Read Time:1 Minute, 41 Second

The holiday season is not for relaxation to cyberhackers. While everyone is on vacation and party mode, they are busy plotting a cyber attack on users of BitKeep.

BitKeep, a multi-crypto digital wallet, was breached the day after Christmas. The threat actors have distributed fake software versions of the Android app. 

“With maliciously implanted code, the altered APK led to the leak of user’s private keys and enabled the hacker to move funds,” BitKeep CEO Kevin Como stated.

The CEO confirmed that this cyber breach is a “large-scale hacking incident”. 

A total of $9.9 million worth of assets have reportedly been stolen so far, according to multi-chain blockchain explorer OKLink and blockchain security firm PeckShield.

The platform has not yet confirmed the attack on its official website, yet they are using Twitter and Telegram to inform the community. They said that the users that have been victimised may have downloaded an unknown version of the application. 

“More than 200 addresses on the other three chains were used in the heist, and all funds were transferred to two main addresses in the end,” BitKeep added.

Users have also been asked to complete a Google form containing relevant information about their accounts. The BitKeep team told the hijacked users that the BitKeep Security Fund should compensate their lost funds. 

Most syphoned funds are on Ethereum, TRON, Polygon, and BNB Chain. These fake Android apps may have been disseminated through phishing websites because there have been reports of up to five different versions with various package names. The official name of the package is “com.bitkeep.wallet.”

The most recent version (7.3.0), released today, is advised for users who downloaded the APK file for version 7.2.9. They should also transfer their money to a newly created wallet address.

The 2018-founded business, with its headquarters in Singapore, claimed to have tracked the wallet address used to commit the crime and frozen part of the stolen digital assets.

Happy
Happy
0 %
Sad
Sad
0 %
Excited
Excited
0 %
Sleepy
Sleepy
0 %
Angry
Angry
0 %
Surprise
Surprise
0 %
Trend Micro Previous post Raspberry Robin Worm Targets Telecommunications Networks and Government Office Systems
google ads Next post Threat Actors Have Been Giving the Google Ads Advertising Platform a Bad Name