Skip to main content

OpenSea, an NFT Marketplace, reports a serious email data breach

Following a data breach, OpenSea, a well-known NFT marketplace with a staggering $13 billion valuation in January, is alerting customers to Email phishing.


The largest NFT marketplace in the world said Wednesday night that a worker at Customer.io, an email vendor hired by OpenSea, used employee access to download and distribute email addresses of OpenSea's users and newsletter subscribers with an unauthorized third party.

The security compromise appears to be of enormous scope. The company stated that "if you have given your email with OpenSea in the past, you should presume you were impacted," and that it has reported the issue to law police. It also added that it is cooperating with Customer.io in an ongoing investigation.

According to data gathered by Dune Analytics, an open-source crypto analytics platform, more than 1.8 million customers have made at least one purchase using the Ethereum network on OpenSea.

According to a Customer.io official who talked with TechCrunch, "We believe this was caused by the acts of an employee who had role-specific access capabilities that were exploited." "We don't think the data of any other clients have been compromised, but we're still looking into it. The employee in question has been denied all access and suspended while we conduct our inquiry.

A target for cyberattacks has emerged among cryptocurrency firms as a result of the sector's exponential expansion and money inflow. Although decentralized, blockchain-based networks promise to offer greater security, most users today still favor centralized systems like OpenSea because of their ease.

As an illustration, in March, data breaches at BlockFi, Circle, and other companies were caused by a breach at customer-relations management software provider HubSpot. Justin Kan, a co-founder of Twitch, launched the NFT platform Fractal, but it had a rocky start in December when a scammer stole $150,000 by hacking the announcement bot.

Comments

Popular posts from this blog

Starbucks Teases Web3 Updates to Its Well-Known Rewards Program

To better engage customers, the global coffee firm is looking to digital collectibles Starbucks CEO Howard Schultz stated that Web3 will play a role in the future of the famous rewards programme. During the company's third-quarter 2022 earnings call on Tuesday, Schultz stated, "We've been working on a really fascinating new digital effort that extends on our existing industry-leading digital platform in inventive new ways, all focused on coffee and—most importantly—loyalty." According to Schultz, the new digital project will be unveiled on September 13 during the company's annual Investor Day event in Seattle. Starbucks will be able to expand on its present rewards engagement model while also introducing new techniques of emotionally connecting customers, according to Schultz, While giving a wider variety of awards and strengthening its "digital third place community" strategy. The term 'third place' refers to a community space located between ho...

This year, hackers have already cost Web3 projects billions

Flash loans have also caused significant harm, along with phishing and vulnerabilities. In the first half of 2022, hackers and con artists were able to steal more than $2 billion from Web3 projects, surpassing the total lost in 2021. While viruses, hacks, frauds, phishing, identity theft, and other social engineering attacks are all pretty popular among threat actors, a new threat that has emerged and become quite the monster is flash loan attacks, according to a report from CertiK. A flash loan is exactly what it sounds like; it's a loan that may be obtained and paid back quickly. However, considering that people can obtain huge sums of money through flash loans, these can be abused to attack certain protocols and syphon off money. Loss of millions The Beanstalk procedure experienced a similar occurrence in April 2022. Voting rights are granted to BEAN token holders in large quantities, letting them to decide on significant decisions like money withdrawals. An attacker was able to...

A Croatian Web3 firm provides NFTs with lifelong Netflix and Spotify subscriptions

Buyers would receive a digital debit card in addition to the subscription-based unique NFT, which has a cap of 10,000, and use it to pay for their membership. Developer of Web3 subscription and ticketing solutions Revuto debuted a ground-breaking Netflix and Spotify subscription strategy on Friday using a nonfungible token (NFT) method. Through its Revolution NFT, Revuto announced that it would provide a lifetime digital subscription to Netflix and Spotify. The customised subscription model would be available to a total of 10,000 users. The head of business development at Revuto, Dino Ivankovic, described how these NFTs with subscription models could develop into a different ecology. To Cointelegraph, he said: "We want to give users more discretion. By distributing or selling unused memberships to people who would utilise them, individuals will be able to make money utilising NFT technology. In the future, users may even be able to rent it." The ability to trade these subscri...