Bullish
Approximately 750,000 USD in BTC Stolen via Google Account Compromise
01:59
A long-term holder lost $750K in BTC after hackers used a compromised Google account to bypass 2FA and drain funds from an Australian exchange.
Woofun AI reports that a long-term BTC holder suffered a loss of all assets following a sophisticated account takeover. Hackers had infiltrated the victim's Google account for roughly three months, securing access to email credentials and cloud-stored Google Authenticator verification codes. The attackers waited for the holder to deposit BTC into a major Australian exchange, where the platform mistakenly identified them as the legitimate owner and approved the withdrawal. The asset drain was completed within less than 12 hours, with the holder notified of the approval at 3 a.m.
The incident highlights critical vulnerabilities in cloud-based two-factor authentication backups. Security recommendations emphasize disabling cloud synchronization for Google Authenticator and adopting hardware security keys like YubiKey, utilizing a dual-key setup to ensure redundancy against physical loss.
WOOFUN AI
Impact Assessment · Quick Read
This breach underscores the persistent risk of social engineering and cloud-synced 2FA for high-net-worth crypto holders. The three-month潜伏 period suggests attackers are increasingly patient, waiting for optimal liquidity moments rather than immediate theft. It may accelerate institutional and retail adoption of hardware security keys as a standard security protocol.
Generated by WOOFUN AI · For reference only, not investment advice
Comments
No comments yet.