{"id":11654,"date":"2024-03-16T07:00:00","date_gmt":"2024-03-16T05:00:00","guid":{"rendered":"https:\/\/forklog.com\/en\/us-to-return-seized-binance-assets-imf-confirms-email-breach-and-other-cybersecurity-events\/"},"modified":"2024-03-16T07:00:00","modified_gmt":"2024-03-16T05:00:00","slug":"us-to-return-seized-binance-assets-imf-confirms-email-breach-and-other-cybersecurity-events","status":"publish","type":"post","link":"https:\/\/u1f987.com\/en\/us-to-return-seized-binance-assets-imf-confirms-email-breach-and-other-cybersecurity-events\/","title":{"rendered":"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events"},"content":{"rendered":"<p>We have compiled the most important cybersecurity news of the week.<\/p>\n<div class=\"wp-block-text-wrappers-keypoints article_keypoints\">\n<ul class=\"wp-block-list\">\n<li>The US will return $2.3 million seized from Binance to fraud victims.<\/li>\n<li>Viber found no evidence of a 740 GB data leak.<\/li>\n<li>Incognito Market began extorting users after an exit scam.<\/li>\n<li>A fake Bitcoin wallet, Leather, was available on the App Store for over two weeks.<\/li>\n<\/ul>\n<\/div>\n<h2 class=\"wp-block-heading\"><strong>US to Return $2.3 Million Seized from Binance to Fraud Victims<\/strong><\/h2>\n<p>The US Department of Justice <a href=\"https:\/\/www.justice.gov\/usao-ma\/pr\/united-states-files-forfeiture-action-recover-cryptocurrency-traceable-pig-butchering\">announced<\/a> it will reimburse $2.3 million confiscated from the cryptocurrency exchange Binance to victims of a &#8220;pig butchering&#8221; scheme.<\/p>\n<p>The investigation began in 2023 after a Massachusetts resident reported losing $400,000. By tracing the transaction chain, investigators identified two wallets on the Binance exchange containing a total of $2.3 million in various cryptocurrencies.\u00a0<\/p>\n<p>These funds were linked to 36 other US residents who fell victim to various fraudulent schemes.\u00a0<\/p>\n<p>In January 2024, authorities secured a court order to confiscate assets from these two accounts, including:<\/p>\n<ul class=\"wp-block-list\">\n<li>299,457 USDC;<\/li>\n<li>1,455,305 USDT;<\/li>\n<li>102,278 TRX;<\/li>\n<li>3,032 SOL;<\/li>\n<li>67 BNB;<\/li>\n<li>13,703 ADA;<\/li>\n<li>0.5 ETH.<\/li>\n<\/ul>\n<p>On average, each victim lost more than $62,000.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Viber Found No Evidence of 740 GB Data Leak<\/strong><\/h2>\n<p>On March 14, the hacker group Handala Hack <a href=\"https:\/\/t.me\/Handala_hack\/107\">claimed<\/a> to have breached Viber&#8217;s servers and stolen over 740 GB of data, including source code.\u00a0<\/p>\n<p>To support their claim, they published screenshots of a control panel showing login logs and message history. The dump is being sold for 8 BTC.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-eu.googleusercontent.com\/PTAvi7fI6KaEtQ0bMUAlvhWeqS-hdlVexF0Iskyh4r5pk70LAVw2SxglULOm_e4zk5VfB7y3uRfb0TuFcuX781wcn1qoytNWH8K1o8WV4WeaP4Mh2aVW4Wu144TT3BI0mrmIXmFEoJru8P44XHDt4zs\" alt=\"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events\"\/><figcaption class=\"wp-element-caption\">Source: BreachForums.<\/figcaption><\/figure>\n<p>However, Viber representatives told <a href=\"https:\/\/cybernews.com\/news\/viber-hack-data-palestinian\/\">Cybernews<\/a> they found no evidence of a breach in their systems or compromise of user data.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Hackers Breached IMF Email Accounts<\/strong><\/h2>\n<p>The International Monetary Fund (IMF) reported the compromise of 11 email accounts within the organization, according to <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/international-monetary-fund-email-accounts-hacked-in-cyberattack\/\">Bleeping Computer<\/a>.