{"id":19076,"date":"2022-06-06T17:18:37","date_gmt":"2022-06-06T17:18:37","guid":{"rendered":"http:\/\/egrowonline.com\/?p=19076"},"modified":"2022-06-06T17:18:37","modified_gmt":"2022-06-06T17:18:37","slug":"certik-shares-security-tips-following-third-bayc-security-compromise-in-six-months","status":"publish","type":"post","link":"http:\/\/egrowonline.com\/?p=19076","title":{"rendered":"CertiK shares security tips following third BAYC security compromise in six months"},"content":{"rendered":"<p> <br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/images\/840_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjItMDYvYTk5MjQ0YjItZmY2NC00MWU2LTkyMjUtYzU2MDQ3NDc1ZjI1LmpwZw==.jpg\" \/><\/p>\n<div data-v-2a0745c6=\"\">\n<p>On June 4th, popular nonfungible tokens, or NFTs, project Bored Ape Yacht Club (BAYC) suffered its third security compromise this year. Nearly 142 <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/ethereum-price\" rel=\"noopener\">Ether<\/a> ($250,000) worth of NFTs was stolen after hackers <a target=\"_blank\" href=\"https:\/\/cointelegraph.com\/news\/yuga-labs-bayc-otherside-discord-groups-breached-over-145-eth-stolen\" data-amp=\"https:\/\/cointelegraph-com.cdn.ampproject.org\/c\/s\/cointelegraph.com\/news\/yuga-labs-bayc-otherside-discord-groups-breached-over-145-eth-stolen\/amp\" rel=\"noopener\">gained access<\/a> to the Discord account of a BAYC community manager and posted a message with a link to a fake website.<\/p>\n<p>The link advertised a limited-time free-NFT giveaway to users who connected their wallets, which were then drained of NFTs. During two prior occasions in April, hackers breached BAYC&#8217;s Discord and Instagram pages and managed to siphon 91 NFTs worth over $1.3 million at the time on the second attempt, via a phishing link.\u00a0<\/p>\n<p>As <a target=\"_blank\" href=\"https:\/\/www.certik.com\/resources\/blog\/5zQ2MkBTCn6dHd6wl9ZJ7i-bored-ape-yacht-club-discord-hit-with-phishing-attack\" rel=\"noopener nofollow\">told<\/a> by blockchain security firm CertiK, hackers quickly moved stolen funds to obfuscation platform Tornado Cash, making it impossible to trace any further flow of funds on the blockchain. In a statement to Cointelegraph, sources at CertiK explained that however legitimate the project may seem, &#8220;NFT holders should also be highly suspicious of anyone claiming to offer free assets, as these can often be phishing attacks.&#8221; In addition, CeriK wrote:<\/p>\n<blockquote><p>&#8220;In the case of the June 4th attack, the malicious carbon-copy site had some small differences. Firstly, there were no links to social media sites on the phishing site. There was also an added tab titled &#8220;claim free land&#8221; and specifically targeted popular NFT projects.&#8221;<\/p><\/blockquote>\n<p>As a precautionary measure, Certik recommended crypto enthusiasts look for subtle peculiarities on such sites, as they are frequently an indicator of malicious activity. &#8220;At the very least, users engaging with such giveaways should always make an effort to confirm the legitimacy of the site by comparing it with a known and confirmed site and looking for any discrepancies,&#8221; they concluded.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/cointelegraph.com\/news\/certik-shares-security-tips-following-third-bayc-security-compromise-in-six-months\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>On June 4th, popular nonfungible tokens, or NFTs, project Bored Ape Yacht Club (BAYC) suffered its third security compromise this year. Nearly 142 Ether ($250,000) worth of NFTs was stolen after hackers gained access to the Discord account of a BAYC community manager and posted a message with a link to a fake website. The [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":19077,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":"","jetpack_publicize_message":"","jetpack_publicize_feature_enabled":true,"jetpack_social_post_already_shared":true,"jetpack_social_options":{"image_generator_settings":{"template":"highway","enabled":false}}},"categories":[38],"tags":[6432,8776,1555,121,1349,2069,2196],"class_list":["post-19076","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blockchain","tag-bayc","tag-certik","tag-compromise","tag-months","tag-security","tag-shares","tag-tips"],"jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_featured_media_url":"http:\/\/egrowonline.com\/wp-content\/uploads\/2022\/06\/1200_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjItMDYvYTk5MjQ0YjItZmY2NC00MWU2LTkyMjUtYzU2MDQ3NDc1ZjI1LmpwZw.jpg","_links":{"self":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/19076","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=19076"}],"version-history":[{"count":1,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/19076\/revisions"}],"predecessor-version":[{"id":19078,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/posts\/19076\/revisions\/19078"}],"wp:featuredmedia":[{"embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=\/wp\/v2\/media\/19077"}],"wp:attachment":[{"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=19076"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=19076"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/egrowonline.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=19076"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}