{"id":27927,"date":"2020-08-31T10:47:18","date_gmt":"2020-08-31T07:47:18","guid":{"rendered":"https:\/\/forklog.com\/en\/?p=27927"},"modified":"2025-08-26T23:59:54","modified_gmt":"2025-08-26T20:59:54","slug":"investor-loses-1400-bitcoins-after-using-an-older-electrum-wallet","status":"publish","type":"post","link":"https:\/\/u1f987.com\/en\/investor-loses-1400-bitcoins-after-using-an-older-electrum-wallet\/","title":{"rendered":"Investor loses 1,400 bitcoins after using an older Electrum wallet"},"content":{"rendered":"<p>Malicious actors stole 1,400 bitcoins (~$16.3 million at the time of writing) from a cryptocurrency investor who had held the coins since 2017. He disclosed this on <a href=\"https:\/\/github.com\/spesmilo\/electrum\/issues\/5072#issuecomment-683356052\" target=\"_blank\" rel=\"noopener noreferrer\">GitHub<\/a><!--more--><\/p>\n<p>A user using the handle 1400BitcoinStolen said that he stored BTC on an Electrum wallet that he had not accessed since purchase.<\/p>\n<p>Seeking to transfer the funds, he installed an older version of the app, but could not complete a transaction. A pop-up window prompted him to update the wallet to the latest version for security reasons. After installing the update, his funds were moved to the attacker\u2019s address.<\/p>\n<p>The investor did not specify whether he had used the original Electrum version. In the comments under the post by Bitcoin researcher Ben Verret, users speculated that the theft was made possible by the wallet&#8217;s failure to receive a timely update.<\/p>\n<p>A pioneer of the cryptocurrency industry and CEO of Blockstream, Adam Back, suggested that the user may have connected to a malicious server from which he received a notification prompting an application update.<\/p>\n<blockquote class=\"twitter-tweet\" data-conversation=\"none\">\n<p dir=\"ltr\" lang=\"en\">Someone explain? Is this due to connecting to a malicious electrum server which pushes a misleading notification message, then the user installs malware? Maybe displayed messages could be signed by electrum the software author instead of network servers?<\/p>\n<p>\u2014 Adam Back (@adam3us) <a href=\"https:\/\/twitter.com\/adam3us\/status\/1300025103938400256?ref_src=twsrc%5Etfw\">August 30, 2020<\/a><\/p>\n<\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>In April last year, Electrum users lost $4.6 million in bitcoin due to a large DoS attack.<\/p>\n<p>Subscribe to ForkLog news on <a href=\"https:\/\/vk.com\/forklogcom\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">VK<\/a>!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Malicious actors stole 1,400 bitcoins (about $16.3 million at the time) from a cryptocurrency investor who had held the coins since 2017, disclosed on GitHub.<\/p>\n","protected":false},"author":1,"featured_media":27928,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"1","news_style_id":"","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[1154,1909,57],"class_list":["post-27927","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-crimes","tag-electrum","tag-wallets"],"aioseo_notices":[],"amp_enabled":true,"views":"25","promo_type":"1","layout_type":"","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/27927","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/comments?post=27927"}],"version-history":[{"count":1,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/27927\/revisions"}],"predecessor-version":[{"id":27929,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/posts\/27927\/revisions\/27929"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media\/27928"}],"wp:attachment":[{"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/media?parent=27927"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/categories?post=27927"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/u1f987.com\/en\/wp-json\/wp\/v2\/tags?post=27927"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}