Search results for "FOG"
10:34

Slow Fog Residual: Venus victim users' computers may have been targeted for poison attacks, the Hacker actions are very premeditated.

The founder of Slow Fog, Yu Xian, released the investigation results regarding the Venus attack incident, indicating that there is no issue with the protocol itself, but it may have been subject to front-end hijacking and phishing attacks. Victims' computers may have been targeted by specific malware attacks, and the source of the hacker's funds is complex, with actual losses possibly being less than $20 million.
More
XVS-0.1%
06:09

Slow Fog CISO dark web VerifTools has been restarted through a new domain after being shut down by the FBI and Dutch police.

ChainCatcher news, Slow Mist Technology's Chief Information Security Officer 23 pds posted on the X platform revealing that the FBI and Dutch police have just shut down VerifTools (a dark web hub selling fake passports and driver's licenses for as low as $9), which criminals used to bypass KYC checks and steal millions in Crypto Assets, but just a few hours later, its operators relaunched with a new domain.
More
16:13

Slow Fog Cosine: The Qubic control of the Monero coin computing power ratio remains questionable and is difficult to verify.

BlockBeats reported that on August 13, Yuxian, the founder of Slow Fog, commented on the 51% attack incident of Monero, stating that there are many doubts in the community about whether it is truly a 51% attack in the real sense, but there are no doubts regarding the reorganized blocks (for example, 6 blocks). The Qubic Mining Pool claims to control 51% of the Computing Power, but many community members believe it controls about 33% of the Computing Power. This debate is not easy to verify; to provide solid evidence of a 51% attack, a double spending attack test must be initiated. Previous reports indicated that the IOTA co-founder Sergey Ivancheglo's project Qubic quickly accumulated a large amount of Monero Computing Power through the "useful Proof of Work (uPoW)" mechanism, and on August 12, Qubic briefly controlled 52.72% of the Monero network's hashrate (approximately 3.01 GH/s). Once it exceeds
More
QUBIC-0.09%
  • 1
  • 2
  • 1
09:49

Yuxian: The Qubic Mining Pool has allegedly successfully launched a 51% Attack on Monero, theoretically allowing for the rewriting of transactions.

PANews August 12 news, Slow Fog founder Yu Xian stated that the Qubic Mining Pool has recently gathered a large amount of Computing Power through economic incentives, and is suspected to have successfully achieved a 51% Attack on the Monero network. Qubic founder Sergey Ivancheglo admitted that after controlling most of the Computing Power, they could rewrite the Blockchain, implement Double Spending, and review transactions. Although Qubic claims this move is a technical demonstration, the Monero community has expressed concerns about the network's Decentralization and security, and has called on miners to disperse their Computing Power to drop risks. It was previously reported that Monero is facing a network takeover attempt initiated by the mining pool Qubic, which has sparked strong opposition from the community.
More
QUBIC-0.09%
  • 2
  • 1
05:08

Slow fog: The hacker organization APT37 is hiding malware in JPEG image files to launch attacks.

PANews August 4 news, according to a Genians article cited by Slow Fog's Chief Information Security Officer 23pds, the North Korea-linked hacker group APT37 is hiding malware in JPEG image files to launch attacks. This malware uses a two-stage encryption shellcode injection method to hinder analysis, with attackers utilizing shortcut files with the .lnk extension, embedding Cmd or PowerShell commands within to execute the attack. Efficient EDR monitoring optimized for detecting abnormal endpoint behavior is now crucial.
More
12:55

Slow Mist Cosine: GMX-related fork projects need to avoid security risks similar to GMX v1.

Odaily News Yu Xian, the founder of Slow Fog, posted on the X platform stating that GMX-related fork projects need to pay attention to similar security risks. He mentioned that the fundamental reason for the theft of 42 million dollars from GMX last night was that GMX v1 immediately updates the global short average price (globalShortAveragePrices) when handling short positions, and this global average price will directly affect the calculation of the total asset size (AUM), thus leading to
More
GMX0.09%
04:00

Fidelity's Solana Spot ETF application delayed again by the SEC, regulatory fog shrouds altcoin funds.

