GetChain News
中简 中繁 EN
GetChain News
Toggle sidebar

Security/Hacker

News linked to this event type.

朝鲜黑客组织 Kimsuky将 AI 武器化,针对加密货币领域发动更隐蔽网络攻击

According to Bitcoin.com, cybersecurity company Genians Security Center released an analysis report stating that the North Korean Reconnaissance General Bureau-affiliated hacker group Kimsuky is building and testing an AI-centric cyberattack tool suite. Researchers discovered traces of the deployment of three local AI platforms, Ollama, GPT4All, and Msty, in their infrastructure, as well as AI development framework components such as Microsoft Semantic Kernel and LLaMaSharp, indicating that the organization is systematically developing dedicated AI attack tools rather than just making temporary attempts. Since early 2026, Kimsuky has used high-quality documents created by generative AI for spear-phishing attacks targeting the virtual assets, financial investment, and game development sectors; AI-generated professional documents have significantly reduced the effectiveness of traditional phishing email identification. The attack vector consists of ZIP archives disguised as legitimate documents, containing malicious LNK files that can silently execute PowerShell commands in the background after being triggered.

Harry Yeh, founder of Quantum Fintech Group with over $2 billion in assets under management, died after falling from a building in Paraguay

Odaily News: Harry Yeh, founder and managing partner of Quantum Fintech Group, an investment firm focused on the Fanton ecosystem with over $2 billion in assets under management, was found dead on Friday local time in Paraguay. He fell from the 30th floor of the Jade Park tower in Asunción, a vertical drop of over 100 meters. When police arrived at the scene, they found Yeh completely naked and covered with a black bag; the door to his residence was open, and items inside were scattered. Police stated that the investigation is still in its preliminary stages, and the cause of the fall remains unclear. Building surveillance footage has been reviewed, and an autopsy and forensic examination have been scheduled. (Bitcoin.com News)

Coinsbuy Confirms Security Vulnerability, $7.9 Million in Cryptocurrency Stolen

Coinsbuy confirmed a security incident on August 9 involving unauthorized withdrawals from the platform wallet. The company stated it has covered customer losses with its own reserves and offered a $100,000 bounty.

Brazil's $318.8 Billion Crypto Market Faces Licensing Deadline: Service Providers Must Apply by October 30, 2026

Odaily News: Brazil's crypto market has recorded $318.8 billion in on-chain transaction value over the past 12 months, ranking fifth globally in cryptocurrency adoption, with nearly one-third of Latin America's related activity conducted through Brazilian wallets and platforms. Blockchain security firm CertiK stated that virtual asset service providers must submit authorization applications to the Central Bank of Brazil (BCB) by October 30, 2026, accompanied by independent audit reports. On November 10, 2025, the Central Bank of Brazil issued three resolutions clarifying the licensing scope, minimum capital requirements, and foreign exchange rules for virtual asset service providers. Minimum capital requirements for different license categories range from approximately R$10.8 million to R$37.2 million. Among the current approximately 120 service providers, most have not yet obtained formal licenses, and overseas operators must relocate their operations to Brazil within 270 days. Approximately 80% of Brazil's declared cryptocurrency transaction volume is settled via dollar-pegged tokens, with USDT accounting for 88.7% of that share. Total stablecoin transaction volume from 2019 to 2025 reached R$1.13 trillion. CertiK statistics show that the crypto industry suffered losses of $1.32 billion due to hacker attacks and exploit incidents in the first half of 2026, involving 344 events. (Decrypt)

The crypto industry lost approximately $110 million due to hacker attacks in July

According to The Block, latest data from Immunefi shows that the crypto industry lost approximately $110 million due to hacker attacks in July 2026. During the same period, the platform paid researchers $2.32 million for confirmed vulnerability reports, and the number of confirmed and paid bug bounty reports increased by 18% month-over-month.

