The IOTA community recently experienced a real disaster when several wallet owners reported funds missing from their accounts. This happened with the help of malicious websites that provided cryptocurrency owners with new wallet seeds.
Recently, the digital currency IOTA has been one of the hot topics of debate on the Internet. There are many reasons for this: the rumor about cooperation with Microsoft, system vulnerabilities that were discovered in the fall, several unsuccessful attempts to fix these problems. And over the past two days, a lot of users have reported losing funds (approximately $4 million in total) from their accounts. Cause? Online seed generators.
Seeds are a specific sequence of characters that is used to enter the wallet when you lose your login/password or when creating a new wallet. To create seeds, there are special online generators that provide the opportunity to create a unique seed.
According to a blog post by Ralph Rottman, one of the IOTA activists, hackers launched a full-scale DDOS attack on the system, as a result of which they were able to use seeds known to them. He stated: "The attackers knew your seeds. You kindly allowed them to get into your wallet when you gave them the keys to it. Security specialists are already considering several options to strengthen protection against these and similar DDOS attacks."
We must pay tribute to members of the IOTA community, who began to very quickly spread the news about malicious generator sites as soon as it appeared on the company's blog. Most of them also believe that this vulnerability has nothing to do with the cryptocurrency technology itself, but rather with the carelessness of users who used such sites.
According to https://www.ccn.com
You May Also Like
A record number of vulnerabilities have been discovered in the Ethereum network
Experts from University College London studied smart contracts in the Ethereum network and discovered more than 34 thousand vulnerabilities that provide hackers with the ability to easily hack programs and connect to their control. However, the researchers noted that they are not sure that they have discovered all possible vulnerabilities.
Twitter blocks profiles of cryptocurrency scammers
The social network has already blocked even several well-known verified accounts, which is already too much to start the fight against Twitter scams, CoinDesk reports.