On July 7, 2025, the U.S. Securities and Exchange Commission (SEC) confirmed that Fidelity's application to launch a Solana (SOL) spot exchange-traded fund (ETF) has been delayed again. The document submitted by the Cboe BZX exchange is part of the proposed rule change application regarding the listing of the "Fidelity Solana Fund." Although future approvals may accelerate, Fidelity's Solana ETF is currently still under the uncertainty of cryptocurrency regulation. Dozens of similar applications (from XRP ETF to Meme Coin ETF) have also been stalled. Meanwhile, some companies are seeking alternative Solana investment products. Last week, REX Financial and Osprey Funds launched the REX-Osprey Sol + Staking ETF. While not a direct Solana spot ETF, it provides investors with an indirect way to access the Solana network and its staking rewards.
More
SOL-0.25%
06:31

Slow fog cosine: The Private Key corresponding to the Sui Address cannot derive the Aptos Address of the same address, and they cannot be converted to each other.

PANews reported on July 4th that Slow Fog's Yu Xin reminded users that the Private Key corresponding to the Sui Address cannot derive the same address for Aptos, and they cannot be converted to each other. "For example, if you have Aptos and accidentally transfer funds to your Sui address, then this money is lost; we researched and couldn't retrieve it." "In other words, the same mnemonic phrase will generate different addresses under the derivation logic of Aptos and Sui. However, during the transfer, they are all considered valid addresses... starting with 0x, a total of 66 characters..."
More
SUI0.94%
APT2.48%
11:34

Slow Fog: Popular Solana Tool on GitHub Hides Coin Theft Trap

PANews, July 3 news, according to the Slow Fog security team, on July 2, a victim reported that they used a project hosted on GitHub - zldp2002/solana-pumpfun-bot the day before, after which their encrypted assets were stolen. After analysis by Slow Fog, it was found that in this attack event, the attacker disguised themselves as a legitimate open source project (solana-pumpfun-bot), luring users to download and run malicious code. Under the guise of boosting the project's popularity, users unknowingly ran a Node.js project with malicious dependencies, leading to the leakage of their Wallet Private Key and asset theft. The entire attack chain involved multiple GitHub accounts working in coordination, expanding the scope of spread and enhancing credibility, making it highly deceptive. Meanwhile, such attacks utilize both social engineering and technical means, making it very difficult to completely defend against them within the organization. Slow
More
SOL-0.25%
03:24

Chrome V8 engine exposes zero-day vulnerability, Slow Fog issues security alert

Gate News bot message, Slow Mist CISO @im23pds released a security warning on social media, disclosing a CVE-2025-6554 vulnerability in the Chrome V8 engine. This vulnerability has been confirmed, allowing attackers to execute malicious code by constructing specific web pages. Currently, the proof of concept for the vulnerability ( PoC ) has been made public online. Slow Mist reminds users to update Chrom in a timely manner.
More
BOT-11.33%
08:31

Slow Fog Cosine: Uniswap Card will collect user X's email Address.

Odaily News Slow Fog Cosine published on the X platform stating that Uniswap Card will collect users' X email addresses, meaning they can obtain the email, and of course, basic information like IP and UA will also be collected. However, this privacy has authentication, and Uniswap does not engage in malicious activities or leak information internally, so it's not a big issue. However, one should be aware of potential targeted phishing methods that may arise in the future.
More
UNI-0.28%
  • 1
02:19

Slow Fog: Beware of Cold Wallet encryption scams disguised as official giveaways.

BlockBeats news, on June 21, Slow Fog CISO @im23pds tweeted to warn about the encryption raffle scam disguised as an official Cold Wallet giveaway. Criminals are impersonating official accounts on the X platform, claiming to give away Ledger and other Cold Wallets for free, and actually sending "brand new sealed" real devices, luring users into lowering their guard. The real traps are often hidden in the devices themselves or the accompanying initialization instructions, which may be tampered with devices or through social engineering to induce users to leak their mnemonic phrases.
More
09:14

Slow Fog: Potential suspicious activity related to Meta Pool has been detected.

PANews, June 17th news, Slow Fog has issued a security warning: Potential suspicious activities related to Meta Pool have been detected, with the root cause being that the deposit function has been rewritten, allowing for arbitrary minting through the mint function without the need to transfer tokens. Please remain vigilant.
More
MINT13.75%
06:47

Slow Fog Cosine: The process of retrieving funds from the Alby hosted wallet is cumbersome and has significant wear.

