




版權(quán)說明:本文檔由用戶提供并上傳,收益歸屬內(nèi)容提供方,若內(nèi)容存在侵權(quán),請(qǐng)進(jìn)行舉報(bào)或認(rèn)領(lǐng)
文檔簡(jiǎn)介
BE
OSIN
022
GlobalWeb3
SecurityReport2022
&CryptoRegulatoryComplianceResearch
CONTENTS
I.2022GlobalWeb3SecurityStatistics
01
TopTenSecurityIncidentsin2022 04
TypesofAttackedProject 07
LossbyChain 08
AttackType 09
AuditAnalysis 11
StolenFundFlow 11
RugPullsin2022 12
II.2022CryptoCrime,FinancialRiskandRegulation 13
GlobalCryptoCrimeStatisticsandCases 13
RegulatoryResponsesArisingFromFinancialRisks 14
RegulatoryComplianceinDifferentCountries&Regions 16
2023GlobalRegulatoryandPolicyOutlook 25
III.SecurityGuidelinesforWeb3Users 26
PrivateKey&SeedPhrase 26
PhishingWebsites 27
IV.Beosin's2023BlockchainSecurityIndustryOutlook 28
BeosinSecurityProduct 29
AboutBlockchainSecurityAlliance 30
AboutBeosin 30
AboutLegalDAO 30AboutBuidlerDAO 30AboutFootprintAnalytics 30
CONTACTUS 31
Preface
Astheblockchainindustryushersinanewperiodofdevelopmentin2022,varioussecurityrisksarealsoemerging.Thehighoccurrenceofblockchainsecurityincidentsthatemergeoneafteranotherhasbeenaseriouschallengetotheblockchainindustry.
FromBeosin'sstatisticsin2022,multipleprojectshavebeenhackedandthehugeeconomiclosseshaveseriouslyaffectedthesecurityandstabilityoftheblockchainecosystem.
Intermsofregulationandcompliance,thereisstillalongwaytogotoimproveandestablishtherelevantsystemofblockchainindustry,andtheinterventionofrelevantdepartmentsandeffectivepromotionofindustrypractitionersareurgentlyneeded.Thecurrentdevelopmenttrendoftheblockchainindustryisgenerallypositiveandthefuturedevelopmentpotentialispromising,butitisalsoimportanttorecognizethatthechaoticsecuritysituationandmulti-facetedsecuritychallengesurgentlyrequirethestrengthen-ingofblockchainsecurityregulationandcompliance.
Inthis'GlobalWeb3SecurityReport2022&CryptoRegulatoryComplianceResearch',wewillrecaponthetop10securityincidentsandanalyzetheglobalWeb3securitystatisticsfrommultipledimensionsinsectionone.Thesecondsectionwillintroduceglobalcryptocrimestatistics,major?nancialevents,andregulatorycomplianceindifferentcountriesorregions.Insectionthree,securityguidelinesandsolutionswillbeprovidedforweb3users.The?nalsectionisBeosin's2023outlookontheblockchainsecurityindustry.
SECURING
BLOCKCHAINECOSYSTEM
I.
2022
GlobalWeb3SecurityStatistics
Contributors:
Beosinresearchteam-Mario,Donny
Datasource(AsofDec20,2022):
work/@Beosin/Footprint-Beosin-2022-Report
I.2022GlobalWeb3SecurityStatistics
In2022,BeosinEagleEyemonitoredover167majorattacksintheWeb3space,withatotallossofapproximately$3.6billionfromalltypesofattacks,anincreaseof47.4%from2021.Ofthese,10securityincidentslostover$100millioninasingleattackandlossesof21securityincidentsrangedfrom$10millionto$100million.
Byprojecttype,the12cross-chainbridgeincidentshavecausedatotallossofapproximately$1.89billion,ranking?rstamongallprojecttypes.DeFi-typeprotocolswereattacked113times,orabout67.6%ofthetotalattacks,makingitthemostfrequentlyattackedprojecttype.
Atotalof20publicblockchainshadmajorsecurityincidentsin2022,withthetopthreebyamountlostbeingEthereum,BNBChain,andSolana;andthetopthreebynumberofattacksbeingBNBChain,Ethereum,andSolana.
Vulnerabilityexploitsrankedhighestinbothfrequencyandlossthroughouttheyear,with$1.458billionlostin87vulnerabili-tyexploits.
Ofthe167majorattacksmonitoredin2022,auditedandunauditedprotocolsaccountedforroughly50/50,at51.5%and48.5%respectively.
Approximately$1,396millionofstolenfundsweredepositedintoTornadoCashin2022,representing38.7%ofthefundslostinallattacks.Only8%ofthestolenfundswererecoveredfortheyear,oraround$289million.
01
I.2022GlobalWeb3SecurityStatistics
Globalcryptocrimesamountedto$13.76billionfortheyear2022(?nancialcrimesareexcluded),withmoneylaunderingaccountingfor$7.33billion,attacks/exploits$3.6billion,pyramidschemes$1billionandscams$830million.
Amongthescamsin2022,243Rugpullshaveinvolvedatotalamountof$425million(excludingthe$440millionFTXevent).Approximately86.4%oftheprojectruggedwithfundsintherangeof$1k-$1M.
02
I.2022GlobalWeb3SecurityStatistics
GlobalTVLshranksigni?cantlyin2022,endingtheyearwithTVLdownapproximately80%fromitspeakatthebeginningoftheyear.ThemarketwasheavilyimpactedbyaseriesofblackswaneventsrepresentedbyThreeArrowsCapital,TerraLunaandFTX.
Despiteasigni?cantshrinkageinglobalcryptomarketcap,theoverallcrime?gureforblockchainin2022stillreached$13.7billion,withasigni?cantincreaseinattackscomparedto2021.Thepast2022wasatoughyearforglobalblockchainsecurityingeneral,andwillplacehigherandmoreurgentdemandsonthesecurityindustryin2023.Combatingrampanthacking,acceleratingtheestablishmentofaglobalregulatorysystem,andbringingabouttechnologicalbreakthroughstoaddressexistingindustryshortcomings-thesewillbethekeyissuestobeconsideredandurgentlyaddressedin2023.
03
2022GlobalWeb3SecurityStatistics
TopTenSecurityIncidentsin2022
No1.RoninNetwork
Loss:$624Million AttackType:Socialengineering
On29March2022,theAxieIn?nitysidechainRoninwasattackedandapproximately$624millionincryptocurrencywasstolen.Thehackersusedthestolenprivatekeytoforgeawithdrawalcredential,whichrequiredatleast?vevalidators,andeventuallytheattackersmanagedtotakecontrolof?vevalidatorstostealthefunds.
Accordingtotheinvestigation,thehackerssentafakeofferlettertoSkyMavis'engineersbywayofsocialengineering,andthedocumentallowedthehackerstocompromiseRonin'ssystem.Aftertheattack,thestolenassetsweresenttomultipleaddressesandlaunderedinbatchesthroughTornadoCash.On20May,theRoninattackerstransferredthelastbatchoffundstoTornadoCashandallassetswerelaundered.On28June,RoninannounceditsreopeningonTwitter.
Beosinsecurityteamgavethefollowingrecommendationsforsuchcross-chainbridgeprojects:1.Payattentiontothesecurityofvalidator;2.Whenthesignatureserviceistakeno?ineintherelevantbusiness,thepolicyshouldbeupdatedintimetoclosethecorrespondingservicemodule,andthecorrespondingsignatureaddresscanbediscarded;3.Inmulti-sig-natureveri?cation,themulti-signatureserviceshouldbelogicallyisolatedfromeachother,andthesignaturecontentshouldbeveri?edindependently;4.Theprojectownershouldmonitortheabnormalsituationoffundsinrealtime.
No2.BSCTokenHub(BNBChain)
Loss:$560Million AttackType:Blockchainvulnerability
On7October2022,BNBChain'scross-chainbridgeTokenHubwashacked.Thehacker?rstpaid100BNBtoregisterasaRelayerbycallingthecontractatblockheight21955968,andthenacquiredatotalof2millionBNBfromBNBChain'sTokenHubcontract.Thehackerthenpledged900,000oftheseBNBsonBNBChain'slendingprotocolVenusandborrowedout62.5millioninBUSD,50millioninUSDT,and35millioninUSDC.
BeosinsecurityteamfoundthatduetotheBSCTokenHubusedaspecialpre-compiledcontractforvalidatingtheIAVL
treewhenperformingcross-chaintransactionveri?cation.Theimplementationisvulnerable,allowinganattackertoforgearbitrarymessages.
On24October,BinancefounderChangpengZhaosaidthatthescopeoftheattacker'sidentityhadbeennarroweddownwiththehelpoflawenforcement.Inaddition,CZsaidBinancewasabletofreezeabout80to90percentofthestolenfunds,withactuallossesintherangeof$100million.
04
I.2022GlobalWeb3SecurityStatistics
No3.FTX:Hackorrugpull?
Loss:$440Million AttackType:Suspectedrugpull
On15November2022,shortlyafterFTXdeclaredbankruptcy,FTXwasannouncedthatithadbeenhacked.Approximately
$440millionwasstolen.Theadministratorsentamessagetotheo?cialtelegramgroupstatingthatthebankruptplatformhadbeenhackedandthatallapplicationsweremalware.Theadministratoradviseduserstodeletetheappandnottovisitthesiteoropentheirapps,asthiswouldlikelycontainaTrojanhorse.Therearestillmanyunknowns,manybelievethatthisislikelytobeaninsideroperation.
No4.Wormhole
Loss:$326Million AttackType:Contractvulnerability-validationissue
On3February2022,Wormholewashacked,resultinginalossofapproximately$326million.AnalysisbytheBeosinsecurityteamfoundthatthehackershadexploitedasignatureveri?cationvulnerabilityinWormholecontractsthatallowedhackerstoforgesysvaraccountsinordertomintwETH.ThevulnerabilityhadbeenpatchedinSolana1.9.4andwasstillsubjecttoareviewprocessbeforeitwas?nallylive,andthehackerstookadvantageofthisgaptoattackcontractsstillusingSolana1.8contracts.
Followingtheattack,Wormholeannouncedthatithadrestoreditscross-chainbridgefundingandwasbackonline.CryptoinvestmentfundJumpCryptoannouncedon4Februarythatithadinvested120,000EthertocoverthelossoftheincidentinordertosupportWormhole'scontinuedgrowth.
No5.Nomadbridge
Loss:$190Million AttackType:Contractvulnerability-validationissue
On2August2022,Nomad,across-chainbridgeprotocol,wassubjectedtoamassivehackthatinvolvedover500hackeraddressesandcausedalossof$190million.Beosinsecurityteamanalysedthetransactionandfoundthattheprojectownerhadincorrectlyadded0x000...000asanacceptableroot,causingthejudgementtohold,thusallowingtheattackertowithdrawthefundsinthecontract.
Asaresult,anyattackercouldsimplycopythe?rsthackedtransactionandreplaceitwithanunusedattackaddress,thenclicktosenditthroughEtherscantostealthefunds.Also,sinceitwastheReplicacontractthatwasvulnerable,allitscorrespondingBridgeRouter-relatedDAppswereaffected,sothestolenfundsexhibitedamulti-tokennature.
OnAugust3,Nomadreleasedanotetocallonwhitehathackerstoreturnthestolenfunds.AsofAugust15,theprojecthasrecovered$37million.
No6.Beanstalk
Loss:$182Million AttackType:Flashloan
OnApril17,2022,thealgorithmicstablecoinprojectBeanstalkFarmssuffereda?ashloanattack,withtheprotocollosing
$182millionandtheattackersmakingapro?tof$80million.Theattackerstransferredtheentire$80milliontoTornadoCashsoonaftertheattack.
Theattackersinitiatedaproposalonedaybeforetheattack,whichwillwithdrawthefundsfromtheBeanstalkProtocolcontract.Thehackergainedalargereserveoffundsvia?ashloan,whichwasthenswappedrepeatedly.A?nalvoteontheproposalresultedinitsbeingpassed.Inresponsetothisincident,theBeosinsecurityteamrecommendsthat:1.thefundsusedforvotingshouldbelockedinthecontractforacertainperiodoftimeandavoidusingthecurrentfundbalanceoftheaccounttocountthenumberofvotes;2.theprojectownerandthecommunityshouldpayattentiontoallproposalsand,ifamaliciousproposaloccurs,itisrecommendedtodiscardtheproposal;3.Considerbanningcontractaddressesfromvoting.
05
I.2022GlobalWeb3SecurityStatistics
No7.Wintermute
Loss:$160Million AttackType:Privatekeycompromise
OnSeptember20,2022,Wintermutelost$160millionintheDeFihack.AnalysisbyBeosinsecurityteamfoundthattheattackersfrequentlyexploited0x0000000fe6a...addresstocallthe0x178979aefunctionofthe0x00000000ae34...con-tracttotransfermoneytotheattacker'scontract.Bydecompilingthecontract,itwasfoundthatcallingthe0x178979aefunctionrequiredpermissionchecks,andbyqueryingthefunction,itwascon?rmedthatthe0x0000000fe6aaddresshadsetCommonAdminpermissions,andthattheaddresshadnormalinteractionwiththecontractbeforetheattack,soitcouldbecon?rmedthatthe0x0000000fe6a'sprivatekeywascompromised.
On21September,Wintermutecon?rmedthatithadusedProfanityandaninternaltooltocreatewalletaddressesinJune,andthattheProfanitytoolwasatriskofprivatekeybursting.
No8.Mangomarkets
Loss:$116Million AttackType:Pricemanipulation
OnOctober12,2022,theMangoprotocolonSolanawashacked,approximately$116millionwaslost.Thehackersusedtwoaccountsandatotalof10millionUSDTasstartingfundstoleverage100+millionofassets.ThemainreasonforthisattackwastheleveragedcontractdidnotlimitthepositionsthatMangocouldopen,allowingtheattackerstoraisethepriceofMangotokensforpro?t.
No9.Elrond
Loss:$113Million AttackType:VMissue
OnJune5,2022,theblockchainnetworkElrondwashacked,withhackers"obtaining"nearly1.65millioninEGLDsanddumpingthroughthedecentralisedexchangeMaiar,causing$EGLDstoplummetby92%.
Elrondhaspostedapost-mortemthattheattackersdidnotexploitanysmartcontractcodevulnerabilitiesandthattheproblemwaswiththevirtualmachine.Previousbugshavebeenresolvedandalmostallofthestolenfundshavebeenrecovered.AnyremainingmissingfundsfromknownbugswillbefullycoveredbytheElrondFoundation.
No10.Harmony
Loss:$100Million AttackType:Privatekeycompromise
OnJune24,2022,theHarmonycross-chainbridgewasattacked,costingapproximately$100million.Harmony'sfounderstatedthattheattackonHorizonwasnotduetoasmartcontractvulnerability,butrathertoaprivatekeycompromise.AlthoughHarmonystoreditsprivatekeysencrypted,theattackersdecryptedsomeofthemandsignedsomeunauthorizedtransactions.
Immediatelyaftertheattack,HarmonystoppedtheHorizonBridgetopreventfurthertransactions.ItthencontactedtheFBIandmultiplepartnerstoinvestigate.ThehackersneverthelesslaunderedthestolenfundsthroughTornadoCash.On27July,Harmonyissuedacompensationproposal.
06
I.2022GlobalWeb3SecurityStatistics
TypesofAttackedProject
In2022,12cross-chainbridgesecurityincidentscausedatotallossofapproximately$1.89billion,thehighestlossofanyprojecttype.Fivecross-chainbridgeprojectslostover$100millioninasingleincident:Ronin($624million),BSCTokenHub($560million),Wormhole($326million),Nomad($190million)andHarmony($100million).Theattacktypesmainlyincludedsocialengineering,privatekeycompromise,andblockchain/contractvulnerabilities,etc.
Ofthe167majorattacksfortheyear,DeFi-typeprojectswereattacked113times,orapproximately67.6%,whichisthemostfrequenttypebeingattacked.DeFirankssecondintermsoflossesafterthecross-chainbridge,withatotallossamountingtoapproximately$950million.
Atotalof21exchangeandwalletsecurityincidentsthroughouttheyear,resultinginatotallossofapproxi-mately$600million.Theseincidentsinvolvedhighamountsofmoneyandawiderangeofusers,andtheirattacktechniquesweremainlyprivatekeycompromises,contractvulnerabilitiesandsupplychainattacks.
07
I.2022GlobalWeb3SecurityStatistics
LossbyChain
Atotalof20publicchainshaveexperiencedmajorsecurityincidentsin2022,withthetopthreebyamountlostbeingEthereum,BNBChain,andSolana;andthetopthreebynumberofattacksbeingBNBChain,Ethereum,andSolana.
The59attacksonEthereumcaused$2.01billioninlosses,accountingfor55.8%ofthetotallossesfortheyear.
Therewere72attacksonBNBChain,with70%ofthelossinarangefromonethousandtoonemillion.Notably,approxi-mately64%oftheprojectsattackedonBNBChainwereunaudited,and80%oftheunauditedprojectswereattackedbycontractvulnerabilityexploits.
ThesevenattacksonSolanaresultedinatotallossof$512.76million,thehighestaveragelossperincidentacrossallchains.MajorsecurityincidentsontheSolanachainincludetheWormholeincidentinFebruary($326million),theCashioincidentinMarch($48million)andtheMangoMarketincidentinOctober($116million).
08
I.2022GlobalWeb3SecurityStatistics
AttackType
(FTXincidentisexcluded)
Vulnerabilityexploitssawthehighestfrequencyandlossamountthroughouttheyear.Fortheyear2022,$1,458millionwaslostfromvulnerabilityexploitsin87attacks.
Thesecondhighestlosswascausedbysocialengineering,whichistheRoninincidentinMarch,resultingin$624millioninlosses.
Thethirdlosswasfromprivatekeycompromise,with19compromisesresultinginatotallossofapproximately$430million,includingeightincidentswithasinglelossofover$10million.Accordingtothe?ndingsofsomeincidents,thetheftofprivatekeysbyteammembers/ex-membersisfrequent,whichrequiresprojectownerspayextraattentiontooperationalsecurityandstrengthenteammanagement.Therewerealsosomecasesofprivatekeycompromisesduetotheuseofthird-partytools,andprojectsareadvisedtoconductcarefulsecurityassessmentsbeforeusingthird-partytools.
09
I.2022GlobalWeb3SecurityStatistics
Abreakdownbytypeofvulnerabilitiesshowsthatthetopthreecausesoflosswerevalidationissues,blockchainvulnerabil-ity(BNBChainincident)andimproperbusinesslogic/functiondesignandreentrancy.
Eighteenvalidationissuescaused$619millioninlosses,withmajorincidentsincludingasignaturevalidationvulnerabilityintheWormholeincidentandamessagevalidationbypassissueintheNomadbridgeincident.
Themostfrequentissuewasimproperbusinesslogic/functiondesign,with30occurrences.DuringBeosin'sdailyaudits,thistypeofvulnerabilityisalsotheonethatappearsmostfrequentlyandismostlikelytobeoverlookedbydevelopers.
10
I.2022GlobalWeb3SecurityStatistics
AuditAnalysis
Ofthe167majorattacksmonitoredin2022,auditedandunauditedprojectsaccountforalmosthalfofthetotal,at51.5%and48.5%respectively.
Ofthe86auditedprojects,39attacks(45%)stilloriginatedfromvulnerabilityexploitation.Thequalitytheoverallauditmarketisnotpromising.AreviewoftheseincidentsbyBeosinfoundthatthevastmajorityofvulnerabilitiesweredetect-ableand?xableduringtheauditphase.
Noprojectsthatwereattackedduetocontractvulnerabilitiesin2022wereauditedbyBeosin.It
isrecommendedthatprojectsmustbeauditedbyaprofessionalsecuritycompanybeforetheygoliveinordertoeffectivelysafeguardassets.
