Cointime

Download App
iOS & Android

January 2023 Monthly Skynet Alerts Report

Validated Project

Introduction

So far, in 2023, approximately $28,047,532 was lost to various scams and exploits in the Web3 industry with a total of 55 recorded attacks. This is a significant decrease from the average loss per month in 2022, which stood at $313 million, and is approximately 43% below December's figure, which saw the least amount of funds lost. Exit scams account for approximately $10,222,994 in losses across 21 incidents and made up 38% of the overall funds lost in January. This is due to the lack of any major incidents exceeding over $10 million, which hasn’t occurred for over 12 months.

Major Exploits

In the month of January there have been a total of 27 major attacks. This is the second fewest number of attacks recorded since February 2022, which saw 20 major attacks. An average of $998,734 was lost per attack, which is a significant decrease from the average of $2,455,613 per attack in the month of December.

The largest exploit this month was the LendHub incident, which saw a ~$5.3 million loss. The LendHub exploit, which happened 12th January, is the largest attack this year thus far. The exploiter took advantage of a discrepancy between an old IBSV cToken and a new token. The old and new IBSV tokens exist simultaneously in the market, with both taking their price from the new IBSV. The exploiter obtained old IBSV tokens by depositing HBSV tokens, borrowing assets from the new market, then redeemed HBSV back in the old market. The exploiter transferred the stolen funds from LendHub to other chains like Ethereum and Optimism. After transferring the assets to Ethereum, the exploiter funneled stolen funds into sanctioned cryptocurrency mixer Tornado Cash.

The second largest exploit was on the 3rd January of a GMX whale wallet being compromised, leading to a loss of ~$3.5 million. The GMX was swapped for Ethereum and bridged to the Ethereum mainnet from Abritrum. The victim wallet sets the hackers wallet as the pending receiver, which was then swapped. The swapping of GMX caused a slippage of the GMX token, causing the community to ask questions as to its nature. This prompted figures in GMX to announce that a whale wallet had been hacked, and had nothing to do with the GMX project.

The third moss significant loss, reported on December 31, 2022. One of the original core developers behind Bitcoin Luke Dahjr, claims he lost all his bitcoin as a result of a hack before the new year. Luke claims that the alleged hackers somehow gained access to his private key to steal his BTC. Luke did not share how much of his BTC was stolen in total. The 4 transactions that he posted online at the time of writing suggest that ~$3.6 million was taken. There is no definite answer to how Luke lost his bitcoin, but people speculate that he had lax security, or that someone stumbled across the seed phrase somehow. Some even suggested that it was a boating accident ahead of tax season.

Exit Scams

January 2023 has seen a total of 21 exit scams resulting in the loss of $10.2 million. The amount lost this month to exit scams is approximately the average seen across 2022 when discounting outlier events (exit scams with losses over 10 million). However, exit scams accounted for a significant portion of the overall monthly loss in January, at 38.1%. This compares to 27.2% in December and 5% in November and October, respectively.

The high proportion of the overall funds being attributed to exit scams is likely due to the overall low number of incidents in other categories such as major exploits. While other categories have trended lower, exit scams continued a steady trend seen in 2022. This even comes after a relative drop in incidents in January 2023 compared to the average in 2022. The overall incidents in January 2023 were 21 compared to the overall average of 26.1 in 2022.

Despite the lower incidents, the continuation of the trend of funds lost was maintained primarily by three major exit scams whose funds lost exceeded $2 million. FUT, malicious circulate contracts and Yield Robot resulted in a combined loss of approximately $7 million, roughly 70% of all funds lost in January.

Flash Loans

January 2023 saw a total of 16 attacks. The total number of losses for January were approximately $762,000 with an average of $47,647 lost per attack. The most significant flashloan attack occurred on BRA. On January 9th, 2023, BRA experienced several flashloan attacks that exploited the flawed fee collecting system to cause over minting on the victim liquidity pool which had been drained. Leading to a loss of approximately $237,000. The first attacker address gained 819 BNB and the second attacker address gained 53BNB as the liquidity pool was still vulnerable to copycat attackers. The attacker took advantage of the vulnerability in the fee - collecting system to cause overminting on the victim liquidity pool.

Overall, the number of malicious flash loans was higher than any month seen in 2022; however the overall funds lost didn’t exceed $800,000. It is significantly lower than the 2022 average, which stands at $29.5 million lost per month. Despite the higher number of flash loans, the majority of incidents targeted low liquidity tokens, with the vast majority leading to losses below $50,000.

