Monday, May 12, 2025
ModernCryptoNews.com
  • Crypto
  • NFTs & Metaverse
  • DeFi
ModernCryptoNews.com
No Result
View All Result

Squarespace Domains Vulnerable to DNS Hijacking

July 12, 2024
Reading Time: 5 mins read
0
Squarespace Domains Vulnerable to DNS Hijacking


DeFi apps on Squarespace are susceptible to a DNS hijacking assault that redirects customers to malicious websites. Over 120 DeFi protocols are doubtlessly susceptible, together with Compound and Celer Community. Be taught extra in regards to the DeFi safety threat and methods to defend your self.

DeFi (Decentralized Finance) has emerged as a revolutionary pressure within the monetary world. By leveraging blockchain expertise, DeFi purposes purpose to empower customers with extra management over their funds with no interference from intermediaries. Nevertheless, a latest safety breach has uncovered a vulnerability in DeFi apps hosted on Squarespace, a preferred website-building platform.

The assault concerned hackers hijacking the Area Title System (DNS) data of DeFi purposes. DNS acts because the phonebook of the web, translating human-readable domains into numerical IP addresses that computer systems can perceive. 

This area registry assault, which occurred on July 11, 2024, doubtlessly affected round 128 DeFi protocols. Oxngmi, a developer on the blockchain analytics platform DefiLlama shared a list of what they marked as a “Record of domains which are registered with Squarespace and thus may very well be susceptible.”

celer.community
pendle.finance
karak.community
compound.finance
hyperliquid.xyz
dydx.change
thorchain.com
threshold.community
nostra.finance
axelar.community
ariesmarkets.xyz
amnis.finance
mendi.finance
vertexprotocol.com
hop.change
polymarket.com
ouchi.finance
cellana.finance
orderly.community
aftermath.finance
yieldyak.com
evaa.finance
idle.finance
aftermath.finance
time period.finance
steer.finance
wrapped.com
bitcow.xyz
hover.market
herewallet.app
pooltogether.com
xwin.finance
flat.cash
kokonutswap.finance
mstable.org
klaybank.org
premia.finance
port.finance
antfarm.finance
sailingprotocol.org
d8x.change
pooltogether.com
apricot.one
tbtc.community
saddle.finance
toucan.earth
yieldyak.com
lockon.finance
aloe.capital
starlay.finance
unsheth.xyz
definix.com
stcelo.xyz
satoshiprotocol.org
fractional.artwork
stabble.org
kagla.finance
sonne.finance
dackieswap.xyz
88mph.app
ion.wtf
rift.finance
tashi.finance
premia.finance
layer2.finance
dackieswap.xyz
liquidfinance.xyz
tranche.finance
phoenixfi.app
fodl.finance
sailingprotocol.org
snowswap.org
rskswap.com
muuu.finance
sense.finance
aux.change
loanshark.tech
choice.dance
viamover.com
metastreet.xyz
chainlist.org
jibswap.com
mare.finance
blastbrrr.com
unifiprotocol.com
auragi.finance
summitdefi.com
kassandra.finance
mozaic.finance
archimedesfi.com
3xcalibur.com
dirac.finance
thedragonslair.farm
thegeniustoken.com
esper.finance
astrofi.org
ohmycrypt.com
xbank.finance
nirvana.finance
mare.finance
thorchain.org
olympusdao.finance
avalaunch.app
syncbond.com
gyro.cash
rvrs.app
tempus.finance
uncommon.fyi
ferrum.community
looksrare.org
ratio.finance
opulous.org
nftearth.change
pxswap.xyz
aptoslabs.com
unifiprotocol.com
basis.app
florence.finance
close to.org
secure.international
mantadao.app
meowl.xyz
aftermath.finance
litecoin.org
flare.community
tna-btc.com

In line with Blockchain safety platform Blockaid’s investigation the attacker took management of the DNS registry for Compound Finance and tried to manage Celer Community’s registry. By compromising the DNS data, they have been in a position to intercept authentic DeFi platforms and redirect customers to phishing websites for delicate info and funds theft.

❗️This incident continues to be ongoing – we’re seeing new malicious websites impersonating extra manufacturers being created by the identical attackers.

We urge tasks to double verify their area safety settings – be happy to achieve out by DM for extra safety steerage. https://t.co/B2L7JRpzCR

— Blockaid (@blockaid_) July 12, 2024

The assault was detected after customers famous that Compound’s interface led to a malicious web site that includes a token-draining utility, and Celer Community confirmed an tried area takeover, which its monitoring system efficiently thwarted. Each acknowledged the assault in separate statements.

Additional probing revealed that the attacker is particularly focusing on Squarespace domains, which places each DeFi app with a Squarespace area in danger.

In response to the assault, MetaMask, a preferred Web3 pockets, has implemented a warning system to flag doubtlessly compromised DeFi apps. This extra layer of safety goals to guard customers from unknowingly interacting with malicious web sites.

Whereas the precise strategies employed by the attackers stay beneath investigation, it’s speculated that the assault vector probably originated from Google area accounts utilized by these protocols. To your info, Squarespace acquired round 10 million domains hosted on Google Domains for $180 million in 2023. This acquisition may have offered attackers with a possible foothold to achieve entry to delicate DNS info.

