Huobi fixes data breach involving sensitive information for 4,960 users

TL;DR Breakdown

  • Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021
  • The exchange risked exposure of its sensitive information, such as VIP user data and technical infrastructure of the exchange
  • However, it took months for the exchange to respond to the white hat hacker

Description

Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021. The data leak had information on almost all the over-the-counter (OTC) transaction information from 2017 to 2021, with some of the data being VIP user data and information on the technical infrastructure … Read more

Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021. The data leak had information on almost all the over-the-counter (OTC) transaction information from 2017 to 2021, with some of the data being VIP user data and information on the technical infrastructure of the exchange.

Huobi risked exposure of its sensitive information 

White hat hacker and citizen journalist Aaron Phillips disclosed the Huobi data breach. The white hacker explained that an attacker exploiting Huobi’s vulnerability would have had the opportunity to achieve the largest crypto theft in history. Anyone accessing the exchange’s credentials could have changed their domains, including hbfile.net and huobi.com. In addition, their internal documents and user data could be exposed.

According to previous reports, the company handles over a billion dollars daily in trading volume. Hence, users’ accounts and crypto assets would have been stolen if they hadn’t taken action to fix the leak. Phillips emphasized the potential for malicious scripts to be injected into Huobi’s content delivery networks (CDNs) and websites. According to him, the CDNs might have compromised all Huobi login pages, possibly harming anyone who used a Huobi website or app over the previous two years.

The exchange risks exposure to sensitive information, including the contact information and account balances of cryptocurrency users, and it puts customers at risk of losing their accounts and crypto assets. According to Phillips, this includes Huobi’s over-the-counter (OTC) trade data as well as a database of cryptocurrency whales. He confirmed, however, that no breach was carried out using the data leak.

Huobi fixes data breach

According to the exchange, which confirmed the occurrence, it was caused by the appropriate staff members’ irregular conduct in the S3 barrel of the Japanese station’s test environment. On October 8, 2022, all pertinent user data was isolated. 

The exchange asserted that the leakage was small-scale, involving 4,960 individuals. It added that the leaked information did not have sensitive information and never affected user accounts and the security of their assets. 

Huobi further stated that the Huobi Japanese and Huobi Global sites are separate entities. On June 21, 2023, the Huobi Security Team immediately took action after being alerted by a white hat team, instantly closing the associated file access permissions. According to the exchange, the issue has been resolved, and all associated user data has been removed. Huobi has since deleted the affected account, and no users are at risk anymore.

Despite the issue being resolved now, Phillips mentioned that it took months for the exchange to respond, and the leaked data remained online even after he gave Huobi the first notice in June 2022.

Crypto exchanges are prone to data breaches since they have access to a lot of customer data that can be used to steal funds by hackers. Coinsquare, a Canadian crypto exchange, suffered a data breach in November 2022. Its users’ information was exposed, such as phone numbers, names of investors, birth dates, public wallet addresses, and transaction history. However, the exchange affirmed that there were no passwords accessed, and the information is yet to be detected by bad actors.

Gemini Exchange also experienced a data breach that saw 5.7 million users stolen and leaked on hacking forums. Posts advertising the data from the breach first surfaced in September last year, with the data offered for 30 BTC, about $520,000. The same data was posted in November, offering the data and additional data from other exchanges. In another forum, later on, the data was offered for free. Gemini has since asked its clients to implement two-factor authentication and use hardware security keys to prevent hacking and accessing their funds.

The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Huobi fixes data breach involving sensitive information for 4,960 users

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月5日 12:00
Next 2023年7月5日 13:23

Related articles

  • Binance Charts a Bold Legal Course: Eleanor Hughes Takes the Helm

    TL;DR Breakdown Eleanor Hughes, an accomplished legal professional with a stellar track record, has been appointed as Binance’s new General Counsel, a position where she’ll manage the company’s global legal affairs. Hughes will focus on collaboration with global regulators and policymakers, aiming to ensure consumer protection while promoting the growth and innovation of technology in the Web3 industry. Description In an exciting announcement, Binance, the world’s leading cryptocurrency exchange, declared the promotion of Eleanor Hughes to the position of General Counsel. An industry leader, Binance recognizes the immense expertise and drive Hughes brings to the table, boosting their continuous commitment to ethical global development within the evolving Web3 industry. Hughes will now guide Binance’s … Read more In an exciting announcement, Binance, the world’s leading cryptocurrency exchange, declared the promotion of Eleanor Hughes to the position of General Counsel. An industry leader, Binance recognizes the immense expertise and drive Hughes brings to the table, boosting their continuous commitment to ethical global development within the evolving Web3 industry. Hughes will now guide Binance’s legal affairs on a global scale, working hand…