Golden Finance reported that after Slow Mist founder Yu Xian released the update "Alby hosted wallet balance was transferred away by the platform," he stated, "Alby has too many traps. Although the funds have been refunded, the process of successfully withdrawing is cumbersome (though I completely understand the mechanism behind this). Ultimately, out of the 191 dollars, only 153 dollars were successfully withdrawn, with over 30 dollars lost in the process."
More
00:48

Slow Fog Cosine: The assets of the Alby Wallet "theft" have been recovered.

BlockBeats news, on June 11, Slow Fog's Yuxian posted an update on social media stating, "Got it back, didn't follow the official required steps. It seems they just refunded me directly... Happy Ending... Other friends who have experienced this, if you haven't been refunded, you can email the official to inquire (the official email is in the message where your funds were transferred), you can follow the required steps provided by the official reply (for example, you may need to spend money to sign up for their Cloud or set up Alby Hub, etc.), but of course, you may also be able to do nothing like me and just get it back. Although the amount is small, the nature is serious. If the official had left a message informing us of the retrieval method when they transferred our funds, the nature would have been very different."
More
HAPPY-1.25%
CLOUD-0.42%
  • 1
06:59

Android banking Trojan Crocodilus upgrades, global encryption users suffer attacks.

Gate News bot message: According to the latest security alert issued by the Slow Mist team, the Android banking Trojan Crocodilus has completed its upgrade and is launching attacks on encryption users and banking app users worldwide. The Trojan spreads through fake browser updates advertised on Facebook. The attackers use overlay attacks to steal user login credentials, while also having the capability to extract encryption wallet seed phrases and private keys. Additionally, the attackers implant fake "bank support" numbers in the user's contact list. It is reported that the Trojan has started to be rented out in the form of Malware-as-a-Service(, charging 100-300 USDT for each attack. The Slow Fog team advises users to be cautious with unknown application updates and advertisement links. Source: Wu said
More
BOT-11.33%
A-0.45%
06:15

Slow Fog Cosine: If funds are stolen, it is best to publicize the Wallet Address.

Golden Finance reported that Yu Sine, the founder of Slow Mist, posted on the X platform: "A security suggestion, if your funds are stolen, it is best to publicize the wallet address (if you are worried about privacy, you can appropriately hide some characters in the middle), or you can publicize the hacker address." Why is this suggestion? It is because some hackers nowadays are particularly fond of taking the blame, and when the time comes, they will not only bear the pain of theft of funds, but also the possibility of follow-up law enforcement investigations. ”
More
  • 3
11:41

Slow Fog Cosine: EIP-7702 new mechanism widely used by stolen coin gangs

Odaily News Slow Mist Yu Xian stated on the X platform that the new mechanism EIP-7702 is being used most highly by coin theft gangs (not phishing gangs), allowing for the automatic transfer of related funds from wallet addresses that have leaked Private Keys/mnemonic phrases... Over 97% of EIP-7702 delegations were authorized to these types of coin theft contracts.
More
  • 1
  • 1
03:26

Slow Fog Cosine: The longer the mnemonic phrase/private key is used on the network, and the more people share it, the easier it is to leak and difficult to trace.

BlockBeats news, on May 31, Slow Mist founder Yu Xian stated that a user's four sets of mnemonic phrases were leaked, corresponding to four wallet addresses where the funds were stolen. From the on-chain operational methods, after receiving the funds, the hacker's address converted everything into ETH, and then laundered it through FixedFloat. The longer mnemonic phrases/private keys are exposed to the internet and the more people they are distributed to for joint use, the more likely they are to be leaked, and the harder it is to investigate the reasons for the leak.
More
ETH-2.38%
  • 1
  • 1
13:17

Slow Fog CISO: The attack on Cork Protocol may be due to price manipulation vulnerabilities caused by exchange rates being externally controlled.

ChainCatcher news, Slow Mist Technology's Chief Information Security Officer 23pds tweeted that the Cork Protocol was attacked resulting in a loss of 12 million dollars. The Slow Mist security team initially analyzed the cause of the attack: it is suspected that the exchange rate can be controlled externally, leading to a price manipulation vulnerability.
More
12:15

Slow Fog Releases Analysis of Osiris Malicious Browser Extension: Users Have Already Suffered Losses, Reminder to Avoid Installing Unknown Programs, Extensions, etc.

