World's Biggest Ever Digital Currency Theft

One of Japan's largest digital currency exchanges says it has lost some $534m (£380m) worth of virtual money in a hacking attack on its network.

Coincheck suspended deposits and withdrawals for all crypto-currencies except Bitcoin as it assessed its losses in NEM, a lesser-known coin.

If the theft is confirmed, it will be the largest involving digital currency.

Another Tokyo exchange, MtGox, collapsed in 2014 after admitting that $400m had been stolen from its network.

The stolen Coincheck money was said to be kept in a "hot wallet" - a part of the exchange connected to the internet. That contrasts with a cold wallet, where funds are stored securely offline.

Coincheck says it has the digital address of where the money was sent and is going to do what it can to compensate investors.

What do we know about the Hack?

Hackers broke in at 02:57 (17:57 GMT) on Friday 26th January, the company said in a statement, but the breach was not discovered until 11:25, nearly eight and a half hours later.

Company chief operating officer Yusuke Otsuka said 523m NEMs had been sent from Coincheck's NEM address during the breach.

"It's worth 58bn yen based on the calculation at the rate when detected," he said at a press conference at the Tokyo Stock Exchange.

Coincheck was still examining how many customers had been affected and trying to establish whether the break-in had been launched from Japan or another country.

"We know where the funds were sent," Mr Otsuka added. "We are tracing them and if we're able to continue tracking, it may be possible to recover them. But it is something we are investigating at the moment."

Coincheck reported the incident to the police and to Japan's Financial Services Agency.

How damaging is the Loss?

NEM, the 10th-largest crypto-currency by market value, fell 11% over a 24-hour period to 87 cents, as of 18:30, Bloomberg news agency reports.

Among the other crypto-currencies, Bitcoin dropped 3.4% and Ripple retreated 9.9% on Friday, according to prices seen by the agency.

More was lost on Friday than in 2014, when MtGox lost what it thought was 850,000 bitcoins. However, MtGox later found 200.000 bitcoins in an old digital wallet.

After the collapse of MtGox shook the digital currency world, a licensing system was introduced in Japan to increase oversight of local currency exchanges such as Coincheck.

"What's the lasting impact? It's hard to tell," Marc Ostwald, global strategist at ADM Investor Services International in London, told Bloomberg.

"Japan is one of the most pro-crypto trading countries, among the G-20. In Japan they don't really want a wholesale clampdown. So it will be interesting how Japanese regulators respond to this, if they indeed do."

What is Coincheck?

Founded in 2012, the company is based in Tokyo, where it employed 71 people as of August last year.

Its headquarters are located in the city's Shibuya district, an area popular with start-ups that was also home to MtGox.

Last year, Coincheck began running adverts on national television featuring popular local comedian Tetsuro Degawa, the agency adds.

BBC:

You Might Also Read: 

Bitcoin Exchanges Under Siege:

After A $65m Hack, Is Bitcoin Really Safe & Secure?:

Russian Arrested For $4billion Bitcoin Theft:

« Russia's New Generation Of Military Robots
Bizarre: Snowden Calls For Secret Memo To Remain Secret »

CyberSecurity Jobsite
Check Point

Directory of Suppliers

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Authentic8

Authentic8

Authentic8 transforms how organizations secure and control the use of the web with Silo, its patented cloud browser.

ZenGRC

ZenGRC

ZenGRC (formerly Reciprocity) is a leader in the GRC SaaS landscape, offering robust and intuitive products designed to make compliance straightforward and efficient.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

MIRACL

MIRACL

MIRACL provides the world’s only single step Multi-Factor Authentication (MFA) which can replace passwords on 100% of mobiles, desktops or even Smart TVs.

RioRey

RioRey

The DDoS mitigation specialist, from single server to Enterprise wide carrier level networks the RioRey Solution provides effective immediate and easy to manage protection.

ShadowDragon

ShadowDragon

ShadowDragon develops digital tools that simplify the complexities of modern investigations that involve multiple online environments and technologies.

Greenetics Solutions

Greenetics Solutions

Greenetics Solutions is a company focused on providing solutions for information security.

Randori

Randori

Randori is an attack platform that provides "red-teaming" as a service - basically, staging simulated hack attacks to test for vulnerabilities and gaps in the security response.

Grupo CFI

Grupo CFI

Grupo CFI is the largest Spanish network of data protection and cybersecurity professionals.

FileWave

FileWave

FileWave offers a single solution for managing apps, devices, and more for Mac, Windows, and mobile devices.

Infodas

Infodas

Infodas provides Cybersecurity and IT consulting / system integration services as well as a range of innovative Cybersecurity products to public sector and commercial clients.

RCDevs

RCDevs

RCDevs is an award-winning Software company providing security solutions designed for modern enterprise technologies and suited for SMEs to large corporations.

Yelbridges

Yelbridges

Yelbridges offer high quality IT security & risk management services to mitigate business risks.

Secure Recruitment

Secure Recruitment

Secure Recruitment is a specialist Executive Search business that focuses its efforts on attracting specific exceptional talent in Cyber Security.

At-Bay

At-Bay

At-Bay is the world’s first InsurSec provider designed from the ground up to help businesses tackle cyber risk head on.

Ackcent Cybersecurity

Ackcent Cybersecurity

Ackcent's mission is to help our clients to protect their critical digital assets by providing them with a portfolio of specialised professional services.

UTMStack

UTMStack

UTMStack is a Unified Security Management system that includes SIEM, Vulnerability Management, Network and Host IDS/IPS, Asset Discovery, Endpoint Protection and Incident Response.

Alethea

Alethea

Alethea is a technology company helping companies, nonprofits, and democracies protect themselves from harms stemming from disinformation and social media manipulation.

Dispel

Dispel

Dispel makes the fastest secure remote access for industrial networks. Built by operators for operators: a zero trust engine for your entire OT, IoT, and xIoT stack.

Terra Security

Terra Security

Terra Security is the first agentic-AI platform built for web application penetration testing.