Release: 2024/08/02 15:24 Reading: 613
On July 18, WazirX, a Leading Indian Cryptocurrency Exchange, Suffered a Massive Cyberattack
On July 18, WazirX, one of India's prominent cryptocurrency exchanges, experienced a devastating cyberattack, resulting in the loss of approximately $234.9 million (Rs 2000 crore) in investor funds.
The Aftermath: Shock, Anger, and Investigation
The attack has left thousands of WazirX users in shock, exasperation, and trepidation regarding their investments. Numerous investigative agencies, including the FBI, and crypto sleuths have launched inquiries into the incident, but no significant progress has been made. The subsequent events have been characterized by evasiveness from the platform's owners amidst growing anxiety within India's crypto community.
What Transpired on July 18?
On July 18, cybersecurity firm Cyvers Alerts reported a substantial breach in WazirX's multi-sig wallet, with unauthorized transactions transferring funds worth $234.9 million to another wallet on the Ethereum network. The stolen assets constituted a significant portion of WazirX's investor funds, as indicated in their June 2024 proof of reserve report, which valued total holdings at $503.64 million. Subsequently, WazirX's official Twitter account confirmed the hack and suspended all withdrawals from its platform.
The Extent of WazirX's Loss
Blockchain explorer Lookonchain provided detailed information on the stolen assets, which included over 200 distinct cryptocurrencies. Notably, the attack involved 5.43 billion SHIB tokens, over 15,200 Ethereum tokens, 20.5 million Matic tokens, 640 billion Pepe tokens, 5.79 million USDT, and 135 million Gala tokens. The substantial volume of stolen assets has impacted the market value of these cryptocurrencies and WazirX's overall industry standing.
Possible Causes of the Security Breach
Potential explanations for the security breach include vulnerabilities, insufficient security protocols, weak API security, inadequate monitoring and response systems, or outdated software. Given WazirX's stature as one of India's major exchanges, these concerns are both surprising and alarming, raising questions about their security measures' overall robustness and preparedness for such an attack.
Lazarus Group's Suspected Involvement
Some security experts have implicated the Lazarus Group, a notorious North Korean hacking collective, as a potential culprit. This group has been linked to several high-profile cryptocurrency attacks in recent years. In June 2023, for example, the Lazarus Group targeted Atomic Wallet, stealing over $35 million worth of cryptocurrency. They employed sophisticated techniques, such as phishing attacks to obtain private keys and cryptocurrency mixers to launder stolen funds. The group's history of targeting exchanges and wallets to finance North Korea's regime raises concerns that they may also be responsible for the WazirX attack.
Blockchain evidence suggests that the stolen assets are being sold on the decentralized exchange Uniswap. Risk management firm Elliptic has established links between the hackers and the Lazarus Group, bolstering the suspicion that this attack was orchestrated by a highly skilled and well-resourced hacking organization.
Insider Attack Speculation
There is also speculation about an insider's involvement in the hack. An insider with privileged access to sensitive data or systems could have facilitated the breach or played a role in some capacity. Inadequate segregation of duties and privileges within the exchange may have facilitated abuse of access for malicious purposes. Moreover, phishing attacks and other social engineering tactics could have contributed to the breach.
WazirX's Response: Controversial "55/45" Compensation Plan
WazirX's immediate suspension of withdrawals left many customers stranded, unable to access their funds during the critical recovery period.
The compensation plan offered by WazirX has been met with criticism. The exchange proposed a "55/45" loss-sharing ratio for users. Under this arrangement, users with 100% of their tokens in the "not stolen" category would receive 55% of those tokens back, while the remaining 45% would be converted to USDT-equivalent tokens and locked. WazirX co-founder Nischal Shetty claimed that this approach aimed to distribute the loss impact fairly, but it has been poorly received by customers.
Many customers have demanded a CBI investigation against WazirX owners and sought clarification on various aspects of the breach, including the attack details, external security audits, asset management, trading suspension, insurance, and the timetable for resuming withdrawals.
Eroding Trust: WazirX's True Loss
Over two weeks have passed since the attack, but the exchange has failed to provide a comprehensive and satisfactory response, further fueling customer outrage. The exchange's handling of the situation has been criticized, and questions remain about whether the compensation plan adequately addresses the needs of affected users. WazirX has acknowledged the criticism and expressed openness to feedback and exploring alternative resolution measures.
As time goes on, WazirX is likely to lose more customers if they cannot develop a concrete compensation plan.
Lessons for Other Indian Exchanges
Following the hack, prominent Indian crypto exchanges like CoinSwitch and CoinDCX have reassured their customers about the security of their funds. CoinDCX CEO Sumit Gupta emphasized the robustness of their wallet security, while CoinSwitch's Ashish Singhal advised investors to exercise caution during this volatile period. These exchanges have taken proactive steps to ensure the security of their systems and the protection of customer assets in cold wallets.
WazirX has faced various challenges in recent years, including a significant fallout with Binance in early 2023. The exchange's separation from Binance, after a dispute over ownership, has further complicated its situation.
Conclusion
The WazirX hack serves as a sobering reminder of the vulnerabilities that even major crypto exchanges can face. It underscores the need for enhanced security measures, clear communication, and robust incident response plans. Despite the current difficulties, there is still hope that WazirX can recover from this incident. The exchange's commitment to transparency, user support, and recovery efforts will be crucial in determining how well it can rebuild trust and continue operations.
We are building the most influential,trusted information platform for aglobal community engaged in thd transformation of the financial system andthe emerging crypto economy.PEPE is an integrated platform for media,events,data & indices for the next generation fo investing and the future of money.
Get in touch with the PEPE team at admin@pepecoinbuy.com