Everything We Know About the Axie Infinity Breach | Votiro (2024)

On March 23, 2022, Sky Mavis, the developer of the popular blockchain-based video game Axie Infinity suffered a breach that caused the loss of hundreds of millions of dollars in assets. A company engineer targeted in a socially engineered phishing scheme accidentally downloaded malware through an infected PDF file and caused the company to gethacked out of more than $620 million in cryptocurrency.

Axie Infinity Breach Details: Spear Phishing with PDFs

Sky Mavis disclosed that the source of the breach was traced to an employee who was compromised by a sophisticated spear-phishing attack. The hackers disguised themselves as a fake company and contacted the engineer through LinkedIn, offering a high-paying position. The fraudsters took the scheme to the next level, holding several rounds of interviews with the unsuspecting candidate that resulted in a job offer. When the company sent the formal offer as a PDF, the Sky Mavis engineer thought nothing of opening the attached PDF file.

Unfortunately for Sky Mavis, that file was injected with malware that penetrated the company’s IT infrastructure. The hackers gained access to a series of validator nodes that allowed them to execute fake withdrawals, stealing more than $620 million worth of cryptocurrency.

The culprits behind the Axie Infinity Breach

Three weeks after the breach, the FBIformally attributedthe attack to the Lazarus Group and APT38 – known hackers with ties to the Democratic People’s Republic of Korea (DPRK). North Korean hackers have a history of cryptocurrency heists, having stolen $400 million in at least seven attacks against cryptocurrency platforms in 2021 alone. The North Korean government is also known for carrying out financially-motivated cybercrime.

The outcome of the Axie Infinity Breach

According to the post-mortem published by Sky Mavis following the breach,the company guarantees to repay the stolen funds. The capital will come from a $150 million Sky Mavis funding round, company balance sheet assets, and personal funds from the core team. The company also commits to improving its security posture by boosting its tracking and monitoring systems, investing in employee awareness of phishing schemes, implementing additional validator nodes, and implementing azero-trust security model. This approach assumes that every individual, account, or device attempting to connect to the company network or systems is suspicious and must be verified before granting access. By limiting access to the network, a Zero Trust Security model helps the organization contain breaches – even internal ones – and minimize potential damage.

How to Protect from Attachment-Based Phishing Attacks like the Axie Infinity Breach

The security issues seen in Axie Infinity’s hack are all too common. Companies lose hundreds of thousands of dollars in assets every year thanks to social engineering attacks like phishing. Since a primary attack vector is employees downloading malicious files sent in these phishing attacks, the best defense is to stop the files before they enter the organization’s network.

With Votiro, organizations can protect against hidden threats delivered via files without slowing down the regular course of business.Unlike detection-based file security solutions that scan for suspicious elements and block some malicious files, Votiro takes a Zero Trust approach to files by cleansing every file that enters an organization of malware – regardless of the channel it enters through. Votiro is able to do this quickly, accurately, and without detection by allowing through only the safe elements of each file. Votiro has sanitized more than 7 billions files for governments and private sector companies worldwide.

To learn more about how Votiro’s innovative approach to file security can protect your organization from breaches like the one Axie Infinity suffered,click here.

Everything We Know About the Axie Infinity Breach | Votiro (2024)
Top Articles
Is Credit Karma accurate? How does it work? - Intuit Credit Karma
The 3 Main Purposes of Incoterms®
Navicent Human Resources Phone Number
Uihc Family Medicine
Nyu Paralegal Program
Craigslist Benton Harbor Michigan
Crossed Eyes (Strabismus): Symptoms, Causes, and Diagnosis
Tx Rrc Drilling Permit Query
Evita Role Wsj Crossword Clue
Xm Tennis Channel
Craigslist Labor Gigs Albuquerque
zopiclon | Apotheek.nl
A Guide to Common New England Home Styles
Sams Early Hours
Everything you need to know about Costco Travel (and why I love it) - The Points Guy
Allentown Craigslist Heavy Equipment
The best firm mattress 2024, approved by sleep experts
Decosmo Industrial Auctions
Boscov's Bus Trips
Highmark Wholecare Otc Store
Boston Dynamics’ new humanoid moves like no robot you’ve ever seen
European Wax Center Toms River Reviews
Milwaukee Nickname Crossword Clue
Vera Bradley Factory Outlet Sunbury Products
Pronóstico del tiempo de 10 días para San Josecito, Provincia de San José, Costa Rica - The Weather Channel | weather.com
Tactical Masters Price Guide
The Clapping Song Lyrics by Belle Stars
Www Mydocbill Rada
Airg Com Chat
Funky Town Gore Cartel Video
Dairy Queen Lobby Hours
Promatch Parts
Lehpiht Shop
Gwen Stacy Rule 4
1400 Kg To Lb
Orangetheory Northville Michigan
The Land Book 9 Release Date 2023
SF bay area cars & trucks "chevrolet 50" - craigslist
Appraisalport Com Dashboard Orders
Andrew Lee Torres
Tunica Inmate Roster Release
Quick Base Dcps
Craigslist Rooms For Rent In San Fernando Valley
Comanche Or Crow Crossword Clue
Legs Gifs
Latina Webcam Lesbian
1Tamilmv.kids
Mmastreams.com
Wvu Workday
Www Ventusky
Cbs Scores Mlb
login.microsoftonline.com Reviews | scam or legit check
Latest Posts
Article information

Author: The Hon. Margery Christiansen

Last Updated:

Views: 6657

Rating: 5 / 5 (50 voted)

Reviews: 89% of readers found this page helpful

Author information

Name: The Hon. Margery Christiansen

Birthday: 2000-07-07

Address: 5050 Breitenberg Knoll, New Robert, MI 45409

Phone: +2556892639372

Job: Investor Mining Engineer

Hobby: Sketching, Cosplaying, Glassblowing, Genealogy, Crocheting, Archery, Skateboarding

Introduction: My name is The Hon. Margery Christiansen, I am a bright, adorable, precious, inexpensive, gorgeous, comfortable, happy person who loves writing and wants to share my knowledge and understanding with you.