Electrum Faces Another Fake Wallet Attack, Users Reported to Lose Millions of Dollars

Bitcoin wallet Electrum faces another hack that involves fake software versions stealing users’ money.

Bitcoin (BTC) wallet service Electrum is facing an ongoing Denial-of-Service (DoS) attack on its servers, the company reported on Twitter on April 7.

According to tech news website The Next Web, the new attack has caused users to lose estimatedly millions of dollars to date, with a single person alone reportedly losing about $140,000.

The ongoing DoS attack was allegedly launched by a malicious botnet of more than 140,000 machines, and aims to steal users’ Bitcoin by referring them to fake versions of Electrum software. Citing an unnamed security researcher, the article says that the recent DoS attack is deployed on a new level and was launched about a week ago.

According to The Next Web, the attackers have even implemented their own Electrum servers hosting compromised Electrum versions in order to realize the hack. After users sync their vulnerable Electrum wallet with a malicious server, they are directed to “update” their client with a hacked version, which eventually leads to an immediate loss of funds that were contained in the old versions, the report explains.

Thomas Voegtlin, lead Electrum developer, reportedly said that the firm expects to resolve the matter in the coming hours or days. He stressed that users that are at the highest risk are those who downloaded Electrum a long time ago and have not updated the software since then.

Accordingly, Electrum’s website says that the software versions older than 3.3 can no longer connect to public servers and must be upgraded, which is a measure to prevent user exposure to phishing messages. The website also urges users to not download Electrum software from any other source than electrum.org.

In the recent announcement on Twitter, Electrum recommended its users to disable the auto-connect option and select their server manually, while the company is working on a more robust version of the Electrum server in order to fix the issue.

In December 2018, Electrum faced a similar attack that led to a loss of about $937,000 worth in Bitcoin. As reported by Cointelegraph, the attack consisted of building a fake version of the wallet that tricks users into providing password information.

Recently, online video distribution giant YouTube was reported to erroneously run a malicious advertisement for Electrum wallet, which again contained a malware version of the software.

Last week, the World Economic Forum released a blockchain cybersecurity report claiming that most data breaches are caused rather by a lack of implemented security measures instead of an increased skill level of hackers.

COMMENTS

By Readers$type=blogging$cate=2$count=6

Name

Analysis,498,News,2832,Press Releases,338,Sponsored,137,
ltr
item
CryptoNomus: Electrum Faces Another Fake Wallet Attack, Users Reported to Lose Millions of Dollars
Electrum Faces Another Fake Wallet Attack, Users Reported to Lose Millions of Dollars
https://images.cointelegraph.com/images/528_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS9zdG9yYWdlL3VwbG9hZHMvdmlldy84NTE5NGQ1MWIwNTg3ZGQ2NzE1NTQ3NmRhMTE2YmE3OC5qcGc=.jpg
CryptoNomus
https://www.cryptonom.us/2019/04/electrum-faces-another-fake-wallet.html
https://www.cryptonom.us/
https://www.cryptonom.us/
https://www.cryptonom.us/2019/04/electrum-faces-another-fake-wallet.html
true
4884201149675661183
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share. STEP 2: Click the link you shared to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy