02/05/2022 Hack on Bored Ape Yacht Club NFTs leads to $3m simian oblivion

Latest mass theft of digital art assets is carried out by phishing post on Instagram

Bored Ape digital 'art'
Bored Ape Yacht Club NFT artworks for sale online.Photograph: OpenSea

Yuga Labs, the multibillion-dollar collective behind the infamous Bored Ape Yacht Club non-fungible tokens, has been targeted by another hacking attack, leading to the theft of millions of dollars worth of the simian NFTs.

BAYC’sseries of algorithmically generated cartoon ape profile picturesis one of the best-known collections of NFTs – a digital asset or artwork whose ownership is stored on a blockchain, a decentralised ledger of transactions like those used by cryptocurrencies.

The attacker seized control of the BAYC Instagram account and sent a phishing post that many followers were fooled into clicking on, connecting their crypto wallets to the hacker’s “smart contract” – a mechanism for implementing a crypto transaction. That enabled the attacker to steal the assets held in the wallets, seizing control of four Bored Apes, as well as a host of other NFTs with an estimated total value of $3m.

“Instagram attacks are nothing new but often take an element of social engineering,” said Jake Moore, global cybersecurity adviser at the security firm ESET. “Unfortunately, however, this takeover has had a huge consequence and resulted in a mass robbery of digital assets. Similar to when physical art is stolen, there will be questions over how they would now be able to sell on these assets, but the problems in NFTs still prevail and users must remain extremely cautious of this still very new technology.”

As one of the most prominent NFT collections, with celebrity owners including Eminem, Gwyneth Paltrow and Madonna, BAYC holders are often targeted for attacks, with greater or lesser technical significance.

In early April, for instance, one pseudonymous owner, “s27”,lost a $500,000 ape collectionafter being tricked into swapping it for, effectively, counterfeits: the scammer created new NFTs that were visually identical to BAYC pictures except they had a green tick over them – mimicking the “verified” icon of the platform used for the trade.

In December, another Ape holder, the New York art dealer Todd Kramer, disclosed his own $2.2m loss with the tweet, “I been hacked. All my apes gone. This just sold please help me.” Kramer, who had fallen prey to a similar phishing scam, managed to recover a portion of his stolen Apes with the help of the NFT trading platform OpenSea – but not before the phrase “all my apes gone” waswidely mocked onlineamong those who doubt the substance of the NFT fad.

The BAYC creators said in a statement: “Yuga Labs and Instagram are currently investigating how the hacker was able to gain access to the account. Two-factor authentication was enabled and the security practices surrounding the IG account were tight.”

Hacking and theft are rife in the crypto sector. Transactions are irreversible once made, and it can take a high degree of skill to read the contents of a smart contract and determine whether it is malicious or valid before giving it access to an account. Last week, a“stablecoin” project called Beanstalk lost $180m to a “governance” attack, where the attacker used an instant loan to buy control of the project, transfer its reserves to their account, and then repay the loan in just 13 seconds.

And earlier this month, a North Korean hacking outfit named Lazarus stole more than half a billion dollars-worth of crypto tokensfrom the video game Axie Infinity. Despite the hack being recorded on the blockchain, which keeps all transactions public, the state-sponsored hackers appear to havesuccessfully launderednearly $100m of the stolen funds already, largely by using a decentralised money-laundering service called Tornado Cash.

Arts

https://www.theguardian.com/technology/2022/apr/26/bored-ape-yacht-club-nft-hack-theft-art-simian-oblivion

Interesting NFTs
Discord Assembly
Discord logo factory. 3D animation, 10-second loop, 30 fps. Created using Cinema4D, X-Particles, Octane, and After Effects. Originally posted on TikTok (@jigpx) on 2/20/21. 47.5m+ views, 3.2m+ likes (as of 4/22/21).
#56464
By OthersideDeployer
Fuku-Shiva
The term “Fuku” refers to fortune or good luck. “Shiva” refers to the Hindu deity who represents strongly polar qualities, both severe and delicate. On a beach inspired by adventures on Phi Phi island in Thailand, three youths cavort. Two are representational figures and the third is psychologically rendered. A dynamic relationship ensues between the triad; a reciprocity of active and passive states. The boy on the right engages in maneuvers of evasion, defense, and is dressed in a speedo which reiterates the colors and symbolism of the caution tape on the left and upper right frame of the composition. In concurrent reaction the psychedelic figure shoots out a rocket powered paper airplane. The nude boy seated in the froth and sand approaches in passive repose, and is met with active attention but equal physical reserve by the psychedelic being. Perhaps the most naked figure is also the least representational. Looming large, dynamic, and active, it engages its companions playfully. Various symbols interject into the otherwise naturalistic scene, most notably a beach ball and two contaminated barrels nested in the sand. The upright barrel reads “FukuShima” in Kanji. The barrel laying down reads “Dharma”. To the left the scene is bounded by caution tape, reiterating the danger of the nuclear waste while also hosting alien archetypes, whose presence, as is the nature of these entities, runs up and just behind the consciousness of the psychedelic figure’s eggshell-like skull.
Stay Free (Edward Snowden, 2021)
This unique, signed work combines the entirety of a landmark court decision ruling the National Security Agency's mass surveillance violated the law, with the iconic portrait of the whistleblower by Platon (used with permission). It is the only known NFT produced by Snowden. Produced using open source software. This auction is on behalf of Freedom of the Press Foundation. https://www.aclu.org/press-releases/appeals-court-strikes-down-nsa-phone-spying-program-aclu-lawsuit
POPZ PUNKS #103
POPZ PUNKS 103/110