Hackers steal $100m from another breached crypto bridge

Ethereum
(Image credit: BTC Keychain (Flickr))

Another crypto bridge company has been hacked, with tens of thousands of valuable Ethereum tokens stolen in a major heist. 

The attack is the work of an as-yet-unknown cybercriminal who managed to siphon out 85,867 Ether tokens from the Harmony bridge, worth approximately $105 million at press time.

A bridge company offers the service of coin transfers between different chains, a service that’s grown extremely popular in the last couple of years. At the same time, these companies have become major targets for cybercriminals everywhere, as they’re often coded with insufficient security, resulting in theft.

Share your thoughts on Cybersecurity and get a free copy of the Hacker's Manual 2022end of this survey

Share your thoughts on Cybersecurity and get a free copy of the Hacker's Manual 2022. Help us find how businesses are preparing for the post-Covid world and the implications of these activities on their cybersecurity plans. Enter your email at the end of this survey to get the bookazine, worth $10.99/£10.99.

Earlier this year, a similar company called Wormhole was also breached, with the attackers making away with $320 million worth of tokens. Soon after, Ronin Network, a crypto bridge company belonging to the owners of the Axie Infinity game was also compromised, and ended up losing $620 million.

A "humbling" incident

Describing the incident in a Medium post, Harmony contributor Matthew Barrett said the company notified security and exchange partners immediately, as well as the FBI. The hope was, he said, to find the culprit, and retrieve the funds, before they get laundered in crypto tumbling services (essentially crypto laundering services). 

"Harmony believes that focusing on decentralized bridges is an essential step forward for Web3," he said. "This incident is a humbling and unfortunate reminder of how our work is paramount to the future of this space, and how much of our work remains ahead of us."

Most crypto bridges get audited by blockchain security firms, and Harmony was no different. It passed the audit in October 2020, which was conducted by Peck Shield. Still, the security firm said it could not guarantee, with 100% certainty, that the protocol was airtight. 

With more than 20,000 cryptocurrencies operating on various chains, the interoperability between these chains has never been more important. And with plenty of cash in operation, the chains' endpoints will remain a major target for crypto-criminals.

Via: The Register

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Ethereum
Hackers steal over $1bn in one of the biggest crypto thefts ever
cryptocurrency
It's been a huge year for criminals stealing cryptocurrency - and North Korea was largely to blame
A digital themed isometric showing a neon padlock in the foreground, and a technological diagram of a processor logic board in the background.
LastPass 2022 hack fallout continues with millions of dollars more reportedly stolen
North Korean flag with a hooded hacker
FBI says North Korean Lazarus hackers were behind $1.5 billion Bybit crypto hack
Cyber-security
Top file-sharing tools are being hit by security attacks once again
Cryptocurrencies
Around $40 billion worth of illicit crypto transactions took place in 2024
Latest in Security
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Wordpress brand logo on computer screen. Man typing on the keyboard.
Thousands of WordPress sites targeted with malicious plugin backdoor attacks
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Pirate skull cyber attack digital technology flag cyber on on computer CPU in background. Darknet and cybercrime banner cyberattack and espionage concept illustration.
Microsoft reveals over a million PCs hit by malvertising campaign
Latest in News
Apple iPhone 16 Plus
Apple officially delays the AI-infused Siri and admits, ‘It’s going to take us longer than we thought’
The Meta Quest Pro on its charging pad on a desk, in front of a window with the curtain closed
Samsung, Apple and Meta want to use OLED in their next VR headsets – but only Meta has a plan to make it cheap
AMD Ryzen 9000 3D chips
AMD officially announces price and release date for Ryzen 9 9900X3D and 9950X3D processors
Google Pixel 9
There's something strange going on with Google Pixel phone vibrations after the latest update
A masculine hand holding the Nvidia GeForce RTX 5070 Ti
Budget gamers rejoice as Nvidia RTX 5050 and RTX 5060 are rumored to launch in April
The Asus ROG Ally handheld gaming PC
AMD's new driver adds AFMF 2.1 support for improved frame generation - and it could be a game-changer for handheld gaming PCs