Crypto-Asset Exchange Threat Modeling
On April 13, 2021, the Cloud Security Alliance (CSA) Blockchain/Distributed Ledger Working Group released the Crypto-Asset Exchange Security Guidelines—a set of guidelines and best practices for crypto-asset exchange (CaE) security. The set of guidelines were created to help educate users, policymakers, and cybersecurity professionals on the pros and cons of further securing Virtual Asset Service…
Read moreSANCTIONS ALERT: Russian Crypto-Related Designations for US Election Interference
SANCTIONS UPDATE: On April 15, 2021, the US Department of the Treasury’s Office of Foreign Assets Control (OFAC) sanctioned 16 individuals and 16 entities for attempting to undermine and influence the 2020 US presidential election. The sanctions list includes Russian officials, proxies, and intelligence agencies linked to the Internet Research Agency (IRA)—a Russian “troll farm”…
Read moreCanada Updates KYC Identity Verification Guidance for VASPs
Analysis: Proposed FATF Guidance for Virtual Assets and VASPs
Who’s Laughing Now? Small Investors Pump Joke Token Dogecoin
The market volatility created last week as Redditors from r/wallstreetbets banded together to buy stock in GameStop (GME), AMC (AMC), and Bed, Bath, and Beyond (BBBY) through the Robinhood app spilled over into the cryptocurrency world when Dogecoin, a token established in 2013 to satirize the growth of altcoins, caught Reddit’s eye. DOGE has a…
Read moreNew US Administration Plans to Encourage Legitimate Use of Crypto, Curtail Criminal Use
During her confirmation hearing on January 19, Janet Yellen, President Joe Biden’s pick for Secretary of the Treasury, stated “many” cryptocurrencies are “a particular concern” when it comes to terrorism and criminal financing. This statement was in response to a question on how the US can curtail the use of emerging technology, such as crypto, in illicit financing. On January 21, Yellen released written responses to additional…
Read more$220M in Bitcoin May Be Encrypted Forever on IronKey
Stefan Thomas is two failed password attempts away from losing the private keys to $220 million worth of bitcoin forever. This is because Thomas holds the private keys to his bitcoin wallet in an IronKey. “The World’s Most Secure Flash Drive” would rather die than give up its secrets, thanks to a series of built-in…
Read moreWhat Exactly is a Virtual Asset Service Provider (VASP)?
Cryptocurrency, digital asset, convertible virtual currency… there seems to be an endless list of terms for the same concept. If that wasn’t enough, a cryptocurrency exchange can also be referred to as a Virtual Asset Service Provider(VASP), Virtual Asset Entity, Digital Asset Customer (DACs), Money Service Business (MSB), or any other series of classifications depending…
Read moreInfinite Minting Exploit Nets Attacker $4.4M
As DeFi protocols continue to heat up within the Ethereum ecosystem, CipherTrace is seeing more and more exploits and attack vectors come to light. This past week, on December 28th, 2020, Cover Protocol’s shield mining contract, Blacksmith, was exploited. Hackers used a bug in the mining contract to mint an infinite amount of COVER tokens…
Read more