StolenFundFlow
Approximately$1,396millionofstolenfundsweretransferredtoTornadoCashin2022,representing38.7%ofallfundslostinattacks.SinceTornadoCashwassanctionedbytheUSOFACinAugust,fundstransferredtoTornadoCashhavefallensigni?cantlyfromthe?rsthalfoftheyear.Only$44.85millioninstolenfundswastransferredtoTornadoCashinthefourthquarter.
In2022,approximately$289millionofstolenfundswererecovered,represent-ingonly8%ofalllosses.Thevastmajorityofthiscamefromunsolicitedreturnsfromwhitehathackers.
Around$18.2millionofthestolenfundswenttovariousexchanges.Oftenhackerswhoinvolvesmalleramountofstolenfundswouldhavetransferredassetstoexchangesimmediatelyaftertheattack.Itisparticularlyimportantforexchangestobeabletoidentifythehacker'saddressintimetoblockthetransaction.
【Allamountsareconvertedattheeventtime】
Approximately$443millioninstolenfundswerefrozenbyexchanges,withthebulkofthisamountstemmingfromtheBNBChainincidentinOctober,whenBinanceimmediatelyfroze80to90percentofthehackers'funds,resultinginanactuallossofaround$100millionforthatincident.
11
2022GlobalWeb3SecurityStatistics
RugPullsin2022
Therewere243rugpullsthroughout2022,involvingatotalamountof$425million(excludingFTXincident).
Ofthe243rugpulls,atotalof8projectshaveruggedfor$10millionormore,while210projects(approximately86.4%)ruggedwithamountsbetween$1K-$1M.
In2022,Rugpulleventswerecharacterisedbythefollowingfeatures.
Ahighnumberofruggedprojectsthroughouttheyear.Onaverage,oneprojectruggedevery1.5days.
Shortrugperiod.Mostprojectsruggedwithin3monthsaftergoinglive,that'swhymostfundingamountwereintherangebetween$1K-$1M.
Mostprojectsareunaudited.Someprojectshavehiddenbackdoorfunctionsintheircode,makingitdi?cultfortheaverageinvestorstoassessthesecurityoftheproject.
Socialmediainformationislacking.Atleasthalfoftherugpullprojectsdonothaveawell-developedwebsite,Twitteraccount,orTelegraph/Discordgroup.
Projectsarenotstandardised.Someprojectshaveo?cialwebsitesandwhitepapers,butoncloserinspectiontherearemanyspellingandgrammaticalerrors,andsomeareevenplagiarisedinlargesections.
Thenumberoftokenslaunchedundertrendingeventshasincreased.Variouskindsoftokenshaveruggedthisyear,suchasMoonbird,LUNAv2,Elizabeth,TRUMP,etc.,whichusuallygoonlinequicklyandrugwiththemoneyina?ash.
12
II.
2022CryptoCrime,
FinancialRiskandRegulation
Contributors:
HELPUniversity:LeeKhengJoo
LegalDAO:
MasterLi,VirgilHo,CarrieGan,RyanHuang,WillLiao,LouiseZhang,JoannaJing
2022CryptoCrime,FinancialRiskandRegulation
GlobalCryptoCrimeStatisticsandCases
(1)2022GlobalCryptoCrimeStatistics
AccordingtostatisticsfromBeosinKYT-thecyrptoAMLcomplianceandanalyticsplatform,globalcryptocrimesamount-edto$13.76billionfortheyear2022(?nancialcrimesareexcluded),withmoneylaunderingaccountingfor$7.33billion,attacks/exploits$3.6billion,pyramidschemes$1billionandscams$830million.
Themoneylaunderingamountaccountsfor53%oftotalcryptocrimes,someofwhichinvolvescross-bordermoneylaundering,placingahighdemandontheabilityofglobalregulatorysystemstocollaborateacrossborders.Attacksandexploits(seeSection1formoredetails)increasedsigni?cantlyin2022,withveryfewofthesecasesseeinghackersbeingarresedorassetbeingrecovered,leavinganurgentneedforglobalregulators,exchanges,users,projects,andsecuritycompaniestoworktogetherto?lltheregulatorygaps.
