Start your day with intelligence. Get The OODA Daily Pulse.

Home > OODA Analysis and Briefs

Analysis

Briefs

  • New Lawsuit Alleging That Solana Is A Security Could Have Big Implications For The Crypto Investment Landscape

    A class action lawsuit has been filed against Solana Labs, a for-profit company working on the development of the Solana blockchain, in a California federal court last week accusing the company and people within the ecosystem of making illegal profits and promoting its token, SOL, as an unregistered security. The outcome of the lawsuit could have…

  • How a fake job offer took down the world’s most popular crypto game

    Rarely has a job application backfired more spectacularly than in the case of one senior engineer at Axie Infinity, whose interest in joining what turned out to be a fictitious company led to one of the crypto sector’s biggest hacks. Ronin, the Ethereum-linked sidechain that underpins play-to-earn game Axie Infinity, lost $540 million in crypto to…

  • Don’t Fall for These 8 NFT Scams

    The massive growth of NFT creation, collection and sales in the past few years has led to a growth in NFT scams seeking to separate investors from their cash or cryptocurrency. In 2021, the NFT market grew by 21,000%, with $17.6 billion in sales, according to Fortune. NFTs stored in cold wallets — digital wallets…

  • Marriott Plays Down 20GB Data Breach

    Marriott International’s cybersecurity has come under criticism due to alleged irresponsibility regarding a data breach in which hackers stole 20GB of data from one of the hotel chain’s US locations. The hotel giant claimed that a threat actor was able to socially engineer an employee who worked at the BWI Airport Marriott in Baltimore. The…

  • Hack Allows Drone Takeover Via ‘ExpressLRS’ Protocol

    Security researchers have revealed that a radio control system for drones is vulnerable to remote takeover due to a weakness that lies in the mechanism that connects the transmitter and receiver. According to researchers, the protocol for radio controlled aircraft called ExpressLRS is popular among drone creators. The security vulnerability presents a major issue as…

  • North Korean Hackers Target US Health Providers With ‘Maui’ Ransomware

    The Cybersecurity and Infrastructure Security Agency recently released a new advisory that suggests nation-state threat actors are leveraging the Maui ransomware to target organizations in the healthcare sector. In particular, the government agency believes that the nation-state hacking group is sponsored by the North Korean government. The document explains that intelligence obtained by the CISA,…

  • Brazilian authorities crack down on piracy in the metaverse

    This week, Brazil’s Ministry of Justice and Public Security announced that it conducted its first search within the metaverse with the goal of tackling digital piracy and other related crimes involving the theft of intellectual property. The campaign has been named Operation 404 and is the fourth attempt on the behalf of Brazilian authorities to…

  • 21,000 alleged war crimes being investigated in Ukraine, prosecutor says

    Ukraine has stated it is investigating over 21,000 war crimes and crimes of aggression that have been allegedly committed by Russia since the start of the Kremlin’s invasion of Ukraine. Prosecutor General Iryna Venediktova has been receiving between 200 and 300 war crime reports a day.  Many of the trials will be held in absentia,…

  • UK Prime Minister Boris Johnson resigns after mutiny in his party

    Following a revolt within his Conservative Party, Boris Johnson has resigned as the UK Prime Minister. In an address to the nation, he said the country should begin to find a new prime minister now. He will not leave office until there is a replacement found, however he has appointed a Cabinet to serve alongside…

  • How to Secure NFT Assets

    If there’s any term that can describe the current NFT market, it’s the Wild West. Because the NFT space is still experimental and regulations are unclear or lax, it has attracted a flood of hackers and scammers who are on the hunt for a payday. If you own digital assets or you’re looking to dip…

  • Concerns About 401K Cryptocurrency Plans And Digital Assets

    The future of money and digital assets is a vast topic that presents numerous challenges, and it has even caused debate as to whether cryptocurrency is a prudent retirement plan investment. In its July 1, 2022 In Focus report, the Congressional Research Service nicely summarized the current developments concerning Cryptocurrency in 401(k) Retirement Plans. Of notable…

  • Hackers Stole USD 670M from DeFi Projects in Q2, Up by 50% from Q2 2021

    Hackers and fraudsters stole a total of USD 670.7m from various crypto protocols during the second quarter of the year, according to a report by major bug bounty and security services platform Immunefi. In 50 instances of both successful and semi-successful hacking attempts, decentralized finance (DeFi) projects lost USD 670,698,280 during the last quarter, said the…

  • The Worst Hacks and Breaches of 2022 So Far

    Whether the first six months of 2022 have felt interminable or fleeting—or both—massive hacks, data breaches, digital scams, and ransomware attacks continued apace throughout the first half of this complicated year. With the Covid-19 pandemic, economic instability, geopolitical unrest, and bitter human rights disputes grinding on around the world, cybersecurity vulnerabilities and digital attacks have…

  • Top 7 Automation Takeaways from Automate 2022

    More than 24,000 registered attendees descended upon Detroit earlier this month to see the latest products and innovations around the world of robotics and automation at the Automate 2022 event and trade conference. Visitors spoke with more than 600 companies displaying new solutions in the automation space, or heard from the top leaders in the…

  • Human Error Blamed for Leak of 1 Billion Records of Chinese Citizens

    Earlier this week, a Chinese government developer released a blog post regarding the China Software Developer Network. The post accidentally included the credentials to the system in which the data is stored, leading to a breach and subsequently 23 terabytes of personal data for sale on the dark web. A Chinese tech CEO has cited…

  • Software Supply Chain Attack Hits Thousands of Apps

    Security researchers at ReversingLabs have reportedly uncovered a new supply chain attack impacting software manufacturing that affects thousands of applications and websites. According to the researchers, the software is impacted due to the use of malicious npm packages and modules dating back at least six months. In addition to its investigation, ReversingLabs identified obfuscated Javascript…

  • Advanced Phishing Scams Target Middle East and Impersonate UAE Ministry of Human Resources

    A new campaign impersonating the Ministry of Human Resources of the UAE government has been uncovered by security researchers at CloudSEK. According to the security agency, the campaign is targeting corporate and government entities across several industries, including finance, travel, hospital, legal, oil, and gas. The campaign was identified via an artificial intelligence powered digital…

  • Google to wipe user location history for visits to healthcare clinics, domestic violence shelters

    Google has stated that it plans to automatically delete location logs when it believes the user has visited an abortion clinic or domestic violence shelter. The recent announcement is in response to the landmark Roe v. Wade ruling, which determined that legal abortion was a right in the United States. Following the controversial decision, the…

  • Concessions to Bulgaria prompts violence in North Macedonia

    Protests broke out in North Macedonia as the government made concessions on ethnic rights as part of EU accession talks, injuring at least 47 police officers. The protests occurred on Tuesday after the nationalist opposition party VMRO-DPMNE called for them due to the concessions to Bulgaria during the accession process. Bulgaria had blocked the accession…

  • China’s real estate crisis deepens as big Shanghai developer defaults

    A new Chinese developer has defaulted on its debt, another blow to the real estate sector in China. The Shanghai-based Shimao Group failed to pay the principal and interest on a $1 billion bond that was due on Sunday. The bond didn’t have a grace period for the principal.  This is the first missed debt…

  • Latest Cyberattack Against Iran Part of Ongoing Campaign

    According to a report produced by Check Point research, Iran’s steel manufacturing industry has been subject to ongoing cyberattacks that previously affected the country’s rail system. The same malware used in cyberattacks against Iranian steel plants is also connected to an attack against the rail system last year, leading researchers to believe that there may…

  • Chinese Tech Giants Alibaba, Tencent to Require ID Checks for NFT Purchases

    Tencent, Ant Group, Baidu, JD.com, and several other leading Chinese tech companies last week issued a “self-disciplined development proposal” for the “digital collectible industry” that would introduce real-name authentication for users that issue, buy, and sell non-fungible tokens (NFTs), according to a South China Morning Post report. According to a statement by the China Cultural Industry…

  • Crypto’s Free Rein May Be Coming to a Close

    Regulation is coming for crypto. After more than a decade when cryptocurrencies and related technologies have surged, boomed, and busted in a regulatory vacuum, lawmakers in both the US and Europe are writing new rules for a sector that has grown dangerously large in both value and reach, touching $2.9 trillion at its peak in…

  • Optimism’s Quixotic Hacked, Promises to Reimburse All Affected Users

    Quixotic – an NFT marketplace that runs on Optimism – revealed that wrongdoers breached its security and drained ERC-20 tokens. The organization assured that users with stolen assets will be reimbursed. In a recent tweet, Quixotic disclosed that criminals attacked its “Offer” feature and stole ERC-20 tokens. The team advised its customers to cancel their offers…