Multiple "Sorry" Ransomware Attack Incidents Discovered in China

Recently, the National Computer Virus Emergency Response Center of China and the National Engineering Laboratory for Computer Virus Prevention Technology, through the National Computer Virus Collaborative Analysis Platform, discovered multiple incidents within China where users were attacked by the "Sorry" ransomware. After users' important files were encrypted, the filenames were changed to the original filename + the ".sorry" suffix string. The attackers also left a ransom note on the users' hosts, requiring users to download an encrypted communication tool to contact them. (CCTV News)

ZachXBT: Threat Actor 'Tiffany' Accused of Stealing Crypto Assets for Gambling, Linked to Case Involving Funds Stolen from the U.S. Government

Odaily News: On-chain detective ZachXBT has disclosed that a threat actor codenamed "Tiffany" is suspected of involvement in multiple crypto asset thefts, using stolen funds from victims for gambling on crypto casinos, and even making calls to taunt the victims. The platform Shuffle has frozen related accounts based on evidence submitted by ZachXBT. Tiffany previously shared a Connecticut search and seizure warrant, with a document date earlier than some of the incidents involved in this case. ZachXBT has obtained chat logs, recordings, and on-chain evidence, and predicts that this individual may face further legal consequences. The threat actor is also linked to the case of John Daghita (Lick), who is suspected of stealing over $46 million in crypto assets from a wallet seized by the U.S. government.

Loss of approximately $130 million: Coldcard firmware vulnerability leads to the theft of around 2,000 BTC

Odaily News: Part of hardware wallet manufacturer Coldcard's firmware had a random number generation vulnerability in 2021, causing some mnemonic phrases generated by the devices to carry predictable risks. The vulnerability was only discovered years later, and by then approximately 5,200 addresses and around 2,000 BTC had been stolen, with losses totaling about $130 million. Following the incident, some investors turned to Wall Street custody products. U.S. spot Bitcoin ETFs saw net inflows of approximately $626 million within days of the event. ETF analyst Eric Balchunas noted that security incidents like this could further drive capital flows into ETFs. The Bitcoin core community continues to uphold the principle of self-custody. Casa co-founder Jameson Lopp said recent events should not weaken user confidence in self-custody, as third-party custody carries risks as well. Early Bitcoin Core developer Peter Todd stated that self-custody has a better long-term security track record than centralized institutions. Michael Tanguma, co-founder of Bitcoin custody platform Onramp, said both approaches have flaws: concentrating large amounts of assets in a single institution creates a "honey pot," while hardware wallets face risks related to supply chains, firmware, and random number generation. Michael Tanguma proposed a "multi-institution custody" approach, in which multiple regulated institutions each hold keys through a multi-signature mechanism, and any transaction requires joint signing by multiple institutions to reduce the risk of single points of failure. Critics argue that while multi-institution custody improves security, it also introduces permissioned management, which conflicts with the decentralized ideals Bitcoin originally pursued. As Bitcoin enters pension funds, trusts, and institutional asset allocation, the industry is seeking custody solutions suitable for long-term wealth management. How to strike a balance among security, decentralization, and usability remains a challenge facing the Bitcoin ecosystem.

OpenAI Tightens Internal Testing Controls for Astra Model Due to Network Security Risks

据 CNBC 报道,OpenAI 表示,因担忧未发布模型 Astra 可能具备自主发起网络攻击的能力,公司已暂停部分内部活动,并加强高能力模型的隔离测试、监控与检测措施。与此同时,Meta、Anthropic 等机构近期也出现涉及 AI 系统的安全事件,推动美国与欧盟加快前沿模型监管与风险控制措施的制定。

The on-chain tokenized asset market is expected to reach $4 trillion by the end of 2028, while Standard Chartered projects Chainlink will hit $200 by the end of 2030

Odaily News: Standard Chartered initiated coverage on Monday of blockchain oracle project Chainlink, projecting LINK to reach $200 by the end of 2030 — roughly 25 times its current price of around $8. The bank's phased targets are $13 by the end of this year, followed by $41, $82, and $133. Standard Chartered estimates that the on-chain tokenized asset market will reach $4 trillion by the end of 2028, with DeFi-deployed assets hitting $2.7 trillion by 2030 — a 37-fold increase from current levels. The bank expects Chainlink fees to grow approximately 25-fold over the same period, assuming token prices track fee growth. Chainlink secures over $110 billion in total value, covering approximately 70% of the value that global DeFi relies on from oracles, with a share exceeding 80% on Ethereum; Aave V3 accounts for 44% of that. Swift, DTCC, Euroclear, JPMorgan, Mastercard, UBS, Fidelity, and S&P Global are all listed as institutions using its services. Chainlink still lags behind LayerZero in cross-chain interoperability. Following the $292 million attack in April, over $7 billion in token value has migrated to Chainlink CCIP, with second-quarter transaction volume reaching $4.9 billion — up 353% year-over-year. Risks include slowing institutional tokenization, pilots not converting to production processes, and technical failures impacting confidence. (Decrypt)