SlowMist officially released an analysis of the Osiris malicious browser extension, pointing out that the extension will replace the user's download link and cause the malicious program to download, and the attacker can steal assets and user data, reminding users to avoid installing unknown programs and not trusting unfamiliar tools.
More
  • 2
07:41

Slow Fog: Impersonation of exchange leads to losses exceeding $1 million for multiple users.

Gate News bot message, the Slow Fog security team has released the latest security reminder, revealing a scam incident targeting crypto assets users. Scammers send forged exchange text messages containing "withdrawal verification code" and customer service phone numbers. When users call the number, the scammers transfer them to so-called "hardware wallet support personnel" under the pretext of a "security vulnerability." Subsequently, the scammers induce users to visit a phishing website and enter their cold wallet mnemonic phrase, resulting in the theft of user assets. According to statistics, the total asset loss from this incident has exceeded $1 million.
More
BOT-11.33%
  • 5
02:54

Inferno Drainer utilizes the Ethereum EIP-7702 feature to launch a new type of phishing attack.

Gate News bot message, the blockchain security platform Scam Sniffer has disclosed that the phishing organization Inferno Drainer has launched a new type of attack targeting the Ethereum EIP-7702 upgrade features, resulting in a loss of approximately $150,000 in a single transaction. According to Beincrypto, EIP-7702, as a core feature of the Pectra upgrade, provides externally owned accounts (EOA) with the capability to temporarily use smart contract functions during transactions. Attackers executed bulk token transfer operations through an authorized MetaMask wallet. The founder of Slow Fog, Yu Xian, pointed out that this incident shows that phishing strategies have changed. Attackers no longer directly hijack wallets but instead induce users to trigger the "execute" command in MetaMask, executing malicious batch authorizations in the background to complete asset transfers.
More
ETH-2.38%
08:41

Slow Fog: The Cetus theft incident was caused by a mathematical overflow vulnerability.

Slow Mist analyzed the Cetus theft incident, pointing out that the attacker exploited a parameter overflow vulnerability to obtain a large amount of assets. The attacker used the checkedshlw function vulnerability to acquire various assets, with some funds being cross-chain to EVM addresses. Cetus has fixed the vulnerability, and $162 million has been frozen. Developers are advised to verify the boundary conditions of mathematical functions.
More
CETUS2.43%
08:06

Slow Fog released an analysis of the Cetus theft incident of $230 million: hackers exchanged a minimal amount of Tokens for massive Liquidity assets.

The analysis of the $230 million theft incident of Cetus released by Slow Mist shows that the attackers exploited an overflow detection bypass vulnerability, selecting parameters through precise calculations to exchange a minimal amount of tokens for a large amount of Liquidity assets. The attack demonstrated the power of mathematical overflow vulnerabilities, and it is recommended that developers strictly verify the boundary conditions of mathematical functions in smart contract development.
More
CETUS2.43%
TOKEN1.71%
  • 1
04:36

Traders bet that summer will clear the fog for the Federal Reserve (FED)

The Federal Reserve (FED) is still observing the impact of fiscal and trade policies on the economy, and the market expects that the policy will remain on hold until the July meeting. Although expectations for a rate cut in June have weakened, the futures market shows that the probability of a rate cut before September is still slightly above 50%. The situation may become clearer in the next four months, with a potential for inflation to slow down or economic deterioration leading the Federal Reserve (FED) to adopt stimulus policies.
More
04:14

Users encountered an "withdrawal verification code" eyewash losing 1.1 million dollars.

Gate News bot reported that according to Wu, the Chief Information Security Officer of Slow Fog, @im23pds, disclosed a "withdrawal verification code" phishing scam case. The scammers disguised themselves as a trading platform and sent text messages to lure users into making phone calls. Subsequently, the scammers impersonated Ledger customer service personnel and guided the victims to visit a phishing website, ultimately resulting in a financial loss of $1.1 million for the victims. In response to such incidents, it is recommended that users remain highly alert to verification code text messages and phone calls from unknown sources.
More
BOT-11.33%
  • 1
13:34

Slow Fog Cosine: Has obtained some traces of the Cetus Hacker

Odaily Planet Daily News Slow Mist Cosine posted on the X platform that about $200 million was stolen from Cetus on Sui's network, and it is not easy for hackers to convert them into more stable assets and then cross over, and some traces of hackers have been obtained.
More
CETUS2.43%
  • 1
  • 4
Load More
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)