They emptied cryptocurrency ATMs using a zero-day

managed to empty millions of dollars in digital currencies from ATMs cryptocurrencies by exploiting a zero-day vulnerability. The robbery targeted ATMs sold by General Bytes, a company with many ATMs around the world. These BATMs, short for bitcoin ATMs, can be placed in stores and other businesses to allow bitcoins to be exchanged for other currencies and vice versa.

bitcoin atm

Clients connect BATMs to an application server (CAS from the crypto application server) that they can manage or, until now, that General Bytes can manage for customers.

Over the weekend, General Bytes he revealed that more than $1,5 million in bitcoins had been withdrawn from an ATM. To carry out the heist, the unknown attacker exploited an unknown vulnerability that allowed him to run a malicious Java application. He then took about 56 BTC, worth about $1,5 million. General Bytes patched the vulnerability 15 hours after learning about it, but because of the way of cryptocurrencies, the losses were unrecoverable.

The company is currently in the process of collecting data from its customers to validate all losses from the hack, conducting an internal investigation and working with authorities in an effort to track down the hacker. General Bytes reported that it performed “too many security from 2021” and that none of them detected the exploited vulnerability. The company is now in the process further assistance for the security of its BATMs.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.
ATM, bitcoin

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).