    Article 2023年7月14日
  • Oman forges ahead with crypto adoption amid the Sharia law debate

    TL;DR Breakdown Oman is on a development goal to be the leading crypto hub in MENA and Islamic crypto-adopting nations. The Omani government unveiled its investment of approximately $800 million in cryptocurrency mining endeavors this far in August 2023. Some Islamic scholars are in a debate on what the Sharia Law says about crypto investments. Islamic financial principles, as defined by Sharia law, guide financial instruments’ permissibility (halal) or prohibition (haram). While theological discussions persist, data reveals that Muslim nations have prominently embraced crypto, especially MENA. Description This month, the government of Oman, located on the southeastern border of the Arabian Peninsula, significantly expanded its involvement in the world of digital currencies. This action is part of Oman’s larger ambition to become a leading digital force in the increasingly competitive West Asian region. The West Asian country is pursuing a strategy to … Read more This month, the government of Oman, located on the southeastern border of the Arabian Peninsula, significantly expanded its involvement in the world of digital currencies. This action is part of Oman’s larger ambition to become…

    Article 2023年8月28日
  • US Treasury Secretary Janet Yellen anticipates slow decline in Dollar’s reserve currency status

    TL;DR Breakdown U.S. Treasury Secretary Janet Yellen believes the dollar’s global reserve share will gradually decline, but no alternatives can fully replace it due to unique strengths like deep financial markets and strong rule of law. Yellen acknowledged that U.S. sanctions have prompted countries to explore currency alternatives, but no meaningful workaround to the dollar as a reserve currency exists. While diversification in reserve assets is expected over time, the dollar remains the dominant reserve currency, and meaningful alternatives are unlikely despite de-dollarization efforts. US Treasury Secretary Janet Yellen, during a House Financial Services Committee hearing, stated that while the US should expect a gradual decline in the dollar’s share of global reserves, there are no viable alternatives that can completely replace the greenback. Yellen highlighted the fundamental reasons behind the dollar’s prominent role in the global financial system, such as deep and liquid financial markets, a strong rule of law, and the absence of capital controls. She acknowledged that the use of US sanctions has prompted some countries to seek currency alternatives but stressed the difficulty of finding a…

    Article 2023年6月17日
  • Bitcoin remains resilient as President Biden vows to eliminate crypto tax loopholes

    TL;DR Breakdown President Biden pledges to eliminate tax loopholes for crypto traders and hedge fund managers, aiming to address an estimated $18 billion in lost tax revenue. Bitcoin initially dipped in value following Biden’s comments but quickly rebounded, demonstrating resilience in the face of regulatory scrutiny. Institutional interest in cryptocurrencies remains strong, with applications for spot Bitcoin ETFs and significant inflows into digital asset investment products. Description In a recent speech outlining his economic plan, US President Joe Biden reaffirmed his commitment to making the tax system fairer by eliminating loopholes that allow crypto traders and hedge fund managers to evade taxes. This move addresses an estimated $18 billion in lost tax revenue, signaling the government’s intention to crack down on tax … Read more In a recent speech outlining his economic plan, US President Joe Biden reaffirmed his commitment to making the tax system fairer by eliminating loopholes that allow crypto traders and hedge fund managers to evade taxes. This move addresses an estimated $18 billion in lost tax revenue, signaling the government’s intention to crack down on tax…

    Article 2023年7月2日
  • Thailand’s prime minister-elect sparks speculation with shocking crypto connections

    TL;DR Breakdown Srettha Thavisin renowned for his past role as the President and CEO of Sansiri, a prominent real estate development firm in Thailand, also boasts a connection to the cryptocurrency realm. An intriguing facet of Sansiri’s involvement in the crypto domain dates back to 2021 when it participated in a substantial fundraising round amounting to $225 million for XSpring Capital, a cryptocurrency-friendly investment management entity. Description On August 22, Thailand’s parliament made a significant decision by electing real estate mogul Srettha Thavisin as the forthcoming prime minister of the nation. Thavisin, renowned for his past role as the President and CEO of Sansiri, a prominent real estate development firm in Thailand, also boasts a connection to the cryptocurrency realm. Srettha Thavisin, … Read more On August 22, Thailand’s parliament made a significant decision by electing real estate mogul Srettha Thavisin as the forthcoming prime minister of the nation. Thavisin, renowned for his past role as the President and CEO of Sansiri, a prominent real estate development firm in Thailand, also boasts a connection to the cryptocurrency realm. Srettha Thavisin,…

    Article 2023年8月24日
TOP