Connect with us
DAPA Banner

Crypto World

How a fake crypto app bypassed Apple’s security

Published

on

How a fake crypto app bypassed Apple's security

A fake version of Ledger Live distributed via Apple’s App Store has been linked to at least $9.5 million in crypto theft, with victims now coming forward describing devastating losses, including entire retirement funds wiped out “in an instant.”

One victim, posting on X under the handle @glove, said he lost 5.9 BTC – his entire savings accumulated over a decade – after downloading what he believed was the official Ledger app while setting up a new computer.

“I lost my retirement fund in a hack/scam… All my BTC gone in an instant,” he wrote.

Blockchain investigator ZachXBT later traced the stolen 5.92 BTC, showing it was rapidly funneled through a series of transactions into KuCoin deposit addresses, consistent with a broader laundering pattern identified across the incident.

Advertisement

Apple and KuCoin did not immediately respond to requests for comment.

$9.5 million stolen across chains

X user @glove wasn’t the only victim. The phishing campaign, active between April 7 and April 13, impacted more than 50 suspected victims across Bitcoin, Ethereum-compatible networks, Tron, Solana and XRP.

Three of the largest victims lost seven-figure sums, with $3.23 million in USDT being stolen on April 9, $2.08 million of USDC on April 11 and $1.95 million in BTC, ETH and stETH being drained on April 8.

Cases like this typically prompt victims to enter their recovery phrase on an app, giving attackers full access to their wallets.

Advertisement

Laundering via KuCoin and ‘AudiA6’

Stolen funds were routed through more than 150 KuCoin deposit addresses and tied to “AudiA6,” a centralized crypto mixing service known for charging high fees to obfuscate illicit flows.

The reliance on a centralized exchange as a laundering hub is notable given KuCoin’s recent regulatory troubles. The exchange was barred from onboarding new EU users by Austrian regulators in February 2026, just months after receiving a MiCA license, and previously paid over $300 million to U.S. authorities to settle anti-money laundering violations in 2025.

App Store scrutiny

Apple removed the fake Ledger Live app from the App Store, but questions remain about how it passed review and how long it was available.

The scale of losses, coupled with the fact that the app was distributed through Apple’s official marketplace, could expose the company to legal risk, with ZachXBT suggesting the incident may form the basis for a class-action lawsuit.

Advertisement

Rising threat

The incident highlights a persistent threat that has marred the crypto industry over the past few years. In 2025 crypto investors lost around $17 billion to hacks and scams, with social engineering and phishing tactics leading the way in terms of attack vectors.

For victims, the damage is already done.

“I worked ten years for this,” the victim wrote. “Be careful out there.”

Source link

Advertisement
Continue Reading
Click to comment

You must be logged in to post a comment Login

Leave a Reply

Crypto World

Popular DeFi platform CoW Swap warns users to stay away from its site after security breach

Published

on

Blockchain sleuth ZachXBT alleges Axiom employee conducted insider trading

CoW Swap, a decentralized trading interface, said Tuesday it temporarily halted its services after detecting a domain name system (DNS) hijacking incident affecting its website, underscoring ongoing security risks at the front-end layer of DeFi platforms.

In a post on X, the team said the attack occurred at 14:54 UTC and warned users to avoid interacting with its interface until further notice. While the protocol’s underlying infrastructure, including its backend and APIs, was not directly compromised, both were paused “as a precaution” as the team worked to resolve the issue.

DNS hijacking allows attackers to redirect users from a legitimate domain to a malicious lookalike site, often with the goal of draining crypto wallets or harvesting private data. The attack vector has become a persistent weak point in decentralized finance, where users typically rely on web-based interfaces to access otherwise secure smart contracts.

CoW Swap operates as a decentralized exchange aggregator, sourcing liquidity across venues and using a mechanism known as “Coincidence of Wants” to match trades directly between users or batch them for more efficient execution. Orders are handled by competing “solvers” that optimize trade outcomes, a design intended to reduce slippage and limit exposure to maximal extractable value (MEV).

Advertisement

MEV is a practice on the blockchain where bots reorder transactions to extract profit at users’ expense, making mitigation key to ensuring fair pricing and protecting traders.

The platform is governed by CoW DAO, a decentralized autonomous organization spun out of the Gnosis ecosystem. The project has positioned itself as a user-protective alternative in DeFi trading, emphasizing execution quality and fairer trading outcomes.

“We are now actively working to resolve the situation. Please continue to refrain from using swap dot cow dot fi until we confirm that it is safe to use,” the team wrote on X.

Read more: DEX Aggregator CoW Swap Targets 33% Trading Boost With Collaboration Feature, More Rewards

Advertisement

Source link

Continue Reading

Crypto World

Draper Says Bitcoin Price Could Reach $250K by 2027

Published

on

Brian Armstrong's Bold Prediction: AI Agents Will Soon Dominate Global Financial

TLDR

  • Tim Draper expects the Bitcoin price to reach $250,000 within the next 18 months.
  • He links his forecast to growing global adoption and weakening fiat currencies.
  • Draper first attempted to acquire Bitcoin when it traded at $4 through a mining partnership.
  • He later lost his Bitcoin holdings during the collapse of Mt. Gox exchange.
  • In 2014, he purchased Bitcoin at $632 per coin during a US Marshals auction.

Venture capitalist Tim Draper has renewed his projection that Bitcoin will reach $250,000 within 18 months. He shared the forecast in a recent public statement and linked it to rising adoption trends. He also cited the weakening of fiat currencies as a driver of future demand.