<\/p>\n<p>The incident was discovered in February, and an assessment of its impact is ongoing.<\/p>\n<p>So far, the IMF has found no evidence that the attackers accessed other systems or resources.<\/p>\n<p>The organization stated it uses Microsoft&#8217;s cloud-based email platform 365, but the cyberattack is not part of the recent breach of the tech giant.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Key LockBit Member Sentenced to Prison in Canada<\/strong><\/h2>\n<p>An Ontario court sentenced Mikhail Vasiliev, a key member of the LockBit hacker group, to four years in prison and fined him $860,000, as reported by <a href=\"https:\/\/barrie.ctvnews.ca\/convicted-cybercriminal-from-bradford-ont-sentenced-for-global-ransomware-scheme-1.6805081\">local media<\/a>.<\/p>\n<p>The Russian and Canadian citizen was found guilty of orchestrating numerous ransomware attacks between 2021 and 2022, extorting over $100 million from his victims.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-eu.googleusercontent.com\/H1Mw0KlEbsuhETw9aUoRdlCqzaz82LWsK8CcuVLS4fI6pgT_PL1DKQv4_Muqg2x-ojk2CrAh8A3iAxY4Ts_kyadtaeMWaT_ZvH-8pHsZoY3gUPsbfY92dJbmD_CaP8qkmA2VmokhlhEzMpP-aGjSyK8\" alt=\"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events\"\/><figcaption class=\"wp-element-caption\">Court sketch of Mikhail Vasiliev. Source: John Mantha.<\/figcaption><\/figure>\n<p>Vasiliev was arrested in October 2022. During the investigation, he confessed to extortion, causing harm, and crimes involving weapons.<\/p>\n<p>After serving his sentence in Canada, Vasiliev faces extradition to the US, where additional charges await him.<\/p>\n<p>Meanwhile, Moldovan citizen Sandu Boris Diaconu received a 42-month prison sentence in the US for operating the darknet marketplace E-Root. After his release, he will be under supervision for three more years, according to <a href=\"https:\/\/storage.courtlistener.com\/recap\/gov.uscourts.flmd.402743\/gov.uscourts.flmd.402743.43.0.pdf\">court documents<\/a>.<\/p>\n<p>Diaconu <a href=\"https:\/\/www.justice.gov\/usao-mdfl\/pr\/moldovan-national-sentenced-federal-prison-operating-websites-involved-illicit-sale\">pleaded guilty<\/a> to one count of conspiracy to commit computer fraud and four counts of possession of unauthorized access devices.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Incognito Market Extorts Users After Exit Scam<\/strong><\/h2>\n<p>The administration of the darknet marketplace Incognito Market, which executed an exit scam involving millions in cryptocurrency in early March, announced plans to release user data. The marketplace is demanding payments ranging from $100 to $20,000 to delete the information, reports <a href=\"https:\/\/krebsonsecurity.com\/2024\/03\/incognito-darknet-market-mass-extorts-buyers-sellers\/\">KrebsOnSecurity<\/a>.<\/p>\n<p>The perpetrators threaten to publish the history of 557,000 orders and 862,000 transactions by the end of May. They also claim to have access to all personal messages between sellers and buyers, as they &#8220;never encrypted or deleted&#8221; them.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-eu.googleusercontent.com\/J3YDnlBcFN8VA8e5SYWl83QFWCI21ryT7Cv6Xos86qHfzsd5wChcAovTaNjmarnt6OQPV15EU9QXOgN4ehwgL-LaT2QL6T3gAc2RWOSAARk5hbosNPXUmtCZi9Cvd2EVarqNUtSjtGAbFPC3f49tKeg\" alt=\"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events\"\/><figcaption class=\"wp-element-caption\">Source: Incognito Market website.<\/figcaption><\/figure>\n<p>The extortion message includes a &#8220;Payment Status&#8221; table listing the marketplace&#8217;s top sellers.