Xtra News
  • Home
  • News
    • Africa
    • Metro
    • Nigeria
    • Politics
    • World
  • Business
    • Economy
    • Energy
    • Finance
    • Markets
    • Transport
  • Culture
    • Art
    • Film
    • Music
    • People
    • TV
  • Sport
    • Athletics
    • Basketball
    • Boxing
    • Football
    • Tennis
  • Technology
    • Cybersecurity
    • Internet
    • Mobile
    • Science
    • Social
  • Opinion
  • Multimedia
    • Photo
    • Video
Cryptocurrency

Thief steals $1 million of Bored Ape Yacht Club NFTs with Instagram hack

April 25, 2022
Agency
A hacker has stolen NFTs worth millions of dollars after compromising the official Instagram account for Bored Ape Yacht Club (BAYC) and using it to post a phishing link that transferred tokens out of users’ crypto wallets.

A hacker has stolen NFTs worth millions of dollars after compromising the official Instagram account for Bored Ape Yacht Club (BAYC) and using it to post a phishing link that transferred tokens out of users’ crypto wallets.

The hack was disclosed on Twitter by BAYC just before 10AM ET on Monday morning. “There is no mint going on today,” the Tweet read. “It looks like BAYC Instagram was hacked.”

🚨There is no mint going on today. It looks like BAYC Instagram was hacked. Do not mint anything, click links, or link your wallet to anything.

— Bored Ape Yacht Club (@BoredApeYC) April 25, 2022

Another tweet from a user unaffiliated with the project claimed to show the image that had been posted from the BAYC account, promoting an “airdrop” — essentially a free token giveaway — for any users who connected their MetaMask wallets.

Unfortunately, BAYC’s warning came too late for a number of holders of the extremely expensive Bored Ape NFTs, along with many other valuable NFTs stolen in the hack. A screenshot posted by one Twitter user showed an OpenSea page for the hacker’s account receiving more than a dozen NFTs from the Bored Ape, Mutant Ape, and Bored Ape Kennel Club projects — all presumably taken from users who connected their wallets after clicking on the phishing link.

The profile page tied to the hacker’s wallet address was no longer visible on OpenSea at time of publication. OpenSea head of communications Allie Mack confirmed to The Verge that the hacker’s account had been banned on the platform, as OpenSea’s terms of service prohibited fraudulently obtaining items or otherwise taking them without authorization.

Read Also:  Bitcoin holders who bought at $20,000 refuse to sell BTC at all-time highs

But given the decentralized nature of NFT, the contents of the hacker’s wallet can still be viewed on other platforms. Seen through NFT platform Rarible, the wallet contained 134 NFTs, among them four Bored Apes and many others items from projects made by Yuga Labs — the creators of BAYC — such as Mutant Apes and Bored Ape Kennel Club.

Independently, each of the stolen Apes is worth well into six figures based on the most recent sale price. The lowest priced Ape, #7203, last sold four months ago for 47.9 ETH — equivalent to $138,000 at current exchange price. Ape #6778 was last sold for 88.88 ETH ($256,200), while Ape #6178 sold for 90 ETH or $259,400. And Bored Ape #6623 was the most valuable of all, sold three months ago for 123 ETH ($354,500) — meaning that collectively the total value of the four stolen Apes is just over $1 million.

It is not known yet how the hacker was able to compromise the project’s Instagram account. In a statement sent to The Verge by email and also posted on Twitter, Yuga Labs said that two-factor authentication was enabled at the time of the attack and that the security of the Instagram account followed best practices. Yuga Labs also said that the team was actively working to establish contact with affected users.

Read Also:  Bitcoin ‘bear market’ may take BTC price to $25,000 – trader

Though NFTs can be bought and sold for huge sums of money, they are often held in smartphone wallets rather than more secure environments because the popular decentralized crypto wallet application MetaMask only supports NFT display on mobile. It also encourages users to manage NFTs through the smartphone app rather than the browser-based extension. This means that the use of Instagram to deliver a phishing link is an effective way to steal NFTs, as the phishing link is more likely to be interacted with from a mobile wallet.

While security advice in the crypto space suggests NFT holders never connect their wallet to an unknown or untrusted third party, the fact that the phishing link was sent through the official BAYC social media account likely convinced the victims that it was legitimate, raising difficult questions about where exactly the fault lies.

Yuga Labs did not respond to an email from The Verge asking whether victims of the hack would be compensated by the project for their losses.

Get more stories like this on Facebook, Twitter and Telegram
Account Anything Ape April Attack Authorization Communications Compromise Contact Contents Creators Crypto Space Dollars Dozen Email Environments Equivalent ETH Fact Fault Figures Hack Hacker holders Image Instagram Instagram Account Interacted Items Link Losses Media Account Millions Monday Morning Money Months Nature NFT NFTs Number Official Party Platform Platforms Post Practices Project Projects Publication Questions Screenshot security Service Show Statement Sums TEAM Terms TIME Today Tokens Tweet Twitter Twitter User Use User Users Value Verge Victims Wallet Wallets Warning WAY
    FacebookTwitterEmailLinkedInWhatsApp
Yemi Osinbajo2023: It’ll be great betrayal, injustice if I don’t contest – VP Osinbajo
U.S. Secretary of State Antony Blinken and U.S. Defense Secretary Lloyd Austin attend a meeting with Ukraine's President Volodymyr Zelenskiy, as Russia's attack on Ukraine continues, in Kyiv, Ukraine April 24, 2022. Ukrainian Presidential Press Service/Handout via REUTERSU.S. to reopen embassy in Ukraine soon, pledges new military aid

Related Stories

David Schwartz, the chief technical officer of Ripple, didn’t take Ethereum co-founder Vitalik Buterin’s dig on XRP very kindly. In a discussion that started around the recent $30,000 limit imposed by the Ontario crypto exchange on altcoins purchases barring Ether (ETH), Litecoin (LTC) and Bitcoin Cash (BCH).
Cryptocurrency

Ripple CTO lashes back at Vitalik Buterin for his dig...