The DeFi area continues to be in its early levels, and safety stays a big concern. In December 2023, an attacker injected malicious code into the Ledger Join library, affecting the Ethereum Digital Machine ecosystem.

These incidents spotlight the necessity for DeFi builders to prioritize sturdy safety measures and for customers to train warning when interacting with DeFi apps, particularly these constructed on much less rigorous safety practices.

RELATED TOPICS

  1. We Need Smarter Smart Contracts To Prevent DeFi Hacks
  2. New ‘NKAbuse’ Linux Malware Uses Blockchain Tech to Spread
  3. SnatchCrypto attack hits DeFi, Blockchain Platforms with backdoor
  4. Hackers Exploit Harmony’s Horizon Blockchain Bridge to Steal $100M
  5. LAZARUS APT Using TraderTraitor Malware to Target Blockchain Orgs





Source link

RELATED POSTS

DAO Tokyo — Unstoppable Protocol – Norbert Gehrke

Will These DeFi Tokens Surge 10X This Altcoin Season? – Coinpedia Fintech News

Quick Guide to Effective REI Network Airdrop Claims | by Jordain Rotberg DeFi | Aug, 2024 – Medium

ADVERTISEMENT
Tags: DNSDomainsHijackingSquarespacevulnerable
ShareTweetPin
wpadministrator

wpadministrator

Related Posts

Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

DAO Tokyo — Unstoppable Protocol – Norbert Gehrke

August 25, 2024
Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

Will These DeFi Tokens Surge 10X This Altcoin Season? – Coinpedia Fintech News

August 24, 2024
Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

Quick Guide to Effective REI Network Airdrop Claims | by Jordain Rotberg DeFi | Aug, 2024 – Medium

August 24, 2024
Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

Smart Ethereum Whales Bet Big on Polygon (MATIC) and This Hidden DeFi Token, but Why – The Portugal News

August 24, 2024
Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

OKX Wallet Integrates Aurelius Finance, Enhancing DeFi Lending Options – GlobeNewswire

August 24, 2024
Dogecoin traders should be on the lookout for THIS support level – AMBCrypto News
DeFI

Trump Jr. wants to 'make finance great again' with new DeFi project – Crypto Briefing

August 23, 2024
Next Post
Blockchain will free govt. while strengthening privacy, says Glubish

Blockchain will free govt. while strengthening privacy, says Glubish

Market Signal That Preceded a 400% Altcoin Rally in 2020 Currently Flashing Bullish, Say Glassnode Co-Founders

Market Signal That Preceded a 400% Altcoin Rally in 2020 Currently Flashing Bullish, Say Glassnode Co-Founders

Recommended

Investor Chris Burniske Explains How Memecoins Will Force Change in Valuation Approach for Other Crypto Projects

Investor Chris Burniske Explains How Memecoins Will Force Change in Valuation Approach for Other Crypto Projects

November 17, 2024
Crypto Analyst Sounds Buy Alarm For Dogecoin

Crypto Analyst Sounds Buy Alarm For Dogecoin

April 21, 2024
SHIB Shows Unusually High Strength Against Dogecoin

SHIB Shows Unusually High Strength Against Dogecoin

May 30, 2024

Popular Stories

  • What are rebase tokens, and how do they work?

    0 shares
    Share 0 Tweet 0
  • Crypto Whales Gobble Up Over $76,000,000 Worth of Ethereum-Based Altcoin in One Week, Says Analyst

    0 shares
    Share 0 Tweet 0
  • Coinbase CEO Brian Armstrong Says ‘Just Bitcoin’ the Best Option for US Crypto Strategic Reserve

    0 shares
    Share 0 Tweet 0
  • Crypto Trading Platform BitMEX Pleads Guilty To Bank Secrecy Act Violations

    0 shares
    Share 0 Tweet 0
  • Bitcoin, Ethereum, Dogecoin Edge Higher As Market Cheers Solana Spot ETF Filing: Analyst Forecasts King Crypto’s Bounce To $66K If This Condition Holds – Emeren Group (NYSE:SOL)

    0 shares
    Share 0 Tweet 0
No Result
View All Result

Recent News

XRP Network Activity Jumps 67% In 24 Hours – Big Move Ahead?

XRP Network Activity Jumps 67% In 24 Hours – Big Move Ahead?

April 23, 2025
Crypto Industry Contributed $18 Million To Trump’s Inauguration, Ripple Among The Top Donors

Crypto Industry Contributed $18 Million To Trump’s Inauguration, Ripple Among The Top Donors

April 23, 2025

Categories

  • Altcoins
  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • DeFI
  • Dogecoin
  • Ethereum
  • Market & Analysis
  • NFTs
  • Regulations
  • Xrp

Follow us

Recommended

  • XRP Network Activity Jumps 67% In 24 Hours – Big Move Ahead?
  • Crypto Industry Contributed $18 Million To Trump’s Inauguration, Ripple Among The Top Donors
  • XRP Tops Weekly Crypto Inflows Despite Market Volatility – The Crypto Times
  • XRP Price Could Soar to $2.4 as Investors Eye Two Crucial Dates
  • XRP Eyes $2.35 Breakout, But $1.80 Breakdown Threatens Bearish Shift – TronWeekly

© 2023 Modern Crypto News | All Rights Reserved

No Result
View All Result
  • Crypto
  • NFTs & Metaverse
  • DeFi

© 2023 Modern Crypto News | All Rights Reserved