Categories: CryptoNews

Coincube Hack Leaves Two User Accounts Completely Drained

Cryptocurrency platforms have been prone to hacks throughout the years. Over the past 24 months, we have seen cybercriminals double down on their efforts to infiltrate such platforms and steal as much money as possible. In the case of Coincube, it seems a big heist took place not long ago. Its database was compromised, allowing an attacker to drain large sums of money. It was a very unfortunate incident, although it remains to be seen if the victims will be reimbursed.

Coincube Suffers Major Data Breach

For readers who are not familiar with the Coincube platform, allow us to explain it briefly. Coincube is an investment platform which mainly focuses on index-based cryptocurrency investing. Users can pick the coins they wish to trade, and the Coincube team will take care of the trading. Users remain in control of their funds at all times, which makes concepts like this one rather appealing. For now, the service is in closed beta, and it is a bit unclear when it will be opened to the public.

It is perhaps a good thing that this service is not open to the public just yet. According to an email sent to platform users, Coincube’s database was breached by an unknown assailant, but the number of victims was limited to just two accounts. One of those users is Coincube’s CEO, Robert Allen.

It is unclear who the other affected user is, nor do we know how much money was drained from these accounts, although the email claims it is “a large sum”. The assailant successfully gained access to the platform’s database and used API keys to log into specific user accounts. This may have been a targeted attack, although that has not been officially confirmed by the Coincube team at this point. All users are asked to delete any API keys connected to this platform and to generate fresh ones.

Related Post

According to the email, the assailant gained access to these accounts in order to place large limit orders. By setting the price very close to zero, they quickly dumped through the entire order book to ensure the users’ available funds were drained quickly. Even though some money was lost in the process, it does show there was a clear intent to cause financial harm to owners of the affected Coincube accounts. It’s a very troublesome development, although it’s not the first of its kind.

So far, the Coincube team has performed a security audit and ensured its database is fully secure once again. Generating new API keys should not result in any issues, although users have been asked to implement IP address whitelisting as an additional security measure. Surprisingly, this is not possible on Bitfinex or HitBTC, which is somewhat worrisome. By using this whitelisting approach, only authorized Coincube trades will be performed on behalf of the user.

Considering that one of the affected users was the platform’s CEO, it is doubtful he will be reimbursed. The other account in question, however, is a different matter altogether. Although the email doesn’t mention any reimbursement, the company will have to undertake some action in this regard. For now, all users have received is an apology for the database breach, but that may not satisfy everyone. It will be interesting to see whether this hack affects the future of Coincube as a company. 

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitcoin Crashes Below $67,000 as $700 Million Wiped From Crypto Market in Hours

Bitcoin is bleeding. The world's largest cryptocurrency plunged to $66,997 on Tuesday, shedding over $6,750…

9 hours ago

Ripple’s RLUSD Goes Live in Türkiye, Hits $1.7 Billion Market Cap

Ripple is not pausing for breath. The company has brought its dollar-pegged stablecoin, $RLUSD, to…

13 hours ago

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

1 day ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

2 days ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

2 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

2 days ago