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-eu.googleusercontent.com\/N4bZvNAQyjFsYipHEsVHBIBaqzJr5bcsP-5e5nAGOyI34R1xV0xo-U9o7AEVPhPFda8pC5_0e4JaYsOrrSWr_8p5thDg0tzXW2bAhDCFgdOGNz16-JnE7B-rxtCWhTImZ54qvoSrGOUAtolEVpsWIVA\" alt=\"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events\"\/><figcaption class=\"wp-element-caption\">Source: Incognito Market website.<\/figcaption><\/figure>\n<p>Incognito Market stated that on April 1, users who paid the ransom would gain access to all their data with the option to delete it.<\/p>\n<h2 class=\"wp-block-heading\"><strong>Fake Bitcoin Wallet Leather Available on App Store for Over Two Weeks<\/strong><\/h2>\n<p>On March 4, developers of the cryptocurrency wallet Leather warned users about a malicious version of their app on the App Store. An official iOS program does not yet exist.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">PSA: The Leather Wallet app currently in the iOS store is FAKE ?<\/p>\n<p>\u26a0\ufe0f Do not download it, and definitely do not input your seed phrase.<\/p>\n<p>We promise we&#8217;ll let you know once our mobile app is actually ready!<\/p>\n<p>Leather should only be downloaded directly from <a href=\"https:\/\/t.co\/V9zpQR40uC\">https:\/\/t.co\/V9zpQR40uC<\/a>.<\/p>\n<p>\u2014 Leather \u2014 The Bitcoin wallet for the rest of us (@LeatherBTC) <a href=\"https:\/\/twitter.com\/LeatherBTC\/status\/1764711738208063556?ref_src=twsrc%5Etfw\">March 4, 2024<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Users who installed the fake app were advised to immediately transfer all cryptocurrency to a new wallet to prevent asset theft.<\/p>\n<figure class=\"wp-block-image\"><img decoding=\"async\" src=\"https:\/\/lh7-eu.googleusercontent.com\/yvEe3mrk1pqg4MJdkL0Z4LaDs2jp0UMvZRP6Q6RkzstDsJ63rae47etnufD0P6nXlBbgzHp9OypWntjej0WcBXrdtIBsBX7s2BWRcKQH8G1HwnNhE2_dorf_CQ65o9RuwQ8KdpQWXEVxHqFIJ4xSIjc\" alt=\"US to Return Seized Binance Assets, IMF Confirms Email Breach, and Other Cybersecurity Events\"\/><figcaption class=\"wp-element-caption\">Fake wallet on App Store. Source: Bleeping Computer.<\/figcaption><\/figure>\n<p>Since the App Store does not disclose download numbers, the exact number of affected users and the total damage remain unknown. One user lost $120,000 in STX.\u00a0<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">Watch out. This scam wallet INSIDE Apple App Store stole 38,000 STX after importing. <a href=\"https:\/\/twitter.com\/muneeb?ref_src=twsrc%5Etfw\">@muneeb<\/a> please warn <a href=\"https:\/\/twitter.com\/Stacks?ref_src=twsrc%5Etfw\">@Stacks<\/a> community. <a href=\"https:\/\/t.co\/gX0IC2ofiO\">https:\/\/t.co\/gX0IC2ofiO<\/a><\/p>\n<p>\u2014 George Burke (@geoburke) <a href=\"https:\/\/twitter.com\/geoburke\/status\/1767141272471453718?ref_src=twsrc%5Etfw\">March 11, 2024<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>Another user lost <a href=\"https:\/\/twitter.com\/wherermyprofits\/status\/1767071346511507859\">about $100,000<\/a> in PIXEL cryptocurrency.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">I feel you brother. I was drained yesterday. <\/p>\n<p>I lost everything I had on ETH. <\/p>\n<p>Years of grinding, gone\u2026<\/p>\n<p>\u2014 JT (Redemption Arc) (@wherermyprofits) <a href=\"https:\/\/twitter.com\/wherermyprofits\/status\/1766971907679612971?ref_src=twsrc%5Etfw\">March 10, 2024<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>The app had a 4.9 rating due to numerous similar fake reviews.<\/p>\n<p>Apple removed the malicious program only two weeks after the first complaints.