██▓
 ▒██  ██▒▒██▒  ██▒ ██  ▓██▒▓██ ▒ ██▒   ▓██ ▒ ██▒▓█   ▀ ▒██    ▒ ▓██░  ██▒▒██▒  ██▒ ██ ▀█   █ ▒██    ▒ ▓██▒▓█████▄ ▓██▒▓██▒    ▓██▒▓  ██▒ ▓▒ ▒██  ██▒
  ▒██ ██░▒██░  ██▒▓██  ▒██░▓██ ░▄█ ▒   ▓██ ░▄█ ▒▒███   ░ ▓██▄   ▓██░ ██▓▒▒██░  ██▒▓██  ▀█ ██▒░ ▓██▄   ▒██▒▒██▒ ▄██▒██▒▒██░    ▒██▒▒ ▓██░ ▒░  ▒██ ██░
  ░ ▐██▓░▒██   ██░▓▓█  ░██░▒██▀▀█▄     ▒██▀▀█▄  ▒▓█  ▄   ▒   ██▒▒██▄█▓▒ ▒▒██   ██░▓██▒  ▐▌██▒  ▒   ██▒░██░▒██░█▀  ░██░▒██░    ░██░░ ▓██▓ ░   ░ ▐██▓░
  ░ ██▒▓░░ ████▓▒░▒▒█████▓ ░██▓ ▒██▒   ░██▓ ▒██▒░▒████▒▒██████▒▒▒██▒ ░  ░░ ████▓▒░▒██░   ▓██░▒██████▒▒░██░░▓█  ▀█▓░██░░██████▒░██░  ▒██▒ ░   ░ ██▒▓░
   ██▒▒▒ ░ ▒░▒░▒░ ░▒▓▒ ▒ ▒ ░ ▒▓ ░▒▓░   ░ ▒▓ ░▒▓░░░ ▒░ ░▒ ▒▓▒ ▒ ░▒▓▒░ ░  ░░ ▒░▒░▒░ ░ ▒░   ▒ ▒ ▒ ▒▓▒ ▒ ░░▓  ░▒▓███▀▒░▓  ░ ▒░▓  ░░▓    ▒ ░░      ██▒▒▒
 ▓██ ░▒░   ░ ▒ ▒░ ░░▒░ ░ ░   ░▒ ░ ▒░     ░▒ ░ ▒░ ░ ░  ░░ ░▒  ░ ░░▒ ░       ░ ▒ ▒░ ░ ░░   ░ ▒░░ ░▒  ░ ░ ▒ ░▒░▒   ░  ▒ ░░ ░ ▒  ░ ▒ ░    ░     ▓██ ░▒░
 ▒ ▒ ░░  ░ ░ ░ ▒   ░░░ ░ ░   ░░   ░      ░░   ░    ░   ░  ░  ░  ░░       ░ ░ ░ ▒     ░   ░ ░ ░  ░  ░   ▒ ░ ░    ░  ▒ ░  ░ ░    ▒ ░  ░       ▒ ▒ ░░
 ░ ░         ░ ░     ░        ░           ░        ░  ░      ░               ░ ░           ░       ░   ░   ░       ░      ░  ░ ░            ░ ░   
 ░ ░                                                                                                            ░                           ░ ░     
figmentofmyass
Legendary
*
Offline Offline

Activity: 1652
Merit: 1483



View Profile
December 24, 2020, 08:07:48 PM
Merited by o_e_l_e_o (2)
 #9

I would actually think that 5% of total assets is a lot, especially considering that exchanges may not have all deposits in liquid BTC and invested in other assets to earn interest.

it certainly is. with a rinky-dink exchange like exmo, i would not assume they are solvent after taking a hit like this. 5% sounds small in relative terms but just looking at the BTC, ETH, and USDT losses alone, we're talking $8 million + lost.

that represents 1/3 of exmo's daily volume. the number of BTC stolen represents 3/4 of their entire BTC/USD order book! Shocked

How they deal with this will be interesting. Will shareholder equity simply take a hit to cover the 5%? Or do all depositors just lose 5% of their balance held with the exchange? The paths that can be taken have drastically different legal implications.

they claim to be covering all losses from their own pocket:

Quote
Most importantly, we want to assure you that if any user fund is affected by this incident, it will be covered completely by EXMO.

i'm skeptical though. this is definitely how fractional reserve begins on some exchanges. they get hacked for more than they can afford, then they go into damage control mode and just hope they can cover withdrawal requests.

i have similar concerns about kucoin.

Inagame
Full Member
***
Offline Offline

Activity: 434
Merit: 124


View Profile
December 24, 2020, 10:10:02 PM
 #10

I never used EXMO exchange but anything can be hacked and the bigger something is the bigger hack will be, but maybe it has something connected with ripple coin last days.
On coinmarketcap Exmo is showing 25 million trading volume, but I don't believe that is real number and real volume.
Husires
Legendary
*
Offline Offline

Activity: 1596
Merit: 1285



View Profile WWW
December 25, 2020, 05:14:16 PM
 #11

If they manage the process intelligently, even if more than 10% has been breached, users will not notice this as it is possible to withdraw from the wallet safely. Therefore, if they have liquidity, they will deposit it in hot wallets in order to ensure that there is no panic and random withdrawal of balances.

EXMO is unknown exchange and the reason for the hack may be an old employee or a tax evasion attempt

.BEST..CHANGE.███████████████
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
███████████████
..BUY/ SELL CRYPTO..
o_e_l_e_o
In memoriam
Legendary
*
Offline Offline

Activity: 2268
Merit: 18510


View Profile
December 26, 2020, 08:46:37 AM
 #12

this is definitely how fractional reserve begins on some exchanges. they get hacked for more than they can afford, then they go into damage control mode and just hope they can cover withdrawal requests.
I agree this is probably what is happening. It is highly unlikely that EXMO had profits exceeding 6% of all their deposits just sitting around in cold storage doing nothing which they could use to immediately cover this hack. It is good that they have said no customer will lose out because of this, but like other exchanges which have been hacked in the past, they are now banking (pun intended Tongue) on the fact that the majority of their customers will either not realize they have been hacked or not realize the implications of the hack, and leave their coins on the exchange. They need to keep operating long enough to be able to recoup these losses, but every existing and future customer is gambling with every deposit they make to EXMO.

If they manage the process intelligently, even if more than 10% has been breached, users will not notice this as it is possible to withdraw from the wallet safely.
This only works if the majority of their customers don't try to withdraw their coins. If everyone tried to withdraw, the people who are last in the queue would get nothing. It is essentially a fractional reserve. Wise users will withdraw all their coins immediately.
magneto
Hero Member
*****
Offline Offline

Activity: 1666
Merit: 753


View Profile
December 28, 2020, 09:14:14 AM
 #13

i'm skeptical though. this is definitely how fractional reserve begins on some exchanges. they get hacked for more than they can afford, then they go into damage control mode and just hope they can cover withdrawal requests.

i have similar concerns about kucoin.

I doubt that they'd be able to cover it all upfront if people pulled out their money all at once. That is just my speculation though and may not reflect reality.

These semi-regulated/unregulated exchanges have virtually no capital requirements and are subject to no audits, which is the scary part.

Sure, if they keep operating and the fees keep rolling in they could eventually break even and get themselves out of a position of insolvency. But even then, 5% is no small amount - as you said, it is 1/3 of the daily turnover and I'd assume there is a lot of staff to pay too.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!