Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Operational Security

6/12/2018
08:05 AM
Scott Ferguson
Scott Ferguson
News Analysis-Security Now
50%
50%

Bitcoin & Other Cryptocurrency Prices in Flux Following Hack

A hack of a South Korean cryptocurrency exchange over the weekend sent the price of Bitcoin and other cryptocurrencies into flux on Monday, upsetting an already volatile market.

The weekend hack of a cryptocurrency exchange in South Korea made itself felt across the globe on Monday, with a ripple effect that included a significant fluctuation in the price of Bitcoin and other virtual currencies.

The exchange, Coinrail, announced on its website Sunday that it had been attacked, although it's not clear what exactly happened or who might have been behind the incident. This particular exchange isn't as large as some of the other ones on the market, and the total loss of value is estimated at $40 million, according to Yahoo News and other published reports.

The exchange has since moved its other virtual currency to a so-called cold wallet -- a platform not connected to the wider Internet.

However, the attack made itself felt around the globe as cryptocurrency fluctuated throughout the day.

Bitcoin, the most popular of the various cryptocurrencies, saw its price drop from an opening high of $6,816 to a low of $6,652 at one point during the day on June 11. The price did recover somewhat later in the trading day, according to Coindesk. Another cryptocurrency, Ethereum, also saw a significant drop.

Overall, Bloomberg estimated that worldwide cryptocurrency lost about $42 billion in market value over the last three days, although there are more factors at play than a cyberattack at a small South Korean exchange, including possible regulations in China.

Still, this latest incident shows how volatile cryptocurrency has become, especially as attackers have turned more of their attention to installing crypto mining malware or engaging in crypto jacking.

In their recent Global Threat Index, Check Point security researchers found that crypto mining and crypto jacking have overtaken ransomware as the most lucrative schemes for cybercriminals. It's a trend that shows no sign of slowing down. (See Cryptomining Malware, Cryptojacking Remain Top Security Threats.)

"Cryptocurrency exchanges are largely in their infancy, and therefore do not have the historical checks, balances, processes, infrastructure and skills that an established financial institution will have," Peter Alexander, the CMO of Check Point, wrote in an email to Security Now. "Big money can flow unchecked in microseconds, and the alarm bells won't start ringing until It's too late. And of course, cryptocurrency can be traded anonymously on a global basis."


Now entering its fifth year, the 2020 Vision Executive Summit is an exclusive meeting of global CSP executives focused on navigating the disruptive forces at work in telecom today. Join us in Lisbon on December 4-6 to meet with fellow experts as we define the future of next-gen communications and how to make it profitable.

The incident in South Korea is one of several attacks that have targeted these exchanges, which security experts believe is a combination of cybercriminals, as well as some nation states looking to disrupt other countries. (See Cryptocurrency Crime: The Internet's New Wild West.)

Brajesh Goyal, the vice president of engineering at cybersecurity firm Cavirin, noted in an email to Security Now that these types of hacks should have these exchanges re-examining their entire cybersecurity plans, especially in such a volatile market.

"Once again, the need for security in depth to protect one's cyber posture," Goyal wrote. "You can't only protect the perimeter. Assume the hackers are already inside and deploy tools that offer continuous assessment and immediate alerting if security posture drift is detected. The tools exist. In this case, the regulators must mandate that exchanges including Conrail implement best practices."

At the same time, the speculation around Bitcoin and other cryptocurrencies, along with various cybercriminal schemes, have had a significant effect on this market. At the end of December, Bitcoin traded at over $19,000 and had plunged to below $7,000 since then.

Related posts:

— Scott Ferguson is the managing editor of Light Reading and the editor of Security Now. Follow him on Twitter @sferguson_LR.

Comment  | 
Print  | 
More Insights
Comments
Newest First  |  Oldest First  |  Threaded View
COVID-19: Latest Security News & Commentary
Dark Reading Staff 7/14/2020
Omdia Research Launches Page on Dark Reading
Tim Wilson, Editor in Chief, Dark Reading 7/9/2020
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
Special Report: Computing's New Normal, a Dark Reading Perspective
This special report examines how IT security organizations have adapted to the "new normal" of computing and what the long-term effects will be. Read it and get a unique set of perspectives on issues ranging from new threats & vulnerabilities as a result of remote working to how enterprise security strategy will be affected long term.
Flash Poll
The Threat from the Internetand What Your Organization Can Do About It
The Threat from the Internetand What Your Organization Can Do About It
This report describes some of the latest attacks and threats emanating from the Internet, as well as advice and tips on how your organization can mitigate those threats before they affect your business. Download it today!
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2020-10287
PUBLISHED: 2020-07-15
The IRC5 family with UAS service enabled comes by default with credentials that can be found on publicly available manuals. ABB considers this a well documented functionality that helps customer set up however, out of our research, we found multiple production systems running these exact default cre...
CVE-2020-10288
PUBLISHED: 2020-07-15
IRC5 exposes an ftp server (port 21). Upon attempting to gain access you are challenged with a request of username and password, however you can input whatever you like. As long as the field isn't empty it will be accepted.
CVE-2020-15780
PUBLISHED: 2020-07-15
An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30.
CVE-2019-17639
PUBLISHED: 2020-07-15
In Eclipse OpenJ9 prior to version 0.21 on Power platforms, calling the System.arraycopy method with a length longer than the length of the source or destination array can, in certain specially crafted code patterns, cause the current method to return prematurely with an undefined return value. This...
CVE-2019-20908
PUBLISHED: 2020-07-15
An issue was discovered in drivers/firmware/efi/efi.c in the Linux kernel before 5.4. Incorrect access permissions for the efivar_ssdt ACPI variable could be used by attackers to bypass lockdown or secure boot restrictions, aka CID-1957a85b0032.