Bitget App
Trade smarter
Buy cryptoMarketsTradeFuturesBotsEarnCopy
Multi-signature wallet Safe: North Korean hacker group TraderTraitor is behind previous hacker attacks

Multi-signature wallet Safe: North Korean hacker group TraderTraitor is behind previous hacker attacks

CointimeCointime2025/03/06 15:45
By:Cointime

The multi-signature wallet Safe announced on the X platform that a security investigation conducted in conjunction with Mandiant (now owned by Google Cloud) has made crucial progress and confirmed that the attack on February 21 was carried out by the North Korean hacker group TraderTraitor (UNC4899), which has previously launched multiple attacks on the cryptocurrency industry. The hackers gained critical access by infiltrating the computer of Safe{Wallet} developers and hijacking AWS session tokens to bypass multi-factor authentication (MFA). Safe stated that although the attack had some impact, the smart contracts were not compromised, the system has been fully reset, and tighter security measures have been implemented, including:

- Infrastructure reset: regenerate all credentials, reset clusters, update keys and confidential information, and redeploy container images.

- External access restriction: temporarily block external access to transaction services, only allowing internal communication, and strengthen firewall rules.

- Malicious transaction detection upgrade: collaborate with Blockaid to strengthen transaction monitoring, increase risk markers for Safe account control upgrades.

- Enhanced real-time monitoring: improve logging and threat detection capabilities for faster response to security incidents.

- Pending transaction cleanup: clear all pending transactions from the database to prevent potential security risks.

- UI and security verification tool optimization: introduce Safe Utils as a third-party transaction verification tool and plan to provide a fully IPFS-hosted version of Safe{Wallet}.

0

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.

PoolX: Locked for new tokens.
APR up to 10%. Always on, always get airdrop.
Lock now!

You may also like

Have financial markets reached peak uncertainty?

Share link:In this post: Trump’s unclear April 2 tariffs and new policies have pushed markets into peak uncertainty. Fed officials and investors have little confidence in economic forecasts right now. Most S&P 500 losses came from big tech stocks, while the rest of the index is holding up.

Cryptopolitan2025/03/23 04:33

Starlink and Italian government’s deal has stalled, in disapproval of Musk’s Doge role

Share link:In this post: Discussions between government and Starlink halted on security concerns and Musk’s role in the Trump administration. Opposition politicians questioned the logic of engaging a foreign business over sensitive matters. However, there are chances negotiations may resume

Cryptopolitan2025/03/23 04:33

Trump’s proposed 200% tariff on European liquor imports stokes worries among California’s winemakers

Share link:In this post: Trump’s proposed 200% tariffs on European wine worry California winemakers already struggling with low demand and crop losses. Large companies may benefit from refunds, but smaller wineries fear disrupted sales and distribution. Some see potential benefits for U.S. wines, but many fear economic harm if European alcohol prices skyrocket.

Cryptopolitan2025/03/23 04:33

Trump’s economic policies put $5,000 DOGE dividend checks on hold

Share link:In this post: Trump delays DOGE dividends, prioritizing tariffs and tax cuts over $5,000 stimulus checks. Economists warn that cash payouts may worsen inflation. The plan’s future depends on the country’s economic performance.

Cryptopolitan2025/03/23 04:33
Trump’s economic policies put $5,000 DOGE dividend checks on hold