Discord Hacks and Phishing

The start of 2023 has begun how 2022 ended; there were 36 compromised Discord servers in December 2022 and 36 in January 2023. We also recorded 5 Twitter account compromises related to NFTs in both months. On top of this we are also starting to see an increase in the number of fake Twitter accounts and wallet drainers being advertised on Twitter. This increase may be due to the prevalence of wallet drainer phishing kits, which scammers can purchase from a variety of vendors.

In the largest phishing incident of the month, a fake Cool Cats NFT website was able to steal 357 NFTs. Five days later,the same group were able to steal 195 NFTs from another phishing site imitating Hasbullah NFT. The Hasbullah phishing account is perhaps the first incident in which we have seen being promoted via Twitter ads.

Conclusion

Compared to January 2022, there was an uptick in attacks. In January 2022, we recorded 31 total attacks, while this year we have recorded 54 total attacks. However, when comparing to total loss there was a significant decrease in funds lost. The downward trend in funds lost, which was observed at the end of 2022, has continued into 2023, primarily due to the absence of major exploits where the total loss exceeds $10 million.

Read more: https://www.certik.com/resources/blog/oyUkWBFDI0lMmUuMMGSJA-january-2022-monthly-report

Comments

All Comments

Recommended for you

  • Musk calls for abolishing the Consumer Financial Protection Bureau

     on November 27th, Musk called for the abolition of the Consumer Financial Protection Bureau (CFPB) on social media platform X, stating that "there are too many redundant regulatory agencies."

  • Binance to Launch MORPHO and CHILLGUY USDT Perpetual Contracts

    Binance futures platform will launch perpetual contracts with a maximum leverage of up to 75 times at the following times:

  • Japanese fintech startup Habitto completes $11.7 million Series A funding

    Japanese fintech startup Habitto announced on Wednesday that it raised $11.7 million in Series A funding led by QED Investors and DG Daiwa Ventures, with participation from Anthemis Group and Scrum Ventures. Existing supporters include Saison Capital, GMO VenturePartners, Cherubic Ventures, and Epic Angels. The funds raised are intended to support Habitto's expansion of its digital banking platform.

  • Blockchain payment company Partior completes $80 million Series B financing, with Deutsche Bank participating

    blockchain payment company Partior has completed an $80 million Series B financing round, with Deutsche Bank joining as a new investor. Previously in July 2024, Partior announced it had completed a $60 million financing round with investors including Peak XV Partners, JPMorgan, Jump Trading Group, Standard Chartered Bank, Temasek, and Valor Capital Group.

  • Andy Ayrey: Truth Terminal treasury funds are being migrated, users do not need to panic

    On November 27th, Truth Terminal founder Andy Ayrey posted on X, stating that the Truth Terminal treasury is undergoing its final migration. There is no need to panic due to changes in funds, as all funds are being transferred to an appropriate, globally distributed multi-signature.

  • U.S. consumer confidence improves again in November, reaching a two-year high

    Dana M. Peterson, Chief Economist of the World Large Enterprises Federation, said, "US consumer confidence continued to improve in November, reaching the highest level in the past two years. The growth in November was mainly due to consumers' more positive assessment of the current situation, especially in the labor market. Compared with October, consumers' optimism about future employment opportunities has also greatly increased, reaching the highest level in nearly three years. At the same time, consumers' expectations for future business conditions have not changed, while their optimism about future income has slightly declined." Earlier, the US Conference Board Consumer Confidence Index for November recorded 111.7, a new high since July 2023.

  • Starknet: Phase 1 of STRK staking is now live on the mainnet

    Starknet announced that the first stage of STRK staking has officially launched on the mainnet.

  • CZ: Not trying to end the meme craze, just encouraging more builders

    CZ posted on X platform today, saying: "I am not against Meme coins, but Meme coins have become 'a little' strange now. Let's use blockchain technology to build practical applications." Some community users said that even Musk is a supporter of Meme coins, and it is very difficult to end this frenzy. CZ responded that "there is no attempt to end anything, everyone has the right to choose to invest or hold what they want. Just encourage more builders."

  • Talus Network Completes $6 Million Strategic Round of Financing with a Valuation of $150 Million

    decentralized AI protocol Talus Network raised $6 million in a strategic financing round led by Polychain Capital, valuing the company at $150 million. This funding will help further develop the Talus ecosystem, including the Protochain, Nexus framework, and "AI dating experience" application.

  • Careers in Crypto: 5 Insights for 2024

    In an overwhelming job market, leaning into personal networks and connections are more important than ever. Emily Landon, CEO of The Crypto Recruiters, outlines what is happening in the crypto job market and how you can position yourself or your company in 2024.