• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

TronWeekly

Crypto World News

  • Home
  • Education
    • Best TRON Wallets
    • Beginner’s guide to TRON
  • Opinion
    • Tron Tokens
    • Market Analysis
  • Industry
    • Tron Exchange
    • Project Review
  • Press Release
  • Advertise
  • About us
    • The Team
    • Editorial Policy
    • Write for us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • Contact
You are here: Home / News / Crypto Heist Of $15M Exposes Google Authenticator Vulnerability
crypto

Crypto Heist Of $15M Exposes Google Authenticator Vulnerability

September 19, 2023 by Mohammad Ali

In a shocking turn of events, the renowned Chinese crypto blogger and journalist Colin Wu has revealed intricate details surrounding a recent crypto hack that has sent shockwaves through the digital currency industry. This audacious cyber attack targeted Fortress Trust, a prominent crypto custodian recently acquired by the blockchain giant Ripple.

Retool has released details of a hack involving 27 crypto accounts, including how $15 million in cryptocurrency was stolen from Fortress Trust. Google Authenticator cloud sync function was the reason, the attacker took control of the Google account, thereby controlling the data…

— Wu Blockchain (@WuBlockchain) September 18, 2023

The breach, unveiled through an investigation by software development firm Retool and reported by the hacker news, exposed a significant vulnerability in Fortress Trust’s security infrastructure. According to Colin Wu, the Achilles’ heel exploited by the hackers was linked to the additional security layer provided by a major authentication app.

Retool’s findings indicate that cybercriminals managed to infiltrate a staggering 27 accounts within the Fortress Trust crypto custody company. Their success hinged on a meticulously orchestrated SMS-based social engineering attack.

Crypto Security Alert Novel Attack Exposed in Google Sync

Fortress Trust confessed that the hackers leveraged a Google account cloud synchronization feature introduced earlier in the year. This San Francisco-based company, now under Ripple’s ownership, described this feature as a “dark pattern” that exacerbated the breach. Snir Kodesh, the head of engineering at Retool, referred to this form of synchronization as a “novel attack vector.”

Kodesh explained that the multi-factor authentication, once considered a robust defense, had been reduced to a single factor due to a critical update by the internet search giant in April. The attack unfolded on August 27, coinciding with Fortress Trust’s migration of logins to Okta.

The hackers cunningly posed as Fortress Trust IT team members, launching their SMS-phishing campaign. They lured unsuspecting recipients into following a seemingly legitimate link to resolve a payroll-related issue.

One unfortunate staff member took the bait, landing on a counterfeit webpage where they unwittingly divulged their login credentials. The hackers then took their deception to the next level by impersonating an IT team member, utilizing deep fake technology to alter their voice. They coerced the employee into revealing the multi-factor authentication (MFA) code.

Armed with this pivotal code, the hackers seamlessly integrated their device into the victim’s Okta account, enabling them to generate their personalized Multi-Factor Authentication (MFA) codes autonomously. This cunning maneuver granted them unmitigated access to all 27 compromised accounts.

In a final blow, the perpetrators altered the email addresses and passwords associated with these accounts, resulting in a staggering loss of $15 million worth of cryptocurrency assets. The methodology employed in this attack resembles the tactics used by a notorious hacker known as Scattered Spider, or UNC3944, renowned for their expertise in phishing attacks.

Related Reading:| Crypto Scams: NAB Implements Measures To Safeguard Customers

Filed Under: News Tagged With: Crypto, crypto heist, Cryptocurrency, Google Authenticator, Retool, Wu Blockchain

Primary Sidebar

Recent Posts

  • Massive Solana Whale Transfer Unfolds: Is a SOL Surge Incoming? July 4, 2025
  • Ethereum Surges to $2,593: Will It Smash Through $3,000 Next? July 4, 2025
  • First Bank to Offer Ripple’s RLUSD Stablecoin: Swiss AMINA Launches Custody and Trading July 4, 2025
  • Solana Price Eyes $300 as Derivatives Metrics Turn Bullish July 4, 2025
  • XRP Price at a Tipping Point: Key Levels and Senate Hearing Could Trigger a Shift July 4, 2025

Footer

News

  • Altcoin News
  • Bitcoin News
  • Blockchain
  • Tron News
  • World

Digest

  • Meet the Founder
  • Price Winning Article
  • DeFi
  • Cyber Security
  • Crypto Scam

Industry

  • Project Review
  • Technology
  • Fintech
  • Tron Exchange
  • New in Town

Tron Universe

  • Event and Tron Parties
  • New in Town
  • Tron Tokens

Follow Us

Subscribe US

Copyright © 2025 · Tron Weekly. All Rights Reserved. NOTE: Tron Weekly is an independent crypto news site that adheres to the strict journalism policy anchored on transparency, trust, and objectivity, we have no affiliation with the TRON Foundation, its founder Justin Sun or any other cryptocurrency firm.