Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Cybercrime

$200 Million in Cryptocurrency Stolen in Mixin Network Hack

Mixin Network suspends deposits and withdrawals after hackers steal $200 million in digital assets from its centralized database.

Peer-to-peer digital asset transactional network Mixin Network has suspended deposits and withdrawals after hackers stole $200 million.

The Hong Kong-based platform uses a cross-chain transfer protocol that enables cheaper and more efficient transfers, including via phone numbers, but relies on a centralized database, which was targeted by the attackers.

“In the early morning of September 23, 2023 Hong Kong time, the database of Mixin Network’s cloud service provider was attacked by hackers, resulting in the loss of some assets on the mainnet,” the platform announced.

Mixin Network also said that it has contacted Google and blockchain security firm SlowMist to aid with the investigation into the attack, and that deposit and withdrawal services are suspended.

“After discussion and consensus among all nodes, these services will be reopened once the vulnerabilities are confirmed and fixed. During this period, transfers are not affected,” Mixin announced.

The platform says that roughly $200 million worth of digital assets were drained from its mainnet, most of which represented Bitcoin.

According to blockchain trackers, however, the hackers stole at least $90 million in Ethereum and more than $20 million in Tether.

In a live briefing on Monday, Mixin founder Xiaodong Feng said that the network is currently considering compensating users for up to 50%, with the remaining to be paid in bond tokens that Mixin will repurchase using future profits.

Advertisement. Scroll to continue reading.

Founded in 2017, the Mixin network had 26 full nodes at the end of July 2023, supporting 48 public blockchains. The platform said at the time that the top 100 assets on the network had a market value of $1.1 billion and that it had a user base of one million.

The Mixin Network incident is the largest crypto heist disclosed this year, after North Korean hackers stole at least $377 million worth of cryptocurrency from companies such as Atomic Wallet, Alphapo, CoinsPaid, Stake.com, and CoinEx.

Related: Google Feature Blamed for Retool Breach That Led to Cryptocurrency Firm Hacks

Related: 3 Cryptocurrency Firms Suffer Data Breach After Kroll SIM Swapping Attack

Related: FBI Finds 1,580 Bitcoin in Crypto Wallets Linked to North Korean Hackers

Written By

Ionut Arghire is an international correspondent for SecurityWeek.

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Passwordless authentication firm Hawcx has appointed Lakshmi Sharma as Chief Product Officer.

Matt Hartley has been named Chief Revenue Officer at autonomous security solutions provider Horizon3.ai.

Trustwave has announced the appointment of Keith Ibarguen as Senior Vice President of Engineering.

More People On The Move

Expert Insights

Related Content

Cybercrime

A recently disclosed vBulletin vulnerability, which had a zero-day status for roughly two days last week, was exploited in a hacker attack targeting the...

Cybercrime

The changing nature of what we still generally call ransomware will continue through 2023, driven by three primary conditions.

Cybercrime

As it evolves, web3 will contain and increase all the security issues of web2 – and perhaps add a few more.

Cybercrime

Luxury retailer Neiman Marcus Group informed some customers last week that their online accounts had been breached by hackers.

Cybercrime

Zendesk is informing customers about a data breach that started with an SMS phishing campaign targeting the company’s employees.

Cybercrime

Patch Tuesday: Microsoft calls attention to a series of zero-day remote code execution attacks hitting its Office productivity suite.

Artificial Intelligence

The release of OpenAI’s ChatGPT in late 2022 has demonstrated the potential of AI for both good and bad.

Cybercrime

Satellite TV giant Dish Network confirmed that a recent outage was the result of a cyberattack and admitted that data was stolen.