Newly launched Bitcoin/XRP/Ethereum/Litecoin/Bitcoin Cash-trading exchange already has serious security vulnerabilities

2019-1-11 08:21

DX.Exchange, a crypto-based asset trading platform has lately been making positive noise in the news cycle due to its January 7th launch. The exchange has been marketed as the platform that will bridge the gap between cryptocurrencies and real-world stocks, as investors can purchase tokenized versions of Apple, Facebook and Apple stocks, as well as some of the most popular cryptocurrencies like Bitcoin, Ethereum, XRP, Litecoin or Bitcoin Cash. Just a couple of days after launch the tune seems to be changing as popular tech website ArsTechnica reported how the platform suffers from major security issues.

The issues were exposed by an online trader who decided to do his due diligence and check out the security on the DX.Exchange website. After creating a dummy account and checking out the website with the help of Google Chrome developer tools, the trader noticed several vulnerabilities that might have caused serious leaks of account login credentials and personal user information.

The vulnerability is explained as an authentication token issue; whenever his browser sent one of these tokens (required for accessing your account) to the exchange’s website, the website sent back “all kinds of extraneous data”. The trader realized that this data was extremely sensitive, including other users’ authentication tokens and even password-reset links. A malicious user could use this data to gain unauthorized access to leaked accounts.

“I have about 100 collected tokens over 30 minutes. If you wanted to criminalize this, it would be super easy,” explains the trader.

The security issues didn’t stop there, as the leaked data apparently contained tokens belonging to the employees of the website. If someone were to gain access to this information, they could have easily log into the DX.Exchange website with administrative privileges. Once logged in this way, the hacker might have been able “to download entire databases, seed the site with malware, and possibly even transfer funds out of user accounts.”

The exchange has since responded, confirming that the issue has been acknowledged and fixed.

WE SCHEDULED FOR TODAY AT 11:00 AM (ESTONIA TIME ZONE) A MAINTENANCE UPDATE TO IMPROVE OUR PLATFORM FUNCTIONALITY AND PERFORM SEVERAL BUG FIXES AND UPDATES. THE PLATFORM WILL COME BACK FULLY FUNCTIONAL AFTER FEW MINUTES. THANK YOU FOR YOUR PATIENCE

— DX.Exchange (@DXdotExchange) January 9, 2019

Still, the exchange seems to be plagued with early-launch issues and bugs that could endanger its users’ sensitive information and funds. Check out the complete ArsTechnica report here.



The post Newly launched Bitcoin/XRP/Ethereum/Litecoin/Bitcoin Cash-trading exchange already has serious security vulnerabilities appeared first on CaptainAltcoin.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Safe Exchange Coin (SAFEX) на Currencies.ru

$ 0.0054306 (-0.25%)
Объем 24H $1.742k
Изменеия 24h: 1.41 %, 7d: -8.63 %
Cегодня L: $0.0053635 - H: $0.0055227
Капитализация $6.099m Rank 99999
Цена в час новости $ 0.0052081 (4.27%)

exchange bitcoin newly platform stocks vulnerabilities apple

exchange bitcoin → Результатов: 126


Will Recent Binance Events Trigger This Historical Bitcoin Bull Run Signal?

The recent events at cryptocurrency exchange Binance could trigger the next Bitcoin bull run if this pattern continues to form. Will Bitcoin Exchange Reserve Ratio Turn Around After Binance News? As explained by an analyst in a CryptoQuant Quicktake post, the BTC exchange reserve ratio for US versus off-shore platforms has followed a specific pattern during past bull markets of the asset.

2023-11-24 20:00


Фото:

Surge in Bitcoin exchange deposits breaks six-month withdrawal streak

After six months of Bitcoin exchange withdrawals outpacing deposits, a reversal occurred this month, signaling a change in holder behavior. The exchange net flow, which measures the difference between Bitcoin deposits and withdrawals on exchanges, turned positive at the beginning of November, indicating a renewed interest in exchange activities among Bitcoin holders.

2023-11-23 20:30


Фото:

Jack Dorsey’s Square Sets Out To Build A Decentralized Bitcoin Exchange

Jack Dorsey, CEO, and founder of Square has announced that the payments company’s recently established department, TBD, will be building a decentralized exchange (DEX) for Bitcoin. “We’ve determined @TDB54566975’s direction: help us build an open platform to create a decentralized exchange for Bitcoin,” Dorsey said in a recent tweet. TBD was first announced in July […]

2021-8-29 00:54


Mike Novogratz: Bitcoin Is Bigger Than Any Exchange or Person, Buy the Dip

Crypto never sleeps, but it received a wake-up call after an indictment came down against widely used bitcoin exchange BitMEX, which allows up to 100x leverage and technically bans US traders. The Commodity Futures Trading Commission and Department of Justice are both coming after the exchange and its owners, including the face of the company, […] The post Mike Novogratz: Bitcoin Is Bigger Than Any Exchange or Person, Buy the Dip appeared first on BeInCrypto.

2020-10-2 01:26


Фото:

Coinbase Accused of Deliberately Going Offline Abruptly Whenever Bitcoin Skyrockets

San-Francisco headquartered exchange Coinbase was in for a number of issues which caused unrest in the community. Notably, some users spotted that the exchange experiences a technical issue each time the price of the most popular and demanded cryptocurrency, Bitcoin, crosses a threshold of about 5% in minutes. As soon as this occurs, users are […]

2020-6-4 01:25


Фото:

В Бирмингеме люди в масках попытались ограбить криптобиржу The Bitcoin Exchange

В Великобритании, в городе Бирмингем, три человека пытались ограбить криптовалютную биржу The Bitcoin Exchange. По предварительным данным целью преступников был биткоин-АТМ, который они вытащили из здания при помощи веревки, привязанной к автомобилю.

2019-7-19 16:42