Cryptocurrency
[loss] $36M+
"Ira Financial and Gemini"
Primary Source ↗Financial Loss
$36.0M
(36,000,000 USD)
Blockchain(s)
Bitcoin
Incident Details
IRA Financial, a platform for managing retirement investments, boasts of being “the first self-directed IRA company to allow their clients to invest in cryptocurrencies, such as Bitcoin, directly via a cryptocurrency exchange”. Unfortunately, they were probably also the first to have that feature exploited, when an administrator account was apparently compromised and users’ funds were transferred out of their connected Gemini accounts. Two days later, IRA Financial publicly acknowledged “suspicious activity that has affected a limited subset of our customers with accounts on the Gemini cryptocurrency exchange”. The stolen funds, taken in a mix of Ethereum and Bitcoin, amounted to around $36 million.
Total loss estimated at $36,000,000.
Technical Details
- Initial Attack Vector
- Smart contract exploit / hack
- Vendor / Product
- IRA Financial
Timeline
- 2022-02-08 Breach occurred
- 2022-02-08 Publicly disclosed