Посты канала CRYPTO ROAST

сначала новые

#1981Текст

🔤 UPD: The $352M Bitget Hack Started Almost a Month Earlier 🟠Remember the $351.6M Bitget hack? SlowMist’s investigation suggests the actual operation didn’t begin on September 24. The first traces of malicious activity reportedly appeared as early as August 31. 🟠According to SlowMist, the attacker exploited a zero-day vulnerability in a third-party security service, gaining access to its database. Malicious activity was later identified on two additional nodes — suggesting the attackers were already establishing their foothold weeks before the money moved. 🟠Then on September 25, the attacker reportedly compromised another third-party security service using an employee account and began uploading malicious files. The attackers had also prepared a tool specifically designed for Bitget’s internal systems. 🟠That tool could allegedly forge risk-control parameters, automatically generate withdrawal requests and execute them. Once the theft began, assets were withdrawn across multiple blockchains for almost three hours. 🟠SlowMist is still investigating exactly how the attackers moved between the compromised systems. But the timeline makes one thing clear: this wasn’t a quick wallet exploit. It appears to have been a multi-stage operation prepared weeks in advance. 🟠Meanwhile, Bitget is gradually restoring withdrawals. USDT withdrawals are now available on Ethereum, BSC, Solana and Tron, while BTC and ETH withdrawals had already been reopened. 👉 The $352M disappeared in hours. The attack behind it may have been running for almost a month.

Открыть в Telegram
Просмотры1 589−66%к среднему
Пересылки4
Реакции61
Комментарии—
#1980Текст

🔤 UPD: $50M From the Bitget Hack Hit NEAR Intents 🟠Remember the $351.6M Bitget hack? Some of the stolen crypto is now testing an uncomfortable question for DeFi: what exactly does “permissionless” mean when a protocol can still freeze your funds? 🟠More than $50M linked to the Bitget hack was reportedly routed toward NEAR Intents. Its SHIELD system blocked most of those attempts during the quote stage, while another $503K was frozen during execution. Around $166K still made it through. 🟠And that triggered a debate. NEAR Intents describes itself as permissionless, but its architecture allows specific governance addresses to block accounts and even pause swaps and withdrawals entirely. 🟠NEAR Intents responded with a simple argument: “permissionless does not mean neutral.” In other words, anyone may be able to access the protocol — but that doesn’t necessarily mean the protocol has to process every transaction. 🟠Compare that with THORChain, which reportedly refused to selectively block hacker-linked funds after the same Bitget incident, pointing specifically to its permissionless architecture. 🟠Important distinction: NEAR Intents is a separate protocol built on top of NEAR. These controls exist at the Intents layer and do not mean the NEAR blockchain itself can selectively freeze funds. 👉 The Bitget hack is turning into more than a $352M security incident. Now it’s exposing where different DeFi protocols draw the line between permissionless infrastructure and intervention.

Открыть в Telegram
Просмотры263−94%к среднему
Пересылки0
Реакции6
Комментарии—
#1979Текст

Без текста

Открыть в Telegram
Просмотры1 029−78%к среднему
Пересылки0
Реакции—
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч147
11 ч1 029
  1. Через 1 час147
  2. Всего сейчас1 029
#1978Текст

Без текста

Открыть в Telegram
Просмотры2 451−48%к среднему
Пересылки2
Реакции5
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч0
1 ч363
16 ч1 475
37 ч2 451
  1. Через 1 час363
  2. Через 24 часа1 475
  3. Всего сейчас2 451
#1977Текст

Без текста

Открыть в Telegram
Просмотры3 207−32%к среднему
Пересылки1
Реакции7
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч0
1 ч275
5 ч683
22 ч1 699
40 ч2 614
61 ч3 207
  1. Через 1 час275
  2. Через 6 часов683
  3. Через 24 часа1 699
  4. Всего сейчас3 207
#1976Текст

Без текста

Открыть в Telegram
Просмотры3 294−30%к среднему
Пересылки2
Реакции4
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч123
9 ч991
21 ч1 647
35 ч2 063
51 ч2 704
68 ч3 294
  1. Через 1 час123
  2. Через 24 часа1 647
  3. Всего сейчас3 294
#1975Текст

Без текста

Открыть в Telegram
Просмотры3 169−33%к среднему
Пересылки0
Реакции102
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч0
32 ч1 926
42 ч2 493
55 ч2 864
68 ч3 169
  1. Через 24 часа1 926
  2. Всего сейчас3 169
#1974Текст

Без текста

Открыть в Telegram
Просмотры3 086−35%к среднему
Пересылки1
Реакции104
Комментарии—
Динамика просмотровСкрыть динамику

Рост просмотров

Часов после публикации

Показать таблицей
Часов после публикацииПросмотры
0 ч0
53 ч2 689
64 ч3 086
  1. Всего сейчас3 086
#1973Текст

Без текста

Открыть в Telegram
Просмотры3 064−35%к среднему
Пересылки0
Реакции153
Комментарии—
#1972Текст

Без текста

Открыть в Telegram
Просмотры3 631−23%к среднему
Пересылки0
Реакции179
Комментарии—
#1971Текст

Без текста

Открыть в Telegram
Просмотры4 985+5%к среднему
Пересылки0
Реакции273
Комментарии—
#1970Текст

Без текста

Открыть в Telegram
Просмотры5 123+8%к среднему
Пересылки2
Реакции264
Комментарии—
#1969Текст

Без текста

Открыть в Telegram
Просмотры4 902+4%к среднему
Пересылки0
Реакции268
Комментарии—
#1968Текст

