Close Menu
AsiaTokenFundAsiaTokenFund
  • Home
  • Crypto News
    • Bitcoin
    • Altcoin
  • Web3
    • Blockchain
  • Trading
  • Regulations
    • Scams
  • Submit Article
  • Contact Us
  • Terms of Use
    • Privacy Policy
    • DMCA
What's Hot

Why Is Ethereum Price Going Up Today?

May 9, 2025

Top 10 PumpSwap APIs Every Solana Developer Should Know in 2025

May 9, 2025

Platinum Power Move: MTT Sports at the Heart of TOKEN2049 Dubai

May 9, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) YouTube LinkedIn
AsiaTokenFundAsiaTokenFund
ATF Capital
  • Home
  • Crypto News
    • Bitcoin
    • Altcoin
  • Web3
    • Blockchain
  • Trading
  • Regulations
    • Scams
  • Submit Article
  • Contact Us
  • Terms of Use
    • Privacy Policy
    • DMCA
AsiaTokenFundAsiaTokenFund

Crypto Hack: Lottie Player Breach Leads to Crypto Wallet Draining

0
By on October 31, 2024 Altcoin, Bitcoin, Regulations, Trading, Web3
Share
Facebook Twitter LinkedIn Pinterest Email

The post Crypto Hack: Lottie Player Breach Leads to Crypto Wallet Draining appeared first on Coinpedia Fintech News

On October 30, numerous significant crypto platforms observed an influx of dangerous popups that encouraged users to link their wallets. Information about the unauthorized access originated from a supply chain attack on the widely used Lottie Player animations library. 

This JavaScript library which is used by popular websites including the ones run by Apple, Spotify, and Disney was manipulated to include a crypto-draining popup that targeted decentralized finance (DeFi) projects like 1inch and TEN Finance.

The details of the supply chain breach

LottieFiles’ GitHub account was attacked by obtaining a senior software engineer’s authentication data after which the attackers quickly released three updates containing malware in all. 

Consequently, any site or app incorporating the hacked version of Lottie Player flooded the users with popups that led them to the said Ace Drainer crypto drainer. This approach was a departure from those previous methods, as it was essentially serving users ads through their favourite and most reliable crypto applications as opposed to sending out phishing links on other apps.

Industry response and security recommendations

When the attack was identified, LottieFiles deleted the malicious update and advised application developers to update to either the safer 2.0.4 version or the most recent 2.0.8 version of the library. Engineering vice-president at LottieFiles Jawish Hameed corroborated these changes, reimbursing that the afflicted versions had been removed from GitHub repositories. 

Cybersecurity companies such as Wiz and Blockaid have discouraged users from relaxing, saying that some crypto websites may still show the malicious popup even when using the affected library versions.

Recently there has been growing use of trusted SLPs as attackers rely on them more often. Since the instances of scams and security breaches are on the increase, the platforms are encouraged to enhance the monitoring activities and include frequently updates to protect against other related threats in future.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Why Is Ethereum Price Going Up Today?

May 9, 2025

Top 10 PumpSwap APIs Every Solana Developer Should Know in 2025

May 9, 2025

Platinum Power Move: MTT Sports at the Heart of TOKEN2049 Dubai

May 9, 2025
Leave A Reply Cancel Reply

What's New Here!

Why Is Ethereum Price Going Up Today?

May 9, 2025

Top 10 PumpSwap APIs Every Solana Developer Should Know in 2025

May 9, 2025

Platinum Power Move: MTT Sports at the Heart of TOKEN2049 Dubai

May 9, 2025

This Rising Altcoin Under $0.25 Could Explode to $50 and Overshadow Ripple’s (XRP) Entire Comeback Narrative

May 9, 2025
AsiaTokenFund
Facebook X (Twitter) LinkedIn YouTube
  • Home
  • Crypto News
    • Bitcoin
    • Altcoin
  • Web3
    • Blockchain
  • Trading
  • Regulations
    • Scams
  • Submit Article
  • Contact Us
  • Terms of Use
    • Privacy Policy
    • DMCA
© 2025 asiatokenfund.com - All Rights Reserved!

Type above and press Enter to search. Press Esc to cancel.

Ad Blocker Enabled!
Ad Blocker Enabled!
Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.