  • Alleged Chinese police database hack leaks data of 1 billion

    Hackers claim to have obtained a trove of data on 1 billion Chinese from a Shanghai police database in a leak that, if confirmed, could be one of the largest data breaches in history. In a post on the online hacking forum Breach Forums last week, someone using the handle “ChinaDan” offered to sell nearly…

  • Bollywood A-lister-backed GARI token plunge sparks rug pull rumors

    The domino effect of the 2022 bear market, which saw the downfall of numerous crypto ecosystems and tokens over several months, caught up to GARI token as it tanked over 83% in value in a matter of hours on Monday. While GARI Network brushed off the development as a “market event,” investors suspect a rug…

  • Threat Actor Claims Responsibility For IBM and Stanford University Hack

    CloudSEK has reportedly used an artificial intelligence platform to identify a post made to a cybercrime forum. The post mentioned open source automation server platform Jenkins as one of the techniques and procedures used by a threat actor in attacks that were conducted against IBM and Stanford University. According to CloudSEK, who utilized the XVigil…

  • Singapore may introduce further cryptocurrency restrictions

    Singapore is considering adopting additional regulations that will dictate cryptocurrency trading, deeming it necessary to safeguard the general public from scams and other threats facing the industry. These new regulations may apply to retail trading and the use of leverage in transactions. The announcement was made due to repeated warnings from the government over cryptocurrencies,…

  • Guinea halts Simandou iron ore project, seeks new partners

    All work related to the Simandou iron ore project was ordered to be stopped by Guinea’s mines minister on July 3. The project was halted due to the two companies involved failed to meet a deadline to agree on a joint venture. The companies showed a lack of willingness to work in a partnership.  The…

  • Protesters storm Libya’s eastern parliament building in Tobruk, local media reports

    Local media reported on Friday that hundreds of people stormed Libya;s eastern parliament building in Tobruk. This is the latest clash in a string of conflict between rival leaders’ supporters. The country has been split between warring factions since 2014.  The interim Prime Minister Abdulhamid Dbeibeh is the had of the UN-supported Government of National…

  • 3AC collapse and Decentralization

    This current crypto nuclear bear market marks my third brush with generalised market carnage. And while they can sometimes feel like reruns, every episode yields new lessons to be learned. Everyone is always going to have their own view of what those lessons are — but if it’s the mainstream financial media you’re listening to,…

  • MicroStrategy’s Bitcoin Holdings Take a Record $3.4 Billion Hit

    When MicroStrategy Inc. began buying Bitcoin in bulk in the summer of 2020, CEO Michael Saylor said it was because inflation would make cash worthless. The crypto pile he has since accumulated was worth $3.4 billion less at the end of the second quarter than the previous one. Technically, the decline is yet another paper loss…

  • Crypto hacks are declining in numbers but increasing in damage

    Cryptocurrency hacks have been significantly decreasing in numbers since the beginning of the year. According to the latest research from BestBrokers, the industry saw 64 security breaches by mid-June — a sharp decline from last year’s 251 hacks. However, while the number of successful hacks has been decreasing, the damage they’ve done to the industry certainly…

  • Know who is first in Crypto Crime

    Coincub reports that there have been over 15 verified cases of crypto crime in the nation, with revenues estimated at $1.59 billion. The United States, Russia, China, and the United Kingdom are the other top four nations that closely watch the hermit kingdom. North Korea’s contribution to the worldwide crypto crime rate is unknown, but…

  • British Army’s YouTube And Twitter Accounts Hacked—And Flooded With Crypto Posts

    A hacker compromised the social media accounts of the British Army to push people toward cryptocurrency scams. The army’s Twitter and YouTube profiles were taken over by the hacker, or hackers — the identity of whom is not yet known — on Sunday. The Twitter account’s name was changed to “pssssd,” and its profile and banner…

  • SEC Chair Gensler Again Says Bitcoin Is Not a Security. What About Ethereum?

