{"id":531417,"date":"2022-12-26T11:02:19","date_gmt":"2022-12-26T08:02:19","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/hackers-drain-8m-in-assets-from-bitkeep-wallets-in-latest-defi-exploit\/"},"modified":"2022-12-26T11:02:19","modified_gmt":"2022-12-26T08:02:19","slug":"hackers-drain-8m-in-assets-from-bitkeep-wallets-in-latest-defi-exploit","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/hackers-drain-8m-in-assets-from-bitkeep-wallets-in-latest-defi-exploit\/","title":{"rendered":"# Hackers drain $8M in assets from Bitkeep wallets in latest DeFi exploit"},"content":{"rendered":"<div id=\"ez-toc-container\" class=\"ez-toc-v2_0_85 counter-hierarchy ez-toc-counter ez-toc-custom ez-toc-container-direction\">\n<p class=\"ez-toc-title\" style=\"cursor:inherit\">Table of Contents<\/p>\n<label for=\"ez-toc-cssicon-toggle-item-6a326ca46174d\" class=\"ez-toc-cssicon-toggle-label\"><span class=\"\"><span class=\"eztoc-hide\" style=\"display:none;\">Toggle<\/span><span class=\"ez-toc-icon-toggle-span\"><svg style=\"fill: #dd3333;color:#dd3333\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" class=\"list-377408\" width=\"20px\" height=\"20px\" viewBox=\"0 0 24 24\" fill=\"none\"><path d=\"M6 6H4v2h2V6zm14 0H8v2h12V6zM4 11h2v2H4v-2zm16 0H8v2h12v-2zM4 16h2v2H4v-2zm16 0H8v2h12v-2z\" fill=\"currentColor\"><\/path><\/svg><svg style=\"fill: #dd3333;color:#dd3333\" class=\"arrow-unsorted-368013\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" width=\"10px\" height=\"10px\" viewBox=\"0 0 24 24\" version=\"1.2\" baseProfile=\"tiny\"><path d=\"M18.2 9.3l-6.2-6.3-6.2 6.3c-.2.2-.3.4-.3.7s.1.5.3.7c.2.2.4.3.7.3h11c.3 0 .5-.1.7-.3.2-.2.3-.5.3-.7s-.1-.5-.3-.7zM5.8 14.7l6.2 6.3 6.2-6.3c.2-.2.3-.5.3-.7s-.1-.5-.3-.7c-.2-.2-.4-.3-.7-.3h-11c-.3 0-.5.1-.7.3-.2.2-.3.5-.3.7s.1.5.3.7z\"\/><\/svg><\/span><\/span><\/label><input type=\"checkbox\"  id=\"ez-toc-cssicon-toggle-item-6a326ca46174d\" checked aria-label=\"Toggle\" \/><nav><ul class='ez-toc-list ez-toc-list-level-1 ' ><li class='ez-toc-page-1 ez-toc-heading-level-1'><a class=\"ez-toc-link ez-toc-heading-1\" href=\"https:\/\/buradabiliyorum.com\/en\/hackers-drain-8m-in-assets-from-bitkeep-wallets-in-latest-defi-exploit\/#%E2%80%9D_Hackers_drain_8M_in_assets_from_Bitkeep_wallets_in_latest_DeFi_exploit_%E2%80%9C\" >&#8221; Hackers drain $8M in assets from Bitkeep wallets in latest DeFi exploit &#8220;<\/a><\/li><\/ul><\/nav><\/div>\n<h1><span class=\"ez-toc-section\" id=\"%E2%80%9D_Hackers_drain_8M_in_assets_from_Bitkeep_wallets_in_latest_DeFi_exploit_%E2%80%9C\"><\/span>&#8221; Hackers drain $8M in assets from Bitkeep wallets in latest DeFi exploit &#8220;<span class=\"ez-toc-section-end\"><\/span><\/h1>\n<p><img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/images\/840_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjItMTIvMjkwOWVmZmEtNDY3MS00ZDVlLWE3OGUtZjc2OWVhNmEyOTAxLmpwZw==.jpg\" \/><\/p>\n<div class=\"post-content\" data-v-71d2d00b>While many are still enjoying the holiday season, hackers are hard at work, draining around $8 million in an ongoing BitKeep wallet exploit.\u00a0<\/p>\n<p>On Dec. 26, some users of the multichain crypto wallet BitKeep <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/Hk0954859Kim\/status\/1607199871613947905\">reported<\/a> that their funds were being drained and transferred while they were not using their wallets. In their official Telegram group, the BitKeep team <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.me\/bitkeep\/780791\">confirmed<\/a> that some APK package <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/download-scripts-themes-apps\/\" data-internallinksmanager029f6b8e52c=\"9\" title=\"Download Scripts &amp; Themes &amp; Apps\" target=\"_blank\" rel=\"noopener\">download<\/a>s have been hijacked by some attackers and have been installed with code that was implanted by hackers. They wrote: <\/p>\n<blockquote><p>\u201cIf your funds are stolen, the application you download or update may be an unknown version (unofficial release version) hijacked.\u201d<\/p><\/blockquote>\n<p>As the hack continues, the BitKeep team urged its users to transfer their funds to a wallet that came from official sources like Google Play and the Apple App Store. Apart from this, the team also asked community members to use newly created wallet addresses as their previous addresses may already be \u201cleaked to hackers.