Currencies33181
Market Cap$ 3.13T-0.06%
24h Spot Volume$ 37.23B-6.41%
DominanceBTC61.22%-0.03%ETH7.06%+0.48%
ETH Gas0.38 Gwei
Cryptorank
MainNewsOKX Sees $20...

OKX Sees $204M Outflows in 24 Hours After Security Lapses


by CryptoPotato
OKX Sees $204M Outflows in 24 Hours After Security Lapses

OKX has experienced significant outflows, with $204 million withdrawn in the past 24 hours and $630 million in the past week, surpassing the outflows of other prominent cryptocurrency exchanges.

The surge in withdrawals comes from multiple security controversies that may have undermined user confidence.

OKX’s Design Flaw

On June 9, two OKX users lost a significant amount of funds in a suspected SIM-swapping attack due to a vulnerability in the exchange’s two-factor authentication (2FA) security system, which resulted in their accounts being compromised.

Blockchain security firm SlowMist founder Yu Xian claimed that the users were sent SMS risk notifications from Hong Kong just before a new API key was established for their account verification.

This was further validated by security analysts at Dilation Effect, who identified a vulnerability in OKX’s authentication system. They found that despite users binding their accounts to Google Authenticator (GA) for higher security, OKX allows customers to switch to lower security verification methods during sensitive operations, bypassing GA verification.

When sensitive operations occur, such as disabling the phone of GA verification or changing the login password, the 24-hour withdrawal ban risk control measures are not triggered. For password changes, this measure is only triggered when logging in from a new device.

DE also said that withdrawals to whitelisted addresses do not undergo dynamic verification based on withdrawal amounts. Once an address is whitelisted, it allows unlimited withdrawals within the limit without additional verification, unlike other exchanges, which impose limits and require re-verification if exceeded.

The platform said that OKX’s security settings lack a baseline design and have made several compromises likely to enhance user experience.

OKX Initiates Investigation

Prior to this, malicious entities used artificial intelligence (AI) to craft fake videos, further compromising the exchange’s security.

In response to these incidents, OKX said that it has initiated an investigation and reached out to affected users. The exchange also urged its clients to enable two-factor authentication to enhance security. Despite these efforts, the recurring security issue has resulted in a wave of withdrawals as users seek safer alternatives.

The post OKX Sees $204M Outflows in 24 Hours After Security Lapses appeared first on CryptoPotato.

Read the article at CryptoPotato

Read More

Ethereum ETF demand booms, adding $6.5 million in fresh capital – What now?

Ethereum ETF demand booms, adding $6.5 million in fresh capital – What now?

With RSI pointing bullish and inflows rising, is Ethereum quietly preparing for a bre...
Bitcoin flashes 2024-like accumulation pattern – Analysts say $100K breakout could be next

Bitcoin flashes 2024-like accumulation pattern – Analysts say $100K breakout could be next

Why Bitcoin’s path to $100K could be strengthened by accumulation and liquidity rebound
MainNewsOKX Sees $20...

OKX Sees $204M Outflows in 24 Hours After Security Lapses


by CryptoPotato
OKX Sees $204M Outflows in 24 Hours After Security Lapses

OKX has experienced significant outflows, with $204 million withdrawn in the past 24 hours and $630 million in the past week, surpassing the outflows of other prominent cryptocurrency exchanges.

The surge in withdrawals comes from multiple security controversies that may have undermined user confidence.

OKX’s Design Flaw

On June 9, two OKX users lost a significant amount of funds in a suspected SIM-swapping attack due to a vulnerability in the exchange’s two-factor authentication (2FA) security system, which resulted in their accounts being compromised.

Blockchain security firm SlowMist founder Yu Xian claimed that the users were sent SMS risk notifications from Hong Kong just before a new API key was established for their account verification.

This was further validated by security analysts at Dilation Effect, who identified a vulnerability in OKX’s authentication system. They found that despite users binding their accounts to Google Authenticator (GA) for higher security, OKX allows customers to switch to lower security verification methods during sensitive operations, bypassing GA verification.

When sensitive operations occur, such as disabling the phone of GA verification or changing the login password, the 24-hour withdrawal ban risk control measures are not triggered. For password changes, this measure is only triggered when logging in from a new device.

DE also said that withdrawals to whitelisted addresses do not undergo dynamic verification based on withdrawal amounts. Once an address is whitelisted, it allows unlimited withdrawals within the limit without additional verification, unlike other exchanges, which impose limits and require re-verification if exceeded.

The platform said that OKX’s security settings lack a baseline design and have made several compromises likely to enhance user experience.

OKX Initiates Investigation

Prior to this, malicious entities used artificial intelligence (AI) to craft fake videos, further compromising the exchange’s security.

In response to these incidents, OKX said that it has initiated an investigation and reached out to affected users. The exchange also urged its clients to enable two-factor authentication to enhance security. Despite these efforts, the recurring security issue has resulted in a wave of withdrawals as users seek safer alternatives.

The post OKX Sees $204M Outflows in 24 Hours After Security Lapses appeared first on CryptoPotato.

Read the article at CryptoPotato

Read More

Ethereum ETF demand booms, adding $6.5 million in fresh capital – What now?

Ethereum ETF demand booms, adding $6.5 million in fresh capital – What now?

With RSI pointing bullish and inflows rising, is Ethereum quietly preparing for a bre...
Bitcoin flashes 2024-like accumulation pattern – Analysts say $100K breakout could be next

Bitcoin flashes 2024-like accumulation pattern – Analysts say $100K breakout could be next

Why Bitcoin’s path to $100K could be strengthened by accumulation and liquidity rebound