Huobi fixes data breach involving sensitive information for 4,960 users

TL;DR Breakdown

  • Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021
  • The exchange risked exposure of its sensitive information, such as VIP user data and technical infrastructure of the exchange
  • However, it took months for the exchange to respond to the white hat hacker

Description

Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021. The data leak had information on almost all the over-the-counter (OTC) transaction information from 2017 to 2021, with some of the data being VIP user data and information on the technical infrastructure … Read more

Crypto exchange Huobi has fixed its data breach after a massive data leak that allegedly put users’ funds at risk since June 2021. The data leak had information on almost all the over-the-counter (OTC) transaction information from 2017 to 2021, with some of the data being VIP user data and information on the technical infrastructure of the exchange.

Huobi risked exposure of its sensitive information 

White hat hacker and citizen journalist Aaron Phillips disclosed the Huobi data breach. The white hacker explained that an attacker exploiting Huobi’s vulnerability would have had the opportunity to achieve the largest crypto theft in history. Anyone accessing the exchange’s credentials could have changed their domains, including hbfile.net and huobi.com. In addition, their internal documents and user data could be exposed.

According to previous reports, the company handles over a billion dollars daily in trading volume. Hence, users’ accounts and crypto assets would have been stolen if they hadn’t taken action to fix the leak. Phillips emphasized the potential for malicious scripts to be injected into Huobi’s content delivery networks (CDNs) and websites. According to him, the CDNs might have compromised all Huobi login pages, possibly harming anyone who used a Huobi website or app over the previous two years.

The exchange risks exposure to sensitive information, including the contact information and account balances of cryptocurrency users, and it puts customers at risk of losing their accounts and crypto assets. According to Phillips, this includes Huobi’s over-the-counter (OTC) trade data as well as a database of cryptocurrency whales. He confirmed, however, that no breach was carried out using the data leak.

Huobi fixes data breach

According to the exchange, which confirmed the occurrence, it was caused by the appropriate staff members’ irregular conduct in the S3 barrel of the Japanese station’s test environment. On October 8, 2022, all pertinent user data was isolated. 

The exchange asserted that the leakage was small-scale, involving 4,960 individuals. It added that the leaked information did not have sensitive information and never affected user accounts and the security of their assets. 

Huobi further stated that the Huobi Japanese and Huobi Global sites are separate entities. On June 21, 2023, the Huobi Security Team immediately took action after being alerted by a white hat team, instantly closing the associated file access permissions. According to the exchange, the issue has been resolved, and all associated user data has been removed. Huobi has since deleted the affected account, and no users are at risk anymore.

Despite the issue being resolved now, Phillips mentioned that it took months for the exchange to respond, and the leaked data remained online even after he gave Huobi the first notice in June 2022.

Crypto exchanges are prone to data breaches since they have access to a lot of customer data that can be used to steal funds by hackers. Coinsquare, a Canadian crypto exchange, suffered a data breach in November 2022. Its users’ information was exposed, such as phone numbers, names of investors, birth dates, public wallet addresses, and transaction history. However, the exchange affirmed that there were no passwords accessed, and the information is yet to be detected by bad actors.

Gemini Exchange also experienced a data breach that saw 5.7 million users stolen and leaked on hacking forums. Posts advertising the data from the breach first surfaced in September last year, with the data offered for 30 BTC, about $520,000. The same data was posted in November, offering the data and additional data from other exchanges. In another forum, later on, the data was offered for free. Gemini has since asked its clients to implement two-factor authentication and use hardware security keys to prevent hacking and accessing their funds.

The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Huobi fixes data breach involving sensitive information for 4,960 users

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月5日 12:00
Next 2023年7月5日 13:23

Related articles

  • South Korea ushers in banking revolution, inviting new entrants for the first time after 30 years

    TL;DR Breakdown The South Korean government is allowing new entrants into the banking sector for the first time in 30 years to increase competition and address criticism over large employee bonuses. Measures include permitting more online banks, issuing commercial banking licenses to existing firms, and easing loan-to-deposit rules for foreign banks’ local branches. Despite concerns that these actions may not sufficiently stimulate competition, this move signifies a significant shift in South Korea’s banking industry landscape. Description South Korea, one of the world’s most vibrant economies, is witnessing an unprecedented shift in its banking industry. This comes as the government, to stimulate competition, is opening doors for new entrants into the banking sector for the first time in three decades. This move follows criticism of large bonuses paid to banking employees while … Read more South Korea, one of the world’s most vibrant economies, is witnessing an unprecedented shift in its banking industry. This comes as the government, to stimulate competition, is opening doors for new entrants into the banking sector for the first time in three decades. This move follows…

