18 July 2024

WazirX crypto exchange confirms security breach following $230M theft


WazirX crypto exchange confirms security breach following $230M theft

One of India’s largest cryptocurrency exchanges, WazirX, has confirmed that it experienced a significant security breach resulting in the suspicious transfer of approximately $230 million in digital assets from its platform.

The Mumbai-based exchange disclosed that the breach involved one of its multisig wallets.

“We're aware that one of our multisig wallets has experienced a security breach. Our team is actively investigating the incident,” the company said in a post on X, noting that INR and crypto withdrawals will be temporarily paused to ensure the safety of users’ assets.

Blockchain explorer Lookchain reported that the stolen assets included 5.43 billion SHIB tokens, over 15,200 Ethereum tokens, 20.5 million Matic tokens, 640 billion Pepe tokens, 5.79 million USDT, and 135 million Gala tokens. The assets were reportedly transferred out of WazirX's platform earlier in the day.

While the identity of the attacker remains unknown, blockchain data suggests they are attempting to offload the stolen assets using Uniswap, a decentralized exchange.

CoinSwitch and CoinDCX, two other major crypto exchanges in India, said that they have not been impacted by the incident and that their customers’ funds remained secure.


Back to the list

Latest Posts

Cyber Security Week in Review: September 6, 2024

Cyber Security Week in Review: September 6, 2024

In brief: the US charges Russian GRU hackers for attacks on Ukraine, Apache, Cisco, Zyxel patch high-risk flaws, Google fixes Android zero-day, and more.
6 September 2024
Threat actors using MacroPack Red Team framework to deploy Brute Ratel, Havoc and PhantomCore

Threat actors using MacroPack Red Team framework to deploy Brute Ratel, Havoc and PhantomCore

Some of the documents appeared to be part of legitimate Red Team exercises, while other were intended for malicious purposes.
5 September 2024
US seizes 32 domains linked to Russian Doppelganger influence campaign

US seizes 32 domains linked to Russian Doppelganger influence campaign

The domains, used to disseminate propaganda, were seized as part of a broader effort to disrupt Russia’s attempts to interfere in the 2024 US Presidential Election.
5 September 2024