\u201d To help with the investigation, the BitKeep team asked affected users to <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/docs.google.com\/forms\/d\/e\/1FAIpQLSebJ7eAGduQd3E5MjhGRo6aNDQ4zYdABXqUKnVeMDrsuIIIzg\/viewform?usp=sf_link\">submit<\/a> the relevant materials through a Google form they provided. <\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\"><a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/PeckShieldAlert?src=hash&amp;ref_src=twsrc%5Etfw\">#PeckShieldAlert<\/a> <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/hashtag\/BitKeep?src=hash&amp;ref_src=twsrc%5Etfw\">#BitKeep<\/a> reported that several users&#8217; funds were stolen, the official stated that possibly due to downloading a hacked APK version<br \/>\u223c$8M worth of assets have been stolen so far, including ~4373 <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24BNB&amp;src=ctag&amp;ref_src=twsrc%5Etfw\">$BNB<\/a>, 5.4M <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24USDT&amp;src=ctag&amp;ref_src=twsrc%5Etfw\">$USDT<\/a>, 196k <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24DAI&amp;src=ctag&amp;ref_src=twsrc%5Etfw\">$DAI<\/a>, and 1233.21 <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/search?q=%24ETH&amp;src=ctag&amp;ref_src=twsrc%5Etfw\">$ETH<\/a> <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/t.co\/ZdomZGFWRO\">pic.twitter.com\/ZdomZGFWRO<\/a><\/p>\n<p>\u2014 PeckShieldAlert (@PeckShieldAlert) <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/PeckShieldAlert\/status\/1607266917894737921?ref_src=twsrc%5Etfw\">December 26, 2022<\/a><\/p><\/blockquote>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>One <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/www.oklink.com\/en\/bsc\/address\/0x36225a2721dcb124f3e185d3c177049813b279ba\">suspected<\/a> hacker wallet address already has more than $5 million in digital assets. While the amount exploited is still not final and the attackers are still currently transferring funds to multiple wallet addresses, blockchain security and analytics firm PeckShield highlighted that there\u2019s been more than $8 million in Tether (USDT), DAI (DAI), Binance Coin (BNB) and Ether (ETH) stolen so far. <\/p>\n<p><strong><em>Related: <\/em><\/strong><strong><em>DeFi flash loan hacker liquidates Defrost Finance users causing $12M loss<\/em><\/strong><\/p>\n<p>On Oct. 17, the BitKeep wallet also suffered an exploit with the attacker taking off with $1 million worth of BNB. The exploit was conducted through a service that enabled token swaps. The wallet firm suspended the service and <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/BitKeepOS\/status\/1582157619032395776\">pledged<\/a> to reimburse all the affected users. <\/p>\n<p><template data-name=\"subscription_form\" data-type=\"defi_newsletter\"><\/template><\/div>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong>\n<\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">News<\/a> articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/general\/\" target=\"_blank\" rel=\"noopener\">General category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/cointelegraph.com\/news\/hackers-drain-8m-in-assets-from-bitkeep-wallets-in-latest-defi-exploit\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8221; Hackers drain $8M in assets from Bitkeep wallets in latest DeFi exploit &#8220; While many are still enjoying the holiday season, hackers are hard at work, draining around $8 million in an ongoing BitKeep wallet exploit.\u00a0 On Dec. 26, some users of the multichain crypto wallet BitKeep reported that their funds were being drained&#8230;<\/p>\n","protected":false},"author":1,"featured_media":531418,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/images.cointelegraph.com\/cdn-cgi\/image\/format=auto,onerror=redirect,quality=90,width=1200\/https:\/\/s3.cointelegraph.com\/uploads\/2022-12\/2909effa-4671-4d5e-a78e-f769ea6a2901.jpg","fifu_image_alt":"","footnotes":""},"categories":[1],"tags":[74894,74868,74882,74879,70944],"class_list":["post-531417","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general","tag-blockchain","tag-defi","tag-hacks","tag-wallet","tag-hackers"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/531417","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=531417"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/531417\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/531418"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=531417"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=531417"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=531417"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}