    Article 2023年7月7日
  • Best Twitter threads of the day – May 22nd

    Top 5 AI tools for Product Managers, Product Designers, Software Engineers, and Data Scientists ChatGPT is just the tip of the iceberg. The best-performing product teams will be using much more. Here are the top 5 AI tools for Product Managers, Product Designers, Software Engineers, and Data Scientists (bookmark this): pic.twitter.com/7GX4fXLoDs — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 THEME 1: PRODUCT MANAGEMENT Kraftful: Let AI sift through customer feedback to identify the highest priority product improvements. pic.twitter.com/AE04U33QMv — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 WriteMyPRD: Make writing Product Requirement Documents a breeze with GPT-3. pic.twitter.com/DWZB5quq0C — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 Hypertype: Write emails 10x faster. pic.twitter.com/KpfVbxCOJW — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 AskFred: a ChatGPT-like assistant for your meetings. pic.twitter.com/DxWWRDB0xk — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 Sense: All of your team’s documents and information automatically organized and interconnected. pic.twitter.com/T2DFiM1rmY — Aakash Gupta 🚀 Product Growth Guy (@aakashg0) May 22, 2023 THEME 2: PRODUCT DESIGN Whimsical: Level…

    Article 2023年5月24日
  • SWIFT’s CBDC test: Central banks join the fray

    TL;DR Breakdown Three more central banks have joined SWIFT’s digital currency (CBDC) project. Initial testing began in March with 18 financial giants, and over 5,000 transactions were conducted in 12 weeks. SWIFT’s engagement with CBDCs showcases its attempt to innovate amidst potential competition. Description The ever-evolving world of banking has been stirred once more. Three more central banks, in a move symbolizing adaptation to our digital age, have jumped aboard SWIFT’s digital currency project. Notably, this interbank messaging platform, which has long been the spine of the global banking network, is now steering into the uncharted waters of Central … Read more The ever-evolving world of banking has been stirred once more. Three more central banks, in a move symbolizing adaptation to our digital age, have jumped aboard SWIFT’s digital currency project. Notably, this interbank messaging platform, which has long been the spine of the global banking network, is now steering into the uncharted waters of Central Bank Digital Currencies (CBDCs). Central Banks Dive into the Sandbox The Hong Kong Monetary Authority, Kazakhstan’s apex bank, and another secretive central entity…

    Article 2023年9月14日
  • Europe’s largest bank says US will enter recession this year

    TL;DR Breakdown Europe’s largest bank, HSBC, predicts a U.S. recession by the end of the year, possibly leading to a broader European recession in 2024. High inflation rates are expected to moderate swiftly, opening up opportunities for policymakers to reduce interest rates. Despite inflation challenges, the U.S. Federal Reserve might cut interest rates before the end of 2023. Description Economic alarm bells are ringing loudly in the ears of major financial institutions. HSBC Asset Management, a division of Europe’s largest bank, warns that the United States is poised to descend into a recession before the close of this year. Not only that, but this fiscal downturn, it suggests, could be a foreboding precursor to … Read more Economic alarm bells are ringing loudly in the ears of major financial institutions. HSBC Asset Management, a division of Europe’s largest bank, warns that the United States is poised to descend into a recession before the close of this year. Not only that, but this fiscal downturn, it suggests, could be a foreboding precursor to a broader European recession come 2024. Blinking red:…

    Article 2023年6月30日
  • SHIB down: Shibarium’s woes explained, what’s happening?

    TL;DR Breakdown SHIB tokens dropped 9% after Shibarium network’s launch. Transactions stalled for hours, causing concern. Users couldn’t discuss issues on Discord, leading to more alarm. Shibarium was meant to elevate SHIB beyond its meme coin status. Description The Shiba Inu (SHIB) ecosystem was buzzing with anticipation as the Shibarium network launched. But instead of a triumphant entry, SHIB tokens nosedived by around 9%, catching many investors off guard. Let’s dive into the chain of events that put a damper on what was supposed to be a transformative moment for the SHIB community. … Read more The Shiba Inu (SHIB) ecosystem was buzzing with anticipation as the Shibarium network launched. But instead of a triumphant entry, SHIB tokens nosedived by around 9%, catching many investors off guard. Let’s dive into the chain of events that put a damper on what was supposed to be a transformative moment for the SHIB community. The Shibarium Hiccup Excitement turned to confusion for many SHIB enthusiasts when reports emerged of transactional stalling on the Shibarium network, just hours after its live debut. With a…

    Article 2023年8月18日
TOP