Pyramidschemes,whichaccountedfor$1billionin2022,ofteninvolvesalargenumberofusersandposesadangerthatshouldnotbeunderestimated.
Theglobal?guresforthecryptoscamscategorytotaled$830million,with51%ofthatamountcomingfromrugpulls.
Casesofscams
(Remark:Financialriskeventsarenotcounted)
InNovember2022,theUnitedStatesAttorney'sO?cefortheSouthernDistrictofNewYorkannouncedthatJamesZhonghadpleadedguiltytoatelecomfraud.JamesZhongwasaccusedofillegallyobtainingbitcoinsfromtheSilkRoaddarknetin2012.InNovember2021,lawenforcementseized50,676bitcoinshiddeninequipmentatthedefendant'shome,thenworthoverUS$3.36billion.TheseizurewasthenthelargestcryptocurrencyseizureinthehistoryoftheUSDepartmentofJusticeandthesecondlargest?nancialseizureeverundertakenbytheUSDepartmentofJustice.
InNovember2022,policeinLondon,England,uncoveredoneofthe"largestfraudulentoperationsintheUK'shistory,"withmorethan100peoplearrestedandapproximately£3.2million($3.9million)involved.ThecriminalsusedafraudulentwebsitecallediSpooftoimpersonateo?cialsfromwell-knownbankssuchasBarclays,Santander,andHSBCandpaidforservicesusingBitcoin,andpolicenarroweddownthesuspectsbytrackingtheBitcoinrecordsusedtopayfortheservices.
InAugust2022,FarukFatihOzer,founderoftheTurkishcryptocurrencyexchangeThodex,wasarrestedintheAlbaniancityofElbasan.HewaswantedbyTurkishauthoritiesformorethanayearonchargesofrunningafraudulentcryptocurren-cyscheme,andin2021,hereceiveda"RedNotice"fromInterpolforhisallegedinvolvementinthecountry'slargest-everfraud,wortharound$2billion.
InFebruary2022,theUSDepartmentofJusticeannouncementstatedthatBitConnectfounderSatishKumbhaniwasaccusedoforchestratingaworldwidePonzischemeinvolvingapproximately$2.4billion.TheannouncementstatedthatBitConnectwasanallegedlyfraudulentcryptocurrencyinvestmentplatformthathadamarketcapof$3.4billion.
13
II.2022CryptoCrime,FinancialRiskandRegulation
Casesofmoneylaundering
InNovember2022,theUSDepartmentofJusticeannouncedthearrestoftwoEstoniancitizenschargedwith18countsfortheirallegedinvolvementin$575millionincryptocurrencyfraudandmoneylaundering.Accordingtocourtdocuments,theydefraudedover100thousandvictimsbyinducingthemtosignfraudulentequipmentleasingcontracts.ThecaseiscurrentlybeinginvestigatedbytheUSFederalBureauofInvestigation.
InSeptember2022,DutchpoliceannouncedthearrestofamalesuspectincryptocurrencymoneylaunderingthroughBitcoinandMonerocoins,involving10million+ofeuros.Thesuspectwasidenti?edbypoliceaftertracingbitcointransac-tionsandthefundsinvolvedwerestolenfromopensourcewalletsthatwereupdatedthroughtheuseofmalware.
InFebruary2022,theUSDepartmentofJusticeannouncedthattwoindividualshadbeenarrestedonsuspicionofcrypto-currencymoneylaunderingoffences.Thecryptocurrenciesinvolvedaresuspectedtobethosestolenfromthe2016hackofthecryptoexchangeBit?nex,andthecryptocurrenciesinvolvedwereworthapproximately$4.5billionatthetimeoftheannouncement.Atthetimeoftheannouncement,lawenforcementhadseizedover$3.6billionworthofcryptocurrencyinconnectionwiththehack.
