The holiday season is not for relaxation to cyberhackers. While everyone is on vacation and party mode, they are busy plotting a cyber attack on users of BitKeep.
BitKeep, a multi-crypto digital wallet, was breached the day after Christmas. The threat actors have distributed fake software versions of the Android app.
“With maliciously implanted code, the altered APK led to the leak of user’s private keys and enabled the hacker to move funds,” BitKeep CEO Kevin Como stated.
The CEO confirmed that this cyber breach is a “large-scale hacking incident”.
A total of $9.9 million worth of assets have reportedly been stolen so far, according to multi-chain blockchain explorer OKLink and blockchain security firm PeckShield.
The platform has not yet confirmed the attack on its official website, yet they are using Twitter and Telegram to inform the community. They said that the users that have been victimised may have downloaded an unknown version of the application.
“More than 200 addresses on the other three chains were used in the heist, and all funds were transferred to two main addresses in the end,” BitKeep added.
Users have also been asked to complete a Google form containing relevant information about their accounts. The BitKeep team told the hijacked users that the BitKeep Security Fund should compensate their lost funds.
Most syphoned funds are on Ethereum, TRON, Polygon, and BNB Chain. These fake Android apps may have been disseminated through phishing websites because there have been reports of up to five different versions with various package names. The official name of the package is “com.bitkeep.wallet.”
The most recent version (7.3.0), released today, is advised for users who downloaded the APK file for version 7.2.9. They should also transfer their money to a newly created wallet address.
The 2018-founded business, with its headquarters in Singapore, claimed to have tracked the wallet address used to commit the crime and frozen part of the stolen digital assets.
More Stories
Killnet and AnonymousSudan Collaborate to Launch Cyber Attacks on Western Organisations
In recent news, it has been reported that two Russia-sympathetic hacktivist groups, Killnet and AnonymousSudan, have allegedly launched a series...
$4000 Gone In An Instant: Mother Defrauded in Facebook Marketplace Car Deal
A mother of four is warning others to be cautious after believing she had purchased a safe and dependable car...
Shocking Scam: Sydney Family Loses $200K Life-Savings in Suncorp Spoofing Fraud
A family from Sydney has lost their life savings worth $200,000 due to a fraudulent scam. Peter and Madison, who...
Mysterious Money Transfer Leaves Couple Speechless: How They Got an Unsolicited $4000
A young couple in Melbourne claims their bank is making up a personal loan they do not understand. Ashley and...
Phishing + AI + Voice Cloning= Big Trouble: The New Way Criminals are Stealing Your Money
New Alert: Criminals use AI and voice cloning to trick you out of your money. Earlier this year, Microsoft unveiled...
‘Impossible to Spot’ Delivery Scam Email Targets Australia Post Customers – Don’t Fall Victim!
Unsuspecting shoppers should be cautious as a parcel delivery scam that is hard to distinguish targets Australia Post customers. Email...