<\/p>\n<h2 class=\"wp-block-heading\"><strong>World Youth Festival in Sochi Targeted by Miners<\/strong><\/h2>\n<p>During the World Youth Festival in Sochi from February 29 to March 7, specialists from Solar Group <a href=\"https:\/\/rt-solar.ru\/events\/news\/4149\/\">repelled<\/a> over 10,500 medium and high-severity cyber incidents on the event&#8217;s website and accreditation system.<\/p>\n<p>Attackers primarily used <span data-descr=\"distributed denial of service\" class=\"old_tooltip\">DDoS<\/span> attacks and <span data-descr=\"structured query language\" class=\"old_tooltip\">SQL<\/span> injections to steal information from databases.<\/p>\n<p>They also prevented <span data-descr=\"cross-site scripting\" class=\"old_tooltip\">CSS<\/span> attacks\u2014stealing cookies and other sensitive information stored in the browser. Resource scans and vulnerability exploits, including <span data-descr=\"remote code execution\" class=\"old_tooltip\">RCE<\/span> and <span data-descr=\"brute force\" class=\"old_tooltip\">brute force<\/span>, were recorded.<\/p>\n<p>Attempts to mine cryptocurrency using the event&#8217;s computing resources were also blocked.<\/p>\n<p>In total, hackers used about 150 malware types, including trojan ransomware and software for altering data on servers and user workstations.\u00a0<\/p>\n<p>Also on ForkLog:<\/p>\n<ul class=\"wp-block-list\">\n<li>DemHack 8 hackathon announced a prize fund for internet freedom projects.\u00a0<\/li>\n<li>The NFPrompt team reported a platform breach.<\/li>\n<li>Kaspa holders accused TradeOgre exchange of stealing coins worth over $6 million.<\/li>\n<li>WSJ: US investigates $165 million crypto transactions for Hamas links.<\/li>\n<li>Nigeria requested Binance&#8217;s transaction history for the past six months.<\/li>\n<li>Media: Bitcoin Fog operator found guilty of money laundering.<\/li>\n<li>EU approved criminal penalties for circumventing sanctions using cryptocurrencies.<\/li>\n<li>Dubai police introduced a forensic solution based on Cardano.<\/li>\n<li>In February, crypto users lost $47 million to phishing.<\/li>\n<li>Vitalik Buterin proposed a way to protect Ethereum from quantum computers.<\/li>\n<li>Solana&#8217;s mempool by Jito was shut down after a surge of MEV bots.<\/li>\n<\/ul>\n<h2 class=\"wp-block-heading\"><strong>What to Read Over the Weekend?<\/strong><\/h2>\n<p>Predictions from World Wide Web inventor Tim Berners-Lee on what the internet will look like in the next 35 years.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We have compiled the most important cybersecurity news of the week. The US will return $2.3 million seized from Binance to fraud victims. Viber found no evidence of a 740 GB data leak. Incognito Market began extorting users after an exit scam. A fake Bitcoin wallet, Leather, was available on the App Store for over [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":11653,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"","news_style_id":"","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1238,1233],"class_list":["post-11654","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-cybersecurity-digest","tag-industry-digests"],"aioseo_notices":[],"amp_enabled":true,"views":"26","promo_type":"","layout_type":"","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/11654","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/comments?post=11654"}],"version-history":[{"count":0,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/11654\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media\/11653"}],"wp:attachment":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media?parent=11654"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/categories?post=11654"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/tags?post=11654"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}