Без текста

Открыть в Telegram
Просмотры5 375+14%к среднему
Пересылки1
Реакции310
Комментарии—
#1967Текстизменён

Без текста

Открыть в Telegram
Просмотры5 468+16%к среднему
Пересылки0
Реакции288
Комментарии—
#1966Текст

Без текста

Открыть в Telegram
Просмотры5 587+18%к среднему
Пересылки1
Реакции273
Комментарии—
#1965Текст

Без текста

Открыть в Telegram
Просмотры6 856+45%к среднему
Пересылки1
Реакции352
Комментарии—
#1964Текст

🔤 UPD: Trezor’s Official Domain Is Now Sending Phishing Emails 🟠Remember the Trezor data leak that exposed personal information belonging to tens of thousands of hardware wallet customers? Now there’s another problem — attackers reportedly compromised Trezor’s official domain and used it to distribute phishing emails. 🟠According to Trezor, the attackers gained access through a third-party email provider and started sending fake warnings about a supposed “critical vulnerability.” 🟠This makes the attack especially dangerous. These aren’t random emails from an obviously fake Trezor address — the messages were reportedly being sent through official Trezor infrastructure, giving victims another reason to trust them. 🟠Combine that with previously leaked customer information — names, emails, phone numbers, shipping addresses and order history — and attackers potentially have everything needed for extremely convincing targeted phishing campaigns. 🟠Trezor says it has disabled the affected domain and is investigating the compromise. Users should avoid clicking links in suspicious Trezor emails and access services directly instead. 🔓 First they got the customer list. Now they got the trusted sender. That’s how phishing becomes dangerously convincing.

Открыть в Telegram
Просмотры6 801+44%к среднему
Пересылки1
Реакции333
Комментарии—
#1963Текст

Без текста

Открыть в Telegram
Просмотры6 098+29%к среднему
Пересылки1
Реакции345
Комментарии—
#1962Текст

Без текста

Открыть в Telegram
Просмотры7 164+51%к среднему
Пересылки1
Реакции421
Комментарии—
#1961Текст

Без текста

Открыть в Telegram
Просмотры7 288+54%к среднему
Пересылки1
Реакции404
Комментарии—
#1960Текст

🔤 UPD: Trezor Data Leak Is Much Bigger Than We Thought 🟠Remember the ShipMonk breach that exposed the personal information of roughly 14,000 Trezor customers? Turns out that was only part of the story. 🟠Trezor now says data belonging to another 67,000 U.S. customers was also exposed. The leaked records reportedly include names, emails, phone numbers, shipping addresses, and order numbers from purchases made between 2019 and 2021. 🟠The ugly part is that this data apparently shouldn’t have existed anymore. Trezor says logistics partner ShipMonk repeatedly provided written confirmation that the old customer data had been deleted — yet it remained stored in its systems. 🟠No private keys or seed phrases were compromised, so this isn’t a hardware-wallet hack. But combining a person’s name, phone number, home address, and proof that they purchased a hardware wallet creates an extremely valuable targeting database. 🟠Trezor is warning users about increased risks of targeted phishing, scam calls, impersonation attacks, and even physical security threats. A scammer doesn’t have to guess whether you own crypto anymore — the leaked order history already tells them. 🟠This is why privacy matters just as much as wallet security. Your seed can remain perfectly safe while leaked personal data gives attackers everything they need to start working on you instead. 👉 They didn’t steal the keys. They leaked a map of who might be holding them.

Открыть в Telegram
Просмотры7 828+65%к среднему
Пересылки1
Реакции415
Комментарии—
#1959Текст

🔤 UPD: $115M COLDCARD Hacker Starts Moving the Bitcoin 🟠Remember the COLDCARD seed-generation flaw that allowed attackers to reconstruct weak private keys and drain thousands of wallets? The stolen funds are finally starting to move. 🟠According to Galaxy Digital’s Alex Thorn, the third-wave attacker moved stolen $BTC on-chain for the first time, swapping part of it into $ETH through THORChain — likely the beginning of the laundering and cash-out phase. 🟠The scale is now estimated at 1,789.28 BTC worth roughly $114.7M, stolen from 8,865 addresses across the full series of attacks. Until now, funds from all three waves had reportedly remained sitting in the attackers’ original wallets. 🟠The hacker is apparently having some trouble. Several THORChain swaps were reportedly refunded, but attempts to move the Bitcoin continue. Around 90% of the third-wave funds still haven’t moved. 🟠Thorn says the BTC routed through THORChain has already been traced to new Ethereum addresses, with the information shared with authorities and crypto companies. Moving across chains may complicate tracking — but it also creates an entirely new trail for investigators to follow. 🟠The exploit phase is basically over. Now comes the harder part for the attacker: turning $115M of publicly traceable stolen Bitcoin into spendable money without touching infrastructure willing to freeze it. 👉 Stealing crypto is one problem. Laundering nine figures on a public blockchain is another.

Открыть в Telegram
Просмотры7 047+49%к среднему
Пересылки2
Реакции396
Комментарии—
#1958Текст

Без текста

Открыть в Telegram
Просмотры6 285+33%к среднему
Пересылки1
Реакции413
Комментарии—
#1957Текст

Без текста

Открыть в Telegram
Просмотры6 731+42%к среднему
Пересылки2
Реакции381
Комментарии—
#1956Текст

Без текста

Открыть в Telegram
Просмотры7 061+49%к среднему
Пересылки2
Реакции382
Комментарии—