• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer
  • About us
  • Write for us
  • Terms and Conditions
  • Privacy Policy
  • Disclaimer
  • Contact
  • All Posts
  • Advertise

TronWeekly

Crypto World News

  • Home
  • Education
    • Best TRON Wallets
    • Beginner’s guide to TRON
  • Opinion
    • Tron Tokens
    • Market Analysis
  • Industry
    • Tron Exchange
    • Project Review
  • Press Release
  • Advertise
  • About us
    • The Team
    • Editorial Policy
    • Write for us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • Contact
You are here: Home / News / Cyber Security / 3Commas: API Keys Leak Lead To $22M Loss
3Commas: API Keys Leak Lead To $22M Loss

3Commas: API Keys Leak Lead To $22M Loss

December 29, 2022 by Lipika Deka

Users of the trading platform 3Commas got the biggest fright of their lives when an anonymous Twitter user illegally gained access to roughly 100,000 API keys and published them online. 

3Commas at the beginning pin the blame on a phishing attack that triggered the user’s data leak but recently confessed that the source was an API leak.

The revelation was brought by a cohort of traders who disclosed over $20 million worth of crypto had been pilfered through compromised API keys.

These keys were then exploited to execute trades on exchanges such as Binance, KuCoin, and Coinbase without their consent.

From maintaining that it had no security issues, co-founder Yuriy Sorokin ultimately acknowledged them when he tweeted,

“We saw the hacker’s message and can confirm that the data in the files is true… We are sorry that this has gotten so far and will continue to be transparent in our communications around the situation.”

For the uninitiated, users can connect their various cryptocurrency exchange accounts, including those held on Binance, to automated trading tools using the 3Commas platform.

Application programming interfaces [APIs] are standardized procedures that let various software components connect with one another and carry out activities.

The idea is that people don’t have to put in the effort to think about their professions. Instead, everything is instantaneous and automatic thanks to programming.

In his tweet, 3Commas’ Sorokin noted that he and his firm “did everything that we could to investigate an inside job, as it was always a possible scenario and on our watch list, but proof of an inside job was not found.”

Before 3Commas published its announcement, Binance CEO Changpeng Zhao warned customers on Wednesday afternoon that they should “immediately disable any API keys you may have previously entered into 3Commas [from any exchange].”

3Commas’s Admission After Binance’s CZ Warning

Following an incident on December 9 in which Binance terminated the account of a user who had complained about losing money the day before, CZ made the admission.

A leaked API key associated with 3Commas, according to that user, was used “to make trades on low cap coins to push up the price to make a profit.” Binance declined to pay the user back.

According to a tweet from CZ, the loss cannot be verified, and if the business compensated for it, “we will just be paying for users to lose their API credentials.”

Filed Under: Cyber Security, News Tagged With: 3Commas, API Keys, Binance

Primary Sidebar

Recent Posts

  • Shiba Inu Surges To Top 10 AltRank™ Coins With Growing Transactions & Whale Activity April 1, 2023
  • Stellar (XLM) Skyrockets 22% With Coinme’s USDC Integration April 1, 2023
  • Unstoppable Progress: Coinbase CEO Rejects Calls For Pause On ChatGPT Upgrades April 1, 2023
  • Bitcoin’s Surge & ETH’s Consolidation Amidst Upcoming US Recession: Insights March 31, 2023
  • Ethereum’s Shapella Upgrade Nears Completion: Latest Updates & Proposals March 31, 2023

Footer

News

  • Altcoin News
  • Bitcoin News
  • Blockchain
  • Tron News
  • World

Digest

  • Meet the Founder
  • Price Winning Article
  • DeFi
  • Cyber Security
  • Crypto Scam

Industry

  • Project Review
  • Technology
  • Fintech
  • Tron Exchange
  • New in Town

Tron Universe

  • Event and Tron Parties
  • New in Town
  • Tron Tokens

Follow Us

Subscribe US

Copyright © 2023 · Tron Weekly. All Rights Reserved. NOTE: Tron Weekly is an independent crypto news site that adheres to the strict journalism policy anchored on transparency, trust, and objectivity, we have no affiliation with the TRON Foundation, its founder Justin Sun or any other cryptocurrency firm.