Bitcoin Price Outlook and Long-Term Target

Draper stated that he expects the Bitcoin price to climb to $250,000 within 18 months. He said growing usage will fuel the projected rise. He added that weakening fiat currencies will also boost demand.

He said, “I have reason to believe that Bitcoin will reach $250k in 18 months.” He linked his view to broader use cases across global markets. He maintained that expanding adoption will sustain the rally.

Draper acknowledged that some past forecasts did not meet timelines. However, he said he continues to stand by his current target. He stressed that he bases his outlook on adoption data and currency trends.

He previously predicted that Bitcoin would reach $10,000 within three years. He made that call shortly after buying confiscated coins in 2014. The asset later met that target within the projected period.

Advertisement

Early Bitcoin Mining and Mt. Gox Losses

Draper said he first attempted to acquire Bitcoin when it traded at $4. He partnered with Peter Viscenne to mine the cryptocurrency. They ordered mining chips from hardware maker Butterfly Labs.

However, Draper alleged that Butterfly Labs used the chips to mine for itself. He said the company delayed shipping the hardware. By the time they received the equipment, Bitcoin traded above $30.

Draper later lost his holdings during the collapse of Mt. Gox. The exchange served as the leading Bitcoin trading platform at that time. Despite the failure, the Bitcoin price remained resilient.

He said, “It turned out that Bitcoin was being used for remitting money.” He added that people used it to pay unbanked employees and create new economies. He said these use cases supported price stability.

Advertisement

In 2014, Draper purchased Bitcoin through a US Marshals auction. Authorities had seized the coins from the Silk Road marketplace. He paid $632 per coin during that auction process.

Shortly after the purchase, Draper predicted a $10,000 Bitcoin price within three years. A television host reacted with confusion during the interview. The asset later reached that level within the timeframe.

Draper admitted that later price targets were less accurate. However, he reiterated confidence in his current forecast. He again pointed to adoption growth and fiat currency erosion as key factors.

Advertisement

Source link

Continue Reading

Crypto World

Rakuten integrates XRP into payments network for millions of users in Japan

Published

on

Rakuten integrates XRP into payments network for millions of users in Japan

Japan’s e-commerce giant Rakuten is adding XRP to its Rakuten Pay app, allowing its 44 million users to use Ripple’s cryptocurrency as a payment method with more than 5 million merchant locations across the country.

In an announcement via X on Tuesday, Tatsuya Kohrogi, Ripple’s senior ecosystem growth manager, said Rakuten is also enabling its users to spot trade XRP via the app. He said they will also be able to purchase XRP with Rakuten points and hold it in their Rakuten Wallet.

The move ties XRP into one of Japan’s largest loyalty systems, where more than 3 trillion points—worth roughly $23 billion—are in circulation and can now be converted into XRP, Kohrogi said.

“Starting April 15, Rakuten Wallet will launch XRP as both a listed asset and a payment method, meaning users can buy XRP directly with Rakuten Points and charge their Rakuten Cash with XRP to spend it at over 5 million merchant locations across Japan,” Kohrogi said, calling the development “one of the most significant XRP milestones.”

Advertisement

The Ripple executive also said Rakuten is one of Japan’s most trusted consumer brands. “The fact that XRP is now embedded into its loyalty and payments infrastructure is a powerful signal of where digital asset adoption is heading,” he added.

Rakuten began allowing users to spend bitcoin, ether and bitcoin cash in 2023. In 2021, the Japanese e-commerce giant announced the launch of its own Rakuten Coin, a token it said would be used as part of its points-based loyalty rewards system.

Source link

Advertisement
Continue Reading

Crypto World

DAO Behind CoW Swap Urges Users to Stay off Platform after ‘Hijacking‘

Published

on

DAO, DeFi, Trading, DEX

The decentralized exchange aggregator said users should refrain from visiting its website after a frontend exploit.

Decentralized exchange aggregator CoW Swap is calling on users to refrain from using its website after an unknown party hijacked its domain.

In a Tuesday X post, the decentralized autonomous organization (DAO) behind CoW Swap said its website had experienced a “DNS [Domain Name System] hijacking,” leading to a pause of its backend and APIs. The frontend exploit, through the website http://swap.cow.fi, was ongoing at the time of publication.

Advertisement

“We are now actively working to resolve the situation,” said CoW Swap. “Please continue to refrain from using swap dot cow dot fi until we confirm that it is safe to use.”

DAO, DeFi, Trading, DEX
Source: CoW Swap

DNS attacks like the one CoW Swap reported are not uncommon among crypto and blockchain companies where user funds are at risk from phishing attempts. Decentralized exchange Balancer reported a domain attack in 2023, while Curve Finance said it has experienced multiple DNS hijackings.

Related: Firestorm erupts in Aave governance forum over CoW Swap fees

The price of the CoW Protocol’s COW token dropped more than 3% amid news of the domain hijacking, to $0.2159 from $0.2229.

Web3 hacks, driven by phishing, resulted in a half billion dollars in losses in Q1 2026

Blockchain security company Hacken reported on Tuesday that Web3 projects lost $482 million to hacks and scams in the first quarter of 2026. According to Hacken, there were 44 incidents over Q1 2026, most of which were phishing and social engineering attacks.

Advertisement

Magazine: Are DeFi devs liable for the illegal activity of others on their platforms?