    Securities and Exchange Commission Chairman Gary Gensler today reaffirmed the SEC’s view that Bitcoin is a commodity but refrained from extending the label to any other cryptocurrencies in an interview with CNBC. Gensler singled out Bitcoin as an example of a crypto asset that should be regulated under the Commodity Futures Trading Commission (CFTC), as he’s…

  • Justice Department Announces Enforcement Action Charging Six Individuals with Cryptocurrency Fraud Offenses in Cases Involving Over $100 Million in Intended Losses

    The Department of Justice, together with federal law enforcement partners, today announced criminal charges against six defendants in four separate cases for their alleged involvement in cryptocurrency-related fraud, including the largest known Non-Fungible Token (NFT) scheme charged to date, a fraudulent investment fund that purportedly traded on cryptocurrency exchanges, a global Ponzi scheme involving the…

  • Multisigs mean funds in bridges are ‘one small slipup’ from being hacked

    The recent exploit on Harmony’s Horizon Bridge revealed the inherent flaws with multisig admin keys that leave projects and their users “one small slipup” from deep trouble. Two crypto project leads expressed their concern that the expansion of the multi-chain ecosystem could be hampered by the use of multisig contracts due to the dangers they pose…

  • How North Korea Used Crypto to Hack Its Way Through the Pandemic

    North Korea’s economy has been ravaged by United Nations sanctions and the coronavirus pandemic. The government has warned of a severe food shortage. An unidentified intestinal disease began spreading among citizens in June. And yet the country has conducted more missile tests this year than in any previous year. The government is giving new luxury…

  • EU agrees rules to tame ‘Wild West’ crypto market

    Cryptocurrency companies will need a license and customer safeguards to issue and sell digital tokens in the European Union under groundbreaking new rules agreed by the bloc to tame a volatile “Wild West” market. Globally, crypto assets are largely unregulated, with national operators in the EU only required to show controls for combating money laundering. Representatives…

  • Critical ManageEngine ADAudit Plus Vulnerability Allows Network Takeover, Mass Data Exfiltration

    There is a vulnerability in Zoho’s compliance tool, ManageEngine ADAudit Plus. The tool monitors changes to Microsoft Active Directory and leaves endpoints vulnerable to unauthenticated users. The vulnerability could allow an attack to take over an entire enterprise network.  The tool offers a path into a company’s workstations, file serves, and overall servers. The tool…

  • SOHO routers used as initial point of compromise in stealth attack campaign

    An attack campaign that was undiscovered for nearly two years was exposed by Black Lotus Labs, an intelligence team in Lumen Technologies. The campaign is highly sophisticated. It targets small office or home office (SOHO) routers as a point of compromise.  The campaign works by first pushing an MIPS file compiled for SOHO routers to…

  • LockBit ransomware gang promises bounty payment for personal data

    The LockBit cybercrime group has launched a bug bounty program that promises money to people willing to share sensitive data that is exploitable in ransomware attacks. LockBit 3.0 is released, with it coming the bounty program. The bug bounty program promises $1,000 to $1 million in rewards for leaking personal information. Bug bounty programs are…

  • EU consumer groups accuse Google of privacy violations

    European consumer groups accused Google of violating privacy rights online on Thursday. The group alleged that during Google’s account sign-up process, it is unclear to users how much of their personal data would be gathered via their Google accounts. The European Consumer Organization cited deceptive and unclear design and language in the sign-on process as…

  • Erdogan warns Sweden, Finland that NATO accession can still be blocked

    At the end of the NATO summit on Thursday, Turkish President Recep Tayyip ERdogan warned that Sweden and Finland’s accession to NATO could still be blocked. Erdogan said that Sweden has promised to extradite 73 people to Turkey. These people have alleged links to the Kurdistan Workers’ Party and the US-based Fethullah Gulen, who Erdogan…

  • Kyiv says 18 killed in Odesa strikes

    Russia has launched missile strikes on residential areas in Ukraine’s Odesa region in the southwest. The strikes have killed at least 18 people, including 2 children. Moscow is denying carrying out the strikes.  The strikes occurred one day after Russia announced the removal of its troops from the Black Sea Snake Island. Russian forces have…

  • Hong Kong’s new leader sworn in as Xi hails rule by ‘patriots’

    Hong Kong’s next leader was sworn in on Friday as it marked 25 years since its return to Chinese rule. John Lee was sworn in during a ceremony that was overseen by Chinese President Xi Jinping. This trip was the first by Xi Jinping outside mainland China since the beginning of the Covid-19 pandemic.  Lee…

  • Indigenous leaders agree to call off strikes in Ecuador

    An agreement between the government and indigenous leaders in Ecuador has been signed, ending over two weeks of protests. The protestors had been blocking roads and holding rallies to demand action by the government on the rising fuel and food prices.  Some of the protests had turned violent and at least six people may have…

  • Coinbase will reportedly sell crypto user geo-location data to U.S. ICE immigrations and customs agency