FILE PHOTO: Illustration shows Celsius Network logo and representations of cryptocurrencies
Cryptocurrency

Court filings reveal crypto lender Celsius will run...

Governor Babajide Sanwo-Olu of Lagos State says residents of the state consume about N4.5 billion worth of food daily just as he reiterated commitment to food security.
Cryptocurrency

Lagos governor seeks adoption of blockchain technology

Cryptocurrency venture firm Dragonfly has acquired a digital asset-focused investment fund for an undisclosed amount — a move that managing partner Haseeb Qureshi said mirrors the broad consolidation trend underway in the industry.
Cryptocurrency

Bloomberg: Crypto-focused venture firm Dragonfly...

After more than a year of efforts to acquire the digital asset custodian BitGo, Mike Novogratz’s cryptocurrency investment firm Galaxy Digital has decided to drop the acquisition.
Cryptocurrency

Galaxy Digital terminates BitGo acquisition, citing...

Cryptocurrency exchange Zipmex has gotten a chance to sort out liquidity issues as a court in Singapore has granted the firm with more than three months of creditor protection.
Cryptocurrency

Crypto exchange Zipmex gets three month protection in...

On late Wednesday night, the popular social platform Reddit announced that it has started the process of making the company public. The company filed a confidential S-1 with the Securities and Exchange Commission (SEC) informing them of their intentions for going public.
Cryptocurrency

Reddit partners with FTX to help users manage...

FILE PHOTO: Representation of cryptocurrency Bitcoin is seen in this illustration
Cryptocurrency

Bitcoin hits $25,000 as bearish voices call BTC price...

Authorities in the Netherlands have arrested a developer that is suspected to be involved in money laundering through the crypto mixing service Tornado Cash.
Cryptocurrency

Dutch authorities arrest suspected Tornado Cash...

The US Department of the Treasury has added the Tornado Cash crypto mixer to a list of sanctioned organizations, barring all US citizens from interacting with it and requiring that US assets belonging to Tornado Cash be reported to the Office of Foreign Assets Control.
Cryptocurrency

Money laundering: US Treasury bans Tornado Cash mixer

Recent Stories

  • An Ikeja Domestic Violence and Sexual Offences Court, on Thursday, sentenced a man, Michake Ogbar, to life imprisonment for defiling and raping his three daughters aged 10 years, 20 years and 24 years.
    Man pleads guilty to internet fraud, gets one year...
  • New Zealand Bodies In Suitcases
    Remains of two children found in auctioned suitcases...
  • The Olu of Warri, Ogiame Atuwatse III has lamented over the level of youth unemployment in the country, saying it is worse than a time bomb waiting to explode.
    Ifeanyi Okowa felicitates with Warri monarch on...
  • FILES-RWANDA-UN-GENOCIDE-TRIAL
    Hague trial set for Rwanda genocide accused Felicien...
  • The Academic Staff Union of Universities, (ASUU) Federal University of Technology, Akure, (FUTA) chapter said it was still reviewing the processes leading to the appointment of Professor Adenike Oladiji, as the eighth substantive Vice-chancellor.
    Strike: Nigerian government not serious – ASUU
  • The Minister of Education, Adamu Adamu, has approved the establishment of Advanced Level (A-Level) certificates data bank in the country in order to curb the rising cases of fake certificates.
    Minister: ASUU must compensate students for wasted...

Trending Stories

  • Presidency: Yusuf Buhari impersonated on Instagram
  • Governor Adegboyega Oyetola of Osun on Sunday mourned the demise of a former Military Administrator in the state, Anthony Obi, describing his death as painful.
    Osun governor, speaker mourn deceased ex-MILAD
  • The highly infectious variant of the novel coronavirus that is predominant in the United Kingdom may be up to 70 percent more deadly than previous strains, according to a report by the government’s scientific advisers.
    Nigeria records 18 new coronavirus infections
  • The Governorship Election Petition Tribunal in Uyo, on Monday, ordered INEC to allow the All Progressive Congress (APC) candidate, Mr Nsima Ekere, to inspect all election materials used during the March 9 Governorship Election.
    INEC: Dino Melaye, Smart Adeyemi senatorial election...
  • Gov. Gboyega Oyetola of Osun, has said All Progressives Congress, APC would replicate the of its candidate in last Saturday’s Ekiti governorship election in the 16 July governorship election in Osun State.
    Gboyega Oyetola: APC will replicate Ekiti victory in...
  • Courts
    UK court sentences Nigerian doctor three years for...

Copyright © 2022. Xtra.net

  • About
  • Advertise
  • Contact
  • Privacy
  • Terms
  • Twitter
  • Facebook
  • Instagram
  • Telegram
  • RSS