BTC $65266.0064
ETH $3170.2759
BNB $579.9567
SOL $151.5810
stETH $3170.3792
XRP $0.5307
DOGE $0.1622
TON $6.2152
ADA $0.5047
AVAX $37.5087
wstETH $3690.1011
WBTC $65350.8728
DOT $7.1858
WETH $3168.2550
TRX $0.1112
BCH $512.3933
LINK $14.9136
MATIC $0.7262
ICP $15.2978
UNI $7.8248
LTC $85.1449
DAI $1.0008
RNDR $9.1190
CAKE $2.9399
IMX $2.1935
STX $2.8650
ETC $27.9082
FDUSD $0.9998
MNT $1.2003
NEAR $6.3271
FIL $6.6129
OKB $55.7832
HBAR $0.0909
TAO $475.1056
VET $0.0423
WIF $3.0785
ATOM $8.6865
MKR $3070.6157
KAS $0.1185
FET $2.4759
GRT $0.2860
INJ $29.1371
PEPE $0.0000
USDE $0.9998
XLM $0.1150
THETA $2.2569
XMR $121.6010
BTC $65266.0064
ETH $3170.2759
BNB $579.9567
SOL $151.5810
stETH $3170.3792
XRP $0.5307
DOGE $0.1622
TON $6.2152
ADA $0.5047
AVAX $37.5087
wstETH $3690.1011
WBTC $65350.8728
DOT $7.1858
WETH $3168.2550
TRX $0.1112
BCH $512.3933
LINK $14.9136
MATIC $0.7262
ICP $15.2978
UNI $7.8248
LTC $85.1449
DAI $1.0008
RNDR $9.1190
CAKE $2.9399
IMX $2.1935
STX $2.8650
ETC $27.9082
FDUSD $0.9998
MNT $1.2003
NEAR $6.3271
FIL $6.6129
OKB $55.7832
HBAR $0.0909
TAO $475.1056
VET $0.0423
WIF $3.0785
ATOM $8.6865
MKR $3070.6157
KAS $0.1185
FET $2.4759
GRT $0.2860
INJ $29.1371
PEPE $0.0000
USDE $0.9998
XLM $0.1150
THETA $2.2569
XMR $121.6010
  • Catalog
  • Blog
  • Tor Relay
  • Jabber
  • One-Time notes
  • Temp Email
  • What is TOR?
  • We are in tor
  • Namecheap domain registrar systems hacked

    Unidentified attackers hacked into Namecheap's domain registrar's email and then spread phishing emails posing as MetaMask and DHL in an attempt to steal personal information and cryptocurrency from Namecheap customers.

    The phishing emails were sent on behalf of SendGrid (a subsidiary of Twillio), an email platform used by Namecheap to send account renewal notifications and marketing emails.

    Following numerous user complaints on Twitter, Namecheap CEO Richard Kirkendall confirmed that the account had been compromised and that they had disabled email via SendGrid while the incident was being investigated.

    He also added that the violation may be related to the disclosure of Mailgun, MailChimp and SendGrid API keys in mobile applications, which CloudSek described in a report in December.

    Phishing emails impersonate DHL and MetaMask. The DHL email contains a shipping invoice and embedded links lead to a phishing page designed to steal information about the target.

    In turn, the letter from MetaMask called for a KYC (Know Your Customer) verification in order to continue using the wallet.

    This email contains a marketing link from Namecheap that redirects the user to a phishing page posing as MetaMask. This page prompts the user to enter a "recovery passphrase" or "private key".

    Once a user provides a recovery phrase or private key, attackers can use it to import the wallet to their devices and steal all funds.

    However, Namecheap denied the hack and added that it was most likely a problem with the system the company uses for email. Also, the domain registrar assured its customers that their accounts and personal data remain safe.

    After the incident, Namecheap stopped sending all emails, including sending the two-factor authentication code, trusted device verification, and password reset emails, and launched a joint investigation with SendGrid.

    However, SendGrid stated that the Namecheap incident was not the result of a breach or compromise of SendGrid's systems, which added further confusion to the investigation into the incident. In addition, at the moment, the number of victims and the amount of stolen cryptocurrency are unknown.

    The company has recommended that all end users and organizations take a comprehensive approach to combating phishing attacks by implementing security measures such as two-factor authentication, IP access control, and the use of domain-based messaging.

    Author DeepWeb
    An unknown group is spying on telecommunications companies in the Middle East
    Pepsi hit by data breach after malware attack

    Comments 0

    Add comment