Thunder Terminal Cyberattack
A recent cyberattack compromised Thunder Terminal, revealing a hacker exploited vulnerabilities to access a MongoDB connection, enabling unauthorized withdrawals from user wallets.
Response by Thunder Terminal
Thunder Terminal quickly responded to the breach by revoking session tokens and transaction signing access, taking steps to prevent further malicious withdrawals, and future unauthorized access to session tokens. They assured users that no private keys or wallets were compromised and clarified that less than 1% of wallets were affected, resulting in funds stolen from at least 114 wallets.
Exploit and Potential Link
The exact method used by the hacker to gain access to the database remains unclear. However, Thunder Terminal suggested a potential link to suspicious activity detected on the New York-based MongoDB network in December.
Blockchain Analyst’s Findings
Blockchain analyst ZachXBT traced the attack, revealing that the hacker transferred ETH and SOL to the privacy-centric Railgun protocol. The hacker demanded a 50 ETH ransom and threatened to disclose user data if the payment was not made.
Conclusion
Thunder Terminal’s cyberattack serves as a reminder of the persistent threats facing the cryptocurrency space. The incident highlights the importance of reinforcing security measures and prioritizing user protection to combat evolving cyber threats.
Hot Take
Recent cyberattacks on Thunder Terminal show the urgent need for strengthened security measures in the cryptocurrency industry to protect user funds and data.