|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
Cryptocurrency News Articles
DeFi apps on Squarespace are vulnerable to a DNS hijacking attack that redirects users to malicious sites
Jul 13, 2024 at 04:35 am
Over 120 DeFi protocols are potentially vulnerable, including Compound and Celer Network. Learn more about the DeFi security risk and how to protect yourself.
Hackers are redirecting users of DeFi (Decentralized Finance) applications hosted on Squarespace to phishing sites in an ongoing DNS hijacking attack.
The attack, which began on July 11, saw hackers gain control of the DNS registry for Compound Finance and attempted to take over Celer Network’s registry.
By compromising the DNS records, the attackers were able to intercept traffic to the legitimate DeFi platforms and redirect users to phishing sites, which attempted to harvest sensitive information and drain users’ funds.
"This incident is still ongoing – we are seeing new malicious sites impersonating additional brands being created by the same attackers," Blockaid noted in a tweet late on July 12.
"We urge projects to double check their domain security settings – feel free to reach out by DM for additional security guidance."
The attack was detected after users noticed that Compound’s interface led to a malicious website hosting a token-draining application, while Celer Network confirmed an attempted domain takeover, which was prevented by its monitoring system.
Both protocols acknowledged the attack in separate statements.
Further investigation revealed that the attacker is specifically targeting Squarespace domain names, putting any DeFi app with a Squarespace domain at risk.
In response to the attack, MetaMask has implemented a warning system to flag potentially compromised DeFi apps, adding an extra layer of security to protect users from interacting with malicious websites.
While the precise methods used by the attackers are still being determined, it is speculated that the attack vector may have originated from Google domain accounts used by these protocols.
Squarespace notably acquired nearly 10 million domains hosted on Google Domains for $180 million in 2023, which could have provided the attackers with a potential entry point to access sensitive DNS information.
The DeFi space is still in its early stages, and security remains a top concern. In December 2023, an attacker managed to inject malicious code into the Ledger Connect library, impacting the Ethereum Virtual Machine ecosystem.
These incidents highlight the critical need for DeFi developers to prioritize robust security measures and for users to exercise caution when interacting with DeFi apps, especially those built on less rigorous security practices.
Disclaimer:info@kdj.com
The information provided is not trading advice. kdj.com does not assume any responsibility for any investments made based on the information provided in this article. Cryptocurrencies are highly volatile and it is highly recommended that you invest with caution after thorough research!
If you believe that the content used on this website infringes your copyright, please contact us immediately (info@kdj.com) and we will delete it promptly.
-
- SEC Shake-Up: Gensler Resigns, Bitcoin Eyes $100K, XRP Surges 26%, and Monsta Mash ($MASH) Takes Center Stage!
- Nov 23, 2024 at 04:20 am
- The cryptocurrency market has been buzzing with excitement as news broke that Gary Gensler, Chair of the US Securities and Exchange Commission (SEC), will step down on January 20, 2025.
-
- Bitcoin (BTC) Price Correction Incoming? RCO Finance (RCOF) Altcoin Presale Surges 337%, Poised for a 19,977% Surge
- Nov 23, 2024 at 04:20 am
- With Bitcoin price hovering above $93,000, analysts predict a potential short-term correction that could see the cryptocurrency drop to as low as $70,000 before attempting $100,000.
-
- Cboe to Launch Cash-Settled Bitcoin (BTC) Index Options Targeting U.S. ETF Market
- Nov 23, 2024 at 04:20 am
- These new financial instruments are scheduled for launch on Dec. 2 and will be based on the Cboe Bitcoin U.S. ETF Index, which tracks a selection of spot Bitcoin exchange-traded funds (ETFs) listed in the United States.