HomeMalware & ThreatsCryptohack Roundup: Triple-A and Verus-Ethereum Bridge Exploit

Cryptohack Roundup: Triple-A and Verus-Ethereum Bridge Exploit

Published on

spot_img

Cybersecurity Breaches Highlight Vulnerabilities in Cryptocurrency Sectors

In the ever-evolving world of cybersecurity, incidents involving cryptocurrency are increasingly drawing attention. Recent reports highlighted several significant security breaches that have raised alarms among investors and users. Notably, these incidents include the compromise of Triple-A’s hot wallets, exploitation of the Verus-Ethereum Bridge, the rise of SparkKitty malware, and several phishing scams targeting crypto holders.

Triple-A Wallet Compromise Reaches Nearly $12 Million

The cryptocurrency payment platform Triple-A recently reported a severe compromise involving its hot wallets, which led to estimated losses of approximately $11.8 million. This alarming breach extended across multiple blockchain networks, including Ethereum, TRON, Polygon, Arbitrum, Solana, and The Open Network. On-chain investigator, Specter, indicated that the situation worsened as fresh deposits continued to flow into the compromised wallets even a day after the attack commenced. The stolen assets were consolidated to a single Ethereum address, evading immediate tracking.

Triple-A has acknowledged the incident and stated that it is currently working on an investigation. The Singapore-based firm, operating under regulations imposed by the Monetary Authority of Singapore, emphasized that customer funds are reportedly safe. However, they have not disclosed the specific contents of the affected wallets. The ongoing investigation aims to clarify the extent of the breach and recover the lost funds.

Verus-Ethereum Bridge Suffers $7.5 Million Exploit

In another troubling incident, the Verus-Ethereum Bridge fell victim to a hack that resulted in the theft of approximately $7.5 million in cryptocurrency. Security firms Blockaid and CertiK noted that the attacker leveraged the same type of vulnerability that led to a breach in May. The unauthorized payouts were triggered through the bridge’s import mechanism, allowing the perpetrator to drain assets and convert them into 3,916 ETH.

Unlike the previous incident, Blockaid clarified that this exploit was executed by a different attacker using a new wallet. This attack underscores an ongoing vulnerability within the network, drawing attention to the need for enhanced security measures to protect digital assets.

Rise of SparkKitty Malware

Compounding the woes of cryptocurrency users, a new malware strain called SparkKitty has emerged, particularly targeting mobile users. This malware was distributed via Apple’s App Store, Google Play, and third-party Android app stores. It is designed to steal wallet recovery phrases stored as images on users’ devices.

Cybersecurity firm Check Point has identified that SparkKitty employs optical character recognition technology to scan photos and screenshots for sensitive data, such as seed phrases and passwords. Once extracted, this data is sent to servers controlled by the attackers. The malware has evolved from an earlier version, SparkCat, and spreads through counterfeit cryptocurrency, messaging, and entertainment applications seeking access to users’ photo libraries.

One notable instance involved the malware’s discovery in a crypto-related application on iOS, while it appeared in an Android app named "SOEX," which had already garnered over 10,000 downloads before being removed.

Phishing Scams Prey on Crypto Holders

Coinbase has reported a sophisticated phishing scam that involves mailing fake IRS letters to victims’ homes. This scam has targeted cryptocurrency holders by compelling them to enroll in a nonexistent "Digital Asset Compliance Portal" through scanning a QR code that leads to a fraudulent site mimicking the official IRS webpage. Here, victims are asked to divulge sensitive information such as their crypto exchange details and estimated holdings.

This scheme enables scammers to profile their targets, enabling them to make further contact while posing as IRS or exchange representatives. Coinbase’s Security and DarkTower teams traced the infrastructure used in this scam to recently created look-alike domains and established phishing networks, revealing the scale of this malicious campaign.

BitMart to Cease Trading Operations

In a surprising turn of events, cryptocurrency exchange BitMart announced it would be winding down its operations, halting trading by August 26, 2026. The decision followed a review of the company’s operations and market conditions. Users are urged to close their positions and withdraw funds promptly. Post-trading, withdrawals will still be accessible, although later requests may undergo additional compliance checks.

Additionally, BitMart’s abrupt decision shocked its recently dismissed CEO, Nathan Chow, who stated he learned of the shutdown only through public announcements. This unexpected pivot marks a stark shift from BitMart’s previous plans for expansion and regulatory compliance.

EU Imposes Sanctions on HTX

Lastly, the European Union has added the crypto exchange HTX to its latest sanctions package against Russia, banning transactions with the platform. This action arose from allegations that HTX had undermined sanctions related to Russia’s invasion of Ukraine. Although assets will not be frozen, users may withdraw or close their accounts within three months.

These incidents collectively illuminate the pressing vulnerabilities within the cryptocurrency landscape and underline the critical importance of robust cybersecurity measures. As the number of cyber threats escalates, both users and businesses must remain vigilant and informed about the risks associated with digital investments.

Source link

Latest articles

Russian Hackers Exploit Exchange Flaw for Half-Click Mailbox Takeover

In a recent report, cybersecurity experts at Proofpoint revealed troubling new developments regarding a...

OpenMatter Network Urges Enterprise Leaders to Rethink AI Security Ahead of Potential Rogue AI Crisis

Melbourne, Florida, July 30th, 2026, CyberNewswire As headlines around the globe increasingly highlight incidents involving...

Hugging Face Incident Prompts Calls for European AI Autonomy

Artificial Intelligence & Machine Learning, Geo-Specific, ...

Critical Ruflo Vulnerability Allows Attackers to Hijack AI Agents via Exposed MCP Bridge

Security Alarm: Vulnerability Discovered in MCP Bridge Recent research has unveiled a significant vulnerability within...

More like this

Russian Hackers Exploit Exchange Flaw for Half-Click Mailbox Takeover

In a recent report, cybersecurity experts at Proofpoint revealed troubling new developments regarding a...

OpenMatter Network Urges Enterprise Leaders to Rethink AI Security Ahead of Potential Rogue AI Crisis

Melbourne, Florida, July 30th, 2026, CyberNewswire As headlines around the globe increasingly highlight incidents involving...

Hugging Face Incident Prompts Calls for European AI Autonomy

Artificial Intelligence & Machine Learning, Geo-Specific, ...