RegulatoryResponsesArisingFromFinancialRisks
In2022,thecryptomarkethasseenaseriesofblackswaneventsrepresentedbyThreeArrowsCapital,TerraLunaandFTX.Forthiscryptomarket,whichhasgrownsigni?cantlyinthepastdecade,variousjurisdictionsaroundtheworldhaveshownalackofregulations,orevenfallenintoaregulatoryvoid.Withthisbackground,theglobalWeb3highlandsareacceleratingthedevelopmentofregulatoryframeworks,andby2023theglobalcryptomarketwillhavemovedfromthe"WildWest"tothe"AgeofLaw",withglobalregula
溫馨提示
- 1. 本站所有資源如無特殊說明,都需要本地電腦安裝OFFICE2007和PDF閱讀器。圖紙軟件為CAD,CAXA,PROE,UG,SolidWorks等.壓縮文件請(qǐng)下載最新的WinRAR軟件解壓。
- 2. 本站的文檔不包含任何第三方提供的附件圖紙等,如果需要附件,請(qǐng)聯(lián)系上傳者。文件的所有權(quán)益歸上傳用戶所有。
- 3. 本站RAR壓縮包中若帶圖紙,網(wǎng)頁內(nèi)容里面會(huì)有圖紙預(yù)覽,若沒有圖紙預(yù)覽就沒有圖紙。
- 4. 未經(jīng)權(quán)益所有人同意不得將文件中的內(nèi)容挪作商業(yè)或盈利用途。
- 5. 人人文庫網(wǎng)僅提供信息存儲(chǔ)空間,僅對(duì)用戶上傳內(nèi)容的表現(xiàn)方式做保護(hù)處理,對(duì)用戶上傳分享的文檔內(nèi)容本身不做任何修改或編輯,并不能對(duì)任何下載內(nèi)容負(fù)責(zé)。
- 6. 下載文件中如有侵權(quán)或不適當(dāng)內(nèi)容,請(qǐng)與我們聯(lián)系,我們立即糾正。
- 7. 本站不保證下載資源的準(zhǔn)確性、安全性和完整性, 同時(shí)也不承擔(dān)用戶因使用這些下載資源對(duì)自己和他人造成任何形式的傷害或損失。
最新文檔
- 商標(biāo)使用權(quán)轉(zhuǎn)讓合同(三):長(zhǎng)期合作
- 簡(jiǎn)易勞動(dòng)合同簡(jiǎn)易合同
- 合同糾紛處理與學(xué)生實(shí)踐活動(dòng)方案
- 水運(yùn)聯(lián)運(yùn)代理合同及條款
- 鋼結(jié)構(gòu)加工承攬合同模板
- 林業(yè)用地承包轉(zhuǎn)讓合同樣本
- 大學(xué)合同審簽表
- 抽紗工藝的環(huán)保與可持續(xù)性考核試卷
- 天然氣開采業(yè)的可再生能源轉(zhuǎn)型實(shí)踐與方案考核試卷
- 機(jī)床附件的標(biāo)準(zhǔn)化與規(guī)范化生產(chǎn)考核試卷
- 家校共育之道
- DeepSeek入門寶典培訓(xùn)課件
- 西安2025年陜西西安音樂學(xué)院專職輔導(dǎo)員招聘2人筆試歷年參考題庫附帶答案詳解
- 《作文中間技巧》課件
- 廣東省2025年中考物理仿真模擬卷(深圳)附答案
- 2025屆八省聯(lián)考 新高考適應(yīng)性聯(lián)考英語試題(原卷版)
- 新蘇教版一年級(jí)下冊(cè)數(shù)學(xué)第1單元第3課時(shí)《8、7加幾》作業(yè)
- 2024年山東電力高等??茖W(xué)校高職單招職業(yè)技能測(cè)驗(yàn)歷年參考題庫(頻考版)含答案解析
- 《平面廣告賞析》課件
- 人教鄂教版六年級(jí)下冊(cè)科學(xué)全冊(cè)知識(shí)點(diǎn)
- (正式版)HGT 22820-2024 化工安全儀表系統(tǒng)工程設(shè)計(jì)規(guī)范
評(píng)論
0/150
提交評(píng)論