澳大利亚出现首例已知自主式 AI 网络攻击事件,AI 助手擅自入侵健身房预约系统

澳大利亚媒体报道,一名用户使用人工智能助手预约健身课程时,该系统自行发现健身房预约软件漏洞,违规提前锁定课程名额,并擅自将等候名单中的其他用户移除。事件被视为澳大利亚首例已知由自主式人工智能代理实施的网络攻击案例。报道称,此事再次引发外界对 AI 代理自主决策风险、系统安全漏洞以及法律责任归属问题的关注。

Bitcoin Red Team Founder Forced to Switch to Chinese Open-Source AI Models Due to OpenAI Access Restrictions

According to Cointelegraph, AnchorWatch CEO and Bitcoin Red Team founder Rob Hamilton stated that after integrating OpenAI Trust & Cyber capabilities into the Bitcoin Red Team's security research work, he faced access restrictions the next day and was forced to switch back to using Chinese open-source AI models to continue research. The Bitcoin Red Team has currently discovered 1,288 critical and high-risk vulnerabilities in the Bitcoin ecosystem, and research work significantly accelerated after the Coldcard hardware wallet was hacked (over $100 million in Bitcoin stolen). Hamilton commented on this: "Black-hat hackers face no restrictions, while white-hat researchers dedicated to reducing risk are excluded."

Cathie Wood: Open-Source AI Is Making OpenAI and Anthropic Richer

According to BeInCrypto, ARK Invest founder Cathie Wood recently expressed a view that overturns the market's traditional perception of open-source AI. She pointed out that the capabilities of open-source models such as Meta, Mistral, and DeepSeek are continuously enhancing, which instead expands the cybersecurity attack surface, forcing enterprises to continuously procure frontier AI as a defense layer, thereby driving revenue growth for OpenAI and Anthropic rather than harming them. Data from the UK AI Safety Institute shows that the cyber attack capabilities of open-source models have caught up to the level of frontier models from 4 to 7 months ago. Wood named OpenAI, Anthropic, and SpaceXAI as the three companies most likely to capture the bulk of AI model revenue; ARK currently holds positions in all three companies. Currently, Anthropic has already submitted an S-1 filing at a valuation of nearly $1 trillion, and OpenAI is expected to go public in September 2026.

量子攻击或以"不明原因入侵"形式首现,Tether 铸币密钥或成首要目标

据 Cointelegraph 报道,区块链初创公司 Quantus 创始人 Christopher Smith 警告称,量子计算破解现代加密技术的首个信号,可能并非高调盗取中本聪比特币,而是一系列无迹可查的钱包资产异常转移——攻击者无需入侵设备或交易所系统,仅凭链上暴露的公钥即可推算出私钥。Smith 指出,若攻击发生,"唯一的法证证据就是没有任何入侵痕迹"。 在攻击目标方面,Smith 认为加密领域最具价值的目标或为 Tether 铸币密钥,量子攻击者可凭此凭空增发 USDT 并迅速抛售套利。Blockchain Capital 安全研究员 Sean Cheetham 则认为,攻击者更可能优先针对交易所热钱包,以避免引发广泛警觉。 在时间线方面,Smith 给出 2028 年前实现量子破密的概率为"五五开",Cheetham 认为 2030 年代初"几乎确定"会到来。Google 已于今年 3 月将后量子迁移时间表提前至 2029 年。

Donald Trump earned over $1.4 billion from crypto businesses in 2025, while CLARITY Act identified with five major flaws

Odaily News: On August 5, the minority staff of the U.S. Senate Committee on Banking, Housing, and Urban Affairs stated that the July 22 version of the CLARITY Act fails to meet five minimum standards. The bill, numbered H.R. 3633, aims to divide digital asset regulatory authority between the U.S. Securities and Exchange Commission (SEC) and the U.S. Commodity Futures Trading Commission (CFTC). The analysis suggests that the bill's two-tier system could remove certain blockchain assets from SEC oversight, allowing issuing companies to self-certify exemptions from securities regulation. Healthy Markets and five labor organizations have raised concerns over pension protections and securities law loopholes, while minority staff also noted that investors' private right of action and state and tribal enforcement powers could be weakened. Minority staff stated that DeFi-related companies could be exempt from anti-illegal financing obligations even if they earn millions of dollars from platform transactions; some crypto mixers may circumvent U.S. sanctions by exploiting the "Tornado Cash loophole." The Independent Community Bankers of America (ICBA) and the Conference of State Bank Supervisors (CSBS) warned that stablecoin yields could drain deposits from community banks, and the Systemic Risk Council has flagged related banking activities as potential bailout risks. Minority staff noted that Donald Trump alone earned over $1.4 billion from crypto businesses in 2025, with related enforcement solely under the purview of his Attorney General, and that obligations would terminate upon his departure from office. Elizabeth Warren and Richard Blumenthal, citing $3.8 billion in investor losses, have separately called on the SEC to investigate Trump memecoin. The Senate is scheduled to hold a cloture vote on September 15 on the motion to proceed, with the bill needing 60 votes to advance. (Bitcoin.com News)