    Crypto exchange Coinbase analytics program, Coinbase Tracer, will provide the U.S. Immigrations and Customs Enforcement agency (ICE) with data about crypto users, including their “historical geo tracking data” and transaction history, according to a contract obtained by watchdog group Tech Inquiry. The contract adds detail to what was previously known about the three-year deal between the…

  • NFT Platform OpenSea Joins Long List of Crypto Data Breach Victims

    OpenSea, the largest non-fungible token (NFT) marketplace by trading volume, has suffered a data breach after an employee at Customer.io, the platform’s email delivery partner, leaked user data. In a blog post on Thursday, the marketplace said that an employee of Customer.io “misused their employee access to download and share email addresses – provided by…

  • Tornado Cash Is Crypto Hackers’ Favorite Way to Cash Out, But Experts Say It Can Be Traced

    In March of this year, suspected North Korean government hackers stole more than $600 million in ether from hyped-up play-to-earn game Axie Infinity in one of the largest crypto hacks in history. The hackers then sent a part of the proceedings ($100 million at the time) through the Tornado Cash, a so-called mixing service designed…

  • North Korea is likely culprit behind $100 million crypto heist, researchers say

    North Korean state-sponsored hackers were likely the perpetrators of a hack that led to the theft of around $100 million in cryptocurrency, according to analysis from blockchain researchers. The hackers targeted Horizon, a so-called blockchain bridge developed by U.S. crypto start-up Horizon. The tool is used by crypto traders to swap tokens between different networks. There are…

  • Reuters and Google Provide Context on How Mercenary Hackers Sway Litigation Battles

    The cybersecurity community has watched the rise of businesses that take money to do inappropriate things for years. Now new expositions by inteligence and security professionals at Google and seasoned journalists at Reuters shed new light on how this activity has evolved. From Reuters: Bodyguard Carlo Pacileo was under mounting pressure. His boss, a direct…

  • Leaky Access Tokens Exposed Amazon Photos of Users

    According to new researcher, hackers who have obtained access to Amazon users’ authentication tokens could have taken the opportunity to steal or encrypt personal photos and document. Security researchers report that the Amazon Photos app for Android does not protect user access tokens properly. Due to the exposed tokens, attackers and malicious actors could access…

  • New UnRAR Vulnerability Could Lead to Zimbra Webmail Hack

    Security researchers have discovered a new flaw located in the UnRAR utility by RARlabs. The flaw can reportedly be exploited to steal emails from Zimbra email accounts and has been allocated a severity score of 7.5 out of 10 on the CVSS scale. Zimbra is an enterprise email solution that is used by roughly 200,000…

  • Nevadan Arrested for Alleged $45m Metaverse Investment Fraud

    A Los Angeles man was arrested yesterday due to suspicion of his involvement in a multimillion-dollar investment fraud scheme. The scheme reportedly tricked 10,000 victims, resulting in disastrous consequences. The man, Neil Chandran, was arrested and charged with three counts of wire fraud and two counts of engaging in monetary transactions in criminally derived property.…

  • This new malware is at the heart of the ransomware ecosystem

    A new malware called Bumblebee has been analyzed by security researchers at Symantec, leading the experts to believe that the malware has become a key component in ransomware attacks. The malware has been linked to operations perpetrated by notorious threat groups such as Conti, Mountlocker, and Quantum. The role of the malware was discovered after…

  • Russia withdraws from Ukraine’s Snake Island in Black Sea

    Russian forces have withdrawn from Ukraine’s Snake Island, Russia’s defense ministry has confirmed. This announcement has been hailed by Ukraine as a victory.  Snake Island is a strategically located islet in the Black Sea and was taken under Russian control at the beginning of the war against Ukraine. Ukraine had stepped up its attacks on…

  • Israel to get new PM as Netanyahu targets comeback

    Yair Lapid will become Israel’s interim prime minister on Friday after parliament disbanded ahead of the new elections. Mr. Lapid is the leader of a centrist party and will take over at midnight from Naftali Bennett. The two had agreed to rotate office after last year’s election when they had formed an eight-party coalition which…

  • A Major Crypto Exchange Abandons Ethereum: Is the World’s Computer Falling Behind?

    Last week, crypto derivatives exchange dYdX announced that it will be leaving the Ethereum ecosystem and launching its own blockchain within the Cosmos ecosystem. According to dYdX’s founder, a new chain will allow the platform to provide the best possible experience for its users – enabling the platform to more easily customize things like fee…