Eskenzi PR ad banner Eskenzi PR ad banner
  • About Us
Wednesday, 3 June, 2026
IT Security Guru
Eskenzi PR banner
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

In the New “Wild West” Even “Small” Cryptocurrency Theft is Costing Billions

by The Gurus
June 13, 2018
in This Week's Gurus
Share on FacebookShare on Twitter

Written by Rick McElroy, Security Strategist at Carbon Black

Over the weekend, another cryptocurrency exchange was breached. This time it was “only” $40 million” in cryptocurrency. However, as a result cryptocurrencies overall lost more than $40 billion in value following the attack. That’s not a typo – a $40 million heist cost the market more than $40 billion dollars. Such is the nature of the new Wild West, where cryptocurrency is front and centre in the cyber game and hackers can manipulate entire markets with a few clicks of a mouse.

If crypto mining, ICOs, cryptojacking and ransomware all represent the electronic “gold rush,” then this current wave of cyber crime represents the electronic equivalent of yesterday’s stick ups, bank, stagecoach and train robberies.

While cryptocurrencies are “new,” criminals have perennially remained motivated by one thing – money. If you were a cyber criminal why wouldn’t you? The chances of actually getting caught are minimal, at best. There is no modern day equivalent of the Pinkertons to safeguard your cryptocurrency through the desert while riding shotgun on a stagecoach. The entire supply chain of cryptocurrency is immature and ripe for attacks.

It’s not surprising that Carbon Black’s recent cryptocurrency report highlighted that cryptocurrency exchanges are the most vulnerable target for cybercriminals, with 27% of attacks targeting exchanges directly. Regulation is often country specific and, in most cases, no one is vetting the technology (or the people) who are running the exchanges, let alone their security programs and controls to protect themselves and their customers.

Some exchanges are better than others but would you trust your money to a bank with no safe? Or security guards? Or the FDIC? I highly doubt it. While cyber criminals target individuals, wallets, and systems to facilitate cryptotheft, most of the payoffs are small. Much like gangs of the American West, why rob each person when you can rob the train or stage coach carrying all of the town’s money? One attack can yield the worth of hundreds or thousands of others, so why not go after where all the money is, especially when the risk is low?

“I rob banks because that’s where the money is,” – Bank Robber Willie Sutton

In regards to cryptocurrency and markets, there is a bigger conversation to be had. Cyber criminals rob banks because that’s where the money is. They are motivated by the pay off. There is nothing really new about that. However, when it comes to the new Wild West, it becomes entirely possible to monetise on attack a number of different ways.

Monetisation 1. Breach the exchange and abscond with as much cryptocurrency as possible

Monetisation 2. Coordinate a short on one of the various cryptocurrencies knowing the volatility of the market will yield a big drop in the current price after an attack is successful.

Monetisation 3. Buy a bunch of now decreased-in-price coin and ride the recovery.

That’s three crimes and three ways to make money for the cost of one single attack.

We expect to see cryptocurrency theft and illicit mining activity expand in the mid-to-long term as security mechanisms and user awareness slowly catch up to this evolving threat. These cryptocurrencies represent an alternative and lucrative funding stream, which is especially true for criminals, as well as nation-states desperately seeking to subvert sanctions. These will continue to fund future attacks. TTPs will evolve and adapt quickly, along with the dark web marketplaces that fuel the illicit economy, which is worth millions.

If attackers are simply “following the money,” in this new Wild West, defenders should be evolving accordingly. Follow the money.

ShareTweet
Previous Post

UK! watchdog! slaps! Yahoo! with! £250k! fine! for! 2014! data! breach!

Next Post

Executives Say Efficiency and Security Outranks Customer Experience as the Driving Force Behind Digital Transformation

Recent News

Nagomi Control Brings CTEM Into Action

IT Security Guru picks for Infosecurity Europe 2026

June 1, 2026
Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

Nine in Ten Security Leaders Concerned About AI-Generated Code Risks as Salt Security Launches New Governance Tool

June 1, 2026
Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

Acumen Cyber and AttackIQ Partner to Strengthen Cyber Defense Validation

May 29, 2026
Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

Check Point Launches AI Agents That Think Like Attackers as Autonomous Exploitation Reaches Critical Threat Level

May 28, 2026

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2024 IT Security Guru - Website Managed by Dessol