General Bytes Crypto ATM Service Hacked

According to reports, according to the official Twitter message of General Bytes, the General Bytes cryptocurrency ATM service was attacked on March 17th and 18

General Bytes Crypto ATM Service Hacked

According to reports, according to the official Twitter message of General Bytes, the General Bytes cryptocurrency ATM service was attacked on March 17th and 18th. The attacker used the upload interface in the system to upload and run malicious Java programs, and then the attacker obtained permissions to the database in the server and the hot wallet withdrawal API Key.

General Bytes Cryptocurrency ATM service has been attacked, resulting in database and cryptocurrency theft

Analysis based on this information:


General Bytes, a well-known cryptocurrency ATM service, faced a major security breach on March 17th and 18th, 2021. As per the official Twitter message of General Bytes, the hack was conducted using the upload interface feature of the ATM system, which enabled an attacker to run malicious Java programs.

Once the attacker gained access to the system database, they acquired permissions for the hot wallet withdrawal API key, which enabled them to execute unauthorized transactions. As a result of the breach, users’ data and funds stored on the system could be at risk. The company advised its customers to change their passwords and authentication keys immediately to prevent further damage.

This incident highlights the need for robust cybersecurity measures for cryptocurrency service providers, as attacks on such platforms are becoming increasingly common. The incident also raises questions about the security of General Bytes’ infrastructure, and whether the company had implemented adequate security controls and performed regular vulnerability assessments.

One of the primary concerns is the upload interface feature that enabled the attacker to upload and execute malicious Java programs. This incident emphasizes the importance of limiting access to such features only to authorized personnel after their identity is verified through multi-step authentication protocols.

Moreover, the hot wallet withdrawal API key’s unauthorized use highlights the need for secure communication channels between different components of the ATM system, such as the server and hot wallet. Companies like General Bytes need to implement encrypted communication channels and periodic audits to trace and monitor data access.

In conclusion, the General Bytes security breach underlines the need for stringent security measures and controls for cryptocurrency service providers. The cryptocurrency industry is plagued by security vulnerabilities, and dealing with security incidents is becoming an inevitable part of the business. Therefore, to ensure customer confidence and trust, companies must make cybersecurity their top priority.

This article and pictures are from the Internet and do not represent aiwaka's position. If you infringe, please contact us to delete:https://www.aiwaka.com/2023/03/19/general-bytes-crypto-atm-service-hacked/

It is strongly recommended that you study, review, analyze and verify the content independently, use the relevant data and content carefully, and bear all risks arising therefrom.