CoinStats, a prominent crypto-tracking platform, has provided further details regarding its June security incident.
The company believes the attack, which resulted in the theft of approximately $2.2 million worth of cryptocurrency from 1,590 CoinStats Wallets, was orchestrated by the notorious Lazarus Group or a similar entity backed by a nation-state.
The breach, detected during unusual transfer activity on June 22, 2024, prompted CoinStats to immediately suspend its operations and collaborate with law enforcement and cybersecurity experts.
The attacker exploited vulnerabilities across various services linked to CoinStats, including external systems, to compromise user-created wallet private keys.
Security researchers such as ZachXBT and Taylor Monahan from MetaMask are actively tracing the stolen funds.
CoinStats has rebuilt its platform entirely to ensure enhanced security, engaging new infrastructure auditors and reinstating full functionality. While no evidence of user data theft was found, the company advises vigilance against potential phishing attempts.
Affected users are urged to transfer assets from wallets created in June and can register until August 15 for future support, though specific details regarding compensation for stolen funds have not been disclosed.
The U.S. Department of Justice has sentenced Dwayne Golden, 57, of Pennsylvania to 97 months in prison for orchestrating a fraudulent crypto investment scheme that stole over $40 million from investors.
The first half of 2025 has become the most damaging six-month period in crypto history, with over $2.1 billion stolen across 75+ separate incidents, according to new data.
A new breed of cyber-attack is sweeping through crypto media, exploiting site pop-ups and wallet-connect prompts instead of smart-contract bugs.
CoinMarketCap, one of the most widely used crypto data tracking platforms, is reportedly facing a front-end security breach, with multiple users encountering a suspicious prompt to verify their wallets.