BTC $62,997.36 -0.07%
ETH $1,881.87 +0.02%
BNB $610.32 +0.69%
XRP $1.00 +0.01%
SOL $75.56 +0.33%
TRX $0.3316 -0.22%
DOGE $0.0698 -0.01%
ADA $0.1773 -1.49%
BCH $205.09 +0.90%
LINK $9.59 +7.43%
HYPE $56.99 +2.07%
AAVE $86.70 +0.09%
SUI $0.6813 +0.29%
XLM $0.1590 -0.49%
ZEC $488.20 -0.46%
BTC $62,997.36 -0.07%
ETH $1,881.87 +0.02%
BNB $610.32 +0.69%
XRP $1.00 +0.01%
SOL $75.56 +0.33%
TRX $0.3316 -0.22%
DOGE $0.0698 -0.01%
ADA $0.1773 -1.49%
BCH $205.09 +0.90%
LINK $9.59 +7.43%
HYPE $56.99 +2.07%
AAVE $86.70 +0.09%
SUI $0.6813 +0.29%
XLM $0.1590 -0.49%
ZEC $488.20 -0.46%

attacks

All
Article
Flash

The leak of French tax data affects nearly 678,000 people, which may exacerbate the risk of violent attacks against cryptocurrency holders

The French Minister of Finance confirmed that hackers breached the French Public Finance Directorate system at the end of June and stole personal and corporate taxpayer data. According to the platform FrenchBreaches, which tracks cyberattacks in France, this incident affected approximately 678,437 people, equivalent to about 1% of the French population, but the exact number is still under investigation and has not been finally confirmed.The leaked data reportedly includes sensitive information such as names, birth dates, home addresses, phone numbers, email addresses, tax identification information, and income data. Among them, nearly 27,000 individuals had tax incomes of at least 100,000 euros, 386 exceeded 1 million euros, and another 8 exceeded 10 million euros. Reports indicate that the database has been sold on the dark web market for thousands of euros. The attackers, calling themselves ZeroBytes, claimed they extracted the relevant records using an internal search tool, which was only discovered later when access was cut off.This incident has raised concerns in the cryptocurrency industry, as there has been a noticeable increase in "wrench attack" violent robbery incidents targeting cryptocurrency holders in France in recent years. If high-income individuals' addresses and contact information are leaked, it could provide criminals with a more precise target list.

The Ethereum Foundation provides security funding to WEBCAT to assist in wallet verification front-end code to prevent phishing attacks

According to official news, the Ethereum Foundation's "Trillion Dollar Security" (1TS) has announced a special grant to the Freedom of the Press Foundation (FPF) to support the ongoing development of the open-source tool WEBCAT, aimed at addressing the long-standing front-end code verification security gap in Ethereum wallets and decentralized applications (DApps).WEBCAT (Web-based Code Assurance and Transparency) is an open-source tool designed to help browsers verify whether the code loaded by a website matches the version publicly released by the developer.This funding will promote the expansion of WEBCAT to Ethereum wallets and application scenarios, enabling users to verify whether the front-end pages they access have been tampered with.The Ethereum Foundation stated that while HTTPS can verify the website a user is connected to and encrypt communication, it cannot prove that the front-end code actually running on the website is the same version released by the developer. If an attacker controls the website's front-end code, they may modify the transaction receiving address without the user's knowledge or induce the user to sign transactions that do not match the content displayed on the page.The Ethereum Foundation noted that front-end attacks have become a significant security risk for blockchain infrastructure, with malicious modifications to web interfaces potentially leading to supply chain attacks, DNS hijacking subsequent attacks, and user interface deception.WEBCAT was initially developed by the Freedom of the Press Foundation to enhance the code credibility of secure communication systems like SecureDrop.With this expansion into the Ethereum ecosystem, it will complement security measures such as "Clear Signing" in the 1TS program: the former helps wallets confirm that the application front-end has not been tampered with, while the latter helps users understand the transaction content they are approving.

Telegram claims to have suffered from "de-listing extortion" attacks: the temporary removal of the app from the Apple App Store was caused by a user embedding prohibited content

Telegram founder and CEO Pavel Durov stated that Telegram was briefly removed from the App Store by Apple recently due to a user embedding illegal pornographic content in a public group. The app was restored within hours.Durov mentioned that the attackers exploited a technical vulnerability to insert AI-modified illegal content into old messages in active groups, hiding the content by editing historical messages, making it difficult for regular group members to discover and report it in a timely manner. Such attacks are classified as "takedown extortion," where attackers use automated accounts to embed violations in public groups and report them to platforms like Apple, attempting to force group administrators to pay a ransom, or else the community would be banned due to platform rules.Durov further explained that Telegram continuously combats illegal content through user reports, AI filtering, content hashing, and other mechanisms. This incident is not a systemic issue of the platform but rather a targeted attack exploiting rule loopholes by the attackers.He also warned that Apple's direct removal of the app without prior contact with Telegram could pose risks to all mobile applications that provide user-generated content (UGC), and platform developers need to enhance their defenses against malicious reporting and "takedown attacks."
app_icon
ChainCatcher Building the Web3 world with innovations.