Pepe creator Matt Furie's account linked to 3 meme coins within a week, later claims account was hacked

Odaily News: After a 9-month silence, the X account of renowned artist and Pepe creator Matt Furie became active again in early August, posting content and contract addresses related to HOODRAT, DORK, and BOYZ within a single week. Most of these posts were subsequently deleted. On August 9, the account posted a statement claiming it had been hacked, stating it does not endorse any altcoins, and adding that a relevant notice had previously appeared on its official website. On-chain analyst @StandartXBT noted that after the HOODRAT-related post was published, the token's market cap surged briefly before the price declined; following the DORK deployment, the deployer completed bundled purchases, removed liquidity, and sold off, extracting significant ETH profits from the initial raise. @StandartXBT discovered through web archives that Matt Furie's official website had not previously contained such a notice, and no prior trace was found on the X platform, casting doubt on the credibility of the statement.

前美国国防部长呼吁参议院尽快通过 CLARITY 法案,称其为国家安全法案

According to Cointelegraph, former U.S. Secretary of Defense Mark Esper wrote in the Financial Times, calling on the Senate to pass the CLARITY Act as soon as possible and emphasizing that the bill is not only a financial services bill but also a national security bill. Esper pointed out that China is heavily investing in state-led payment systems to bypass U.S. regulation and undermine the dominance of the U.S. dollar, while weak digital asset regulatory rules also provide loopholes for North Korean hacking organizations such as the Lazarus Group to evade U.S. financial controls. He stated that the CLARITY Act will expand the Treasury Department's special measures authority under Section 311 of the USA PATRIOT Act and is a powerful weapon to combat malicious actors.

Coinsbuy Hacked, Over $7.9 Million in Assets Stolen

According to Specter monitoring, over $7.9 million was stolen from wallets associated with Coinsbuy on Ethereum and TRON, and the attackers subsequently laundered the funds into XMR through exchanges. Coinsbuy stated that, with the support of ChangeNOW, it has successfully frozen stolen funds amounting to up to six figures. Following the incident, Coinsbuy temporarily suspended deposit and withdrawal services, which have now resumed.

北韩黑客组织金速基构建本地 LLM 环境,AI 攻击能力全面升级

攻击手法方面,该组织已转向利用生成型 AI 制作高度仿真的虚拟资产与金融领域文档,用于精准鱼叉式钓鱼攻击,目标涵盖加密货币钱包信息、Gmail 账户及网站注册记录等敏感数据。Genians 安全中心负责人文钟铉警告,随着 AI 技术发展,社会工程攻击将持续精细化,建议企业部署以行为检测为核心的 EDR 威胁猎捕体系加以应对。

Suspected Chinese-American crypto investor Harry Yeh dies after falling from 30-story building in Paraguay; police investigating cause of death

Odaily News – A body of a Chinese national was discovered outside the Jade Park high-rise apartment complex in the Trinidad district of Asunción, Paraguay. Preliminary identification suggests it is Harry Chun Tak Yeh, founder and managing partner of Quantum Fintech Group. Police stated that he is suspected to have fallen from the 30th floor of the building, and his body was found naked and covered with a black plastic bag. Investigators found the door of his suspected residence on the 30th floor wide open, with the interior in severe disarray, and confirmed that he also owned another apartment on the 27th floor of the same building. Criminal forensic technicians have collected evidence from the exterior of the building and both apartments, and relevant physical evidence has been handed over to the prosecutor's office. The prosecutor's office is currently investigating multiple possibilities in parallel, including accident, suspected suicide, and homicide. The judicial authorities will determine the specific cause and circumstances of death through an autopsy.It is reported that Chinese-American crypto investor Harry Yeh entered the Bitcoin market in 2013, when BTC was trading at $60. He launched his first fund with $250,000, and his investment network claims to manage over $2.4 billion in assets, with close ties to Fantom, Tomb Finance, Lif3, ZooCoin, L3 USD, and L3 Reserve. (Latribuna)