investigation

OKX clarifies: Web3 wallet services are not under investigation by EU regulators

ChainCatcher news, OKX responded on social media regarding the scrutiny of its Web3 services by EU regulators, stating, "The Bloomberg article is misleading. Like all other major cryptocurrency exchanges, OKX offers self-custody wallet services/exchange functions, acting as an aggregator to create efficiency for users. When Bybit was hacked, we took two measures: froze the relevant funds entering the CEX; developed a new feature that can detect and block hacker addresses from using our DEX or wallet services.Bybit's statement spread misinformation among journalists. OKX clarifies to the community: OKX is not under investigation; this is merely a case of Bybit's lack of security knowledge; our Web3 wallet services are no different from those offered by other industry participants."Previously, Bloomberg reported that sources familiar with the matter said that European cryptocurrency regulators are reviewing the usage of a service provided by the cryptocurrency exchange OKX, which hackers used to launder $1.5 billion in stolen funds from the trading platform Bybit. These individuals requested anonymity as the review process is confidential. They stated that national regulators from the 27 EU member states discussed the issue at a meeting hosted by the European Securities and Markets Authority's Digital Finance Standing Committee on March 6. OKX is regulated under the EU's new Markets in Crypto-Assets Regulation.

GoPlus Security: The information leak regarding token listing is "not true," and an internal investigation is underway regarding the token's price drop

ChainCatcher news, GoPlus Security posted on platform X: "First, GoPlus has established a special investigation team to conduct a comprehensive investigation into the abnormal price fluctuations. Binance has also provided additional support to assist in investigating the cause of the incident. Firstly, in response to community feedback claiming that a leaker disclosed the listing information in advance and suspecting that this person is a member of the GoPlus team or a community administrator, GoPlus immediately initiated an internal investigation. The investigation results show that this situation is not true. The GoPlus team did not have prior knowledge of the March 4th GPS listing plan. Everything happened very suddenly; our team only learned about the listing news after the announcement was made and immediately collaborated with Binance to meet any additional requests from our side. Furthermore, it has been confirmed that the individuals spreading various rumors are unrelated to the parties involved and they had no way to obtain internal information about the listing through official internal channels.On the day of the listing, GoPlus transferred a total of 500 million GPS tokens to Binance. Of these, 300 million GPS tokens have been distributed as rewards for the BNB HODLer program, and the remaining 200 million tokens will be used for future marketing activities. For transparency, Binance has transferred the remaining 200 million GPS tokens to a public wallet address. Regarding the situation where the GPS price plummeted by 50% within 24 hours, GoPlus is conducting internal investigations with multiple partners and will provide users with a comprehensive explanation of our investigation results."

Slow Fog CISO: Beware of SMS phishing attacks targeting Binance users, and we recommend that Binance conduct a thorough investigation into this issue

ChainCatcher news, according to a post by Slow Mist CISO 23pd on platform X warning, "Attention, the latest SMS phishing attacks targeting Binance users have emerged. Recently, two individuals received the same phishing SMS on the same day, and the phishing SMS even appeared in the conversation thread of official Binance messages, appearing in the same context as previous genuine official messages, sharing the same channel. Even more astonishingly, there was a significant time span, precisely forging the official SMS environment.The current possible explanation is that the SMS channel has been exploited or hijacked by the phishers. The first SMS indeed came from the official number, but the subsequent scam messages may indicate that:Scammers spoofed the official SMS source (SMS Spoofing)• They used technical means to spoof the SMS sending number, making it appear consistent with the official number, allowing phishing messages to blend into the official conversation thread.They exploited vulnerabilities in the SMS gateway or supply chain attacks• Scammers may have attacked the SMS gateway or exploited security vulnerabilities of carriers/third-party SMS service providers, successfully embedding phishing messages into the official channel.• There may even be collusion with unscrupulous SMS providers to directly spoof official SMS replies, making it difficult for users to discern authenticity.Please have Binance officials investigate the issue, and everyone is advised to enhance security awareness and pay attention to fund safety."
ChainCatcher Building the Web3 world with innovators