Genesis Global Trading Pays $8M to Settle New York Lawsuit

CoinDeskPolicyОпубліковано о 2024-01-11Востаннє оновлено о 2024-01-12

Анотація

The crypto lender also agreed to cease its business activities in New York and forfeit its BitLicense to settle anti-money laundering and fraud charges against it.

Genesis Global Trading has agreed to pay $8 million and give up its BitLicense to settle anti-money laundering and fraud charges against it, New York State Department of Financial Services (DFS) Superintendent Adrienne A. Harris said Friday in a statement.

“Genesis Global Trading’s failure to maintain a functional compliance program demonstrated a disregard for the Department’s regulatory requirements and exposed the company and its customers to potential threats,” Superintendent Adrienne Harris said in a statement first seen by Fortune.

7.3K

Under the settlement, Genesis will also cease its operations in the state. The agreement comes amid an ongoing lawsuit filed in October by the New York Attorney General's Office that alleges Genesis Global defrauded investors by covering up more than $1 billion in losses alongside its parent company Digital Currency Group and Gemini Trust.

Advertisement
Advertisement

The NYAG's office did not immediately return a request for comment on what the settlement would mean for that case. Genesis did not immediately respond to CoinDesk's request for comment.

Genesis has faced a slew of legal troubles since last year. In January, the Securities Exchange Commission (SEC) charged Genesis with selling billions of dollars worth of unregistered securities to hundreds of thousands of investors. The firm declared bankruptcy that month and remains in court proceedings to recover millions of dollars of lost investor funds as of the time of writing.

Edited by Nikhilesh De.

Пов'язані матеріали

Access to Active Sessions Instead of Databases: How the Shadow Market in Russia Has Changed

The Russian cybercriminal underground is shifting from selling massive, stolen corporate databases to trading active, short-term access to user accounts, according to a 2026 report. The value of information intercepted directly from infected devices by malware has risen nearly 13% in a year. Attackers now sell packets containing active session tokens (bypassing passwords and two-factor authentication), live email credentials, VPN and cloud storage logins, and corporate network access. A subscription for a steady stream of fresh data costs $250-$300 per month, far exceeding the value of outdated archives. While Russian regulators have successfully penalized companies for data leaks from centralized storage—with no repeat violations recorded after imposing turnover fines—this framework fails against the new threat model. Malware now steals data *after* it leaves the corporate perimeter and is on a user's personal device, a legal grey area. In 2026, 60% of studied web attacks aimed to steal keys for infiltrating corporate infrastructure. The situation mirrors global trends, akin to the Genesis Market shutdown in 2023, and highlights a structural risk: the demand for "fresh" data incentivizes botnet operators to maintain long-term control of infected devices for recurring revenue. This creates a persistent vulnerability layer between personal devices and corporate networks, currently outside the reach of existing regulatory protections.

cryptonews.ru1 год тому

Access to Active Sessions Instead of Databases: How the Shadow Market in Russia Has Changed

cryptonews.ru1 год тому

SlowMist Flags Fake Qwen 3.8 27B GitHub Repository Concealing StealC Information

SlowMist has identified a fake GitHub repository impersonating Alibaba's Qwen 3.8 27B AI model, which contains an information-stealing virus. The repository, created in August 2026, offered a download file of only 487 KB, far smaller than a legitimate 27-billion-parameter model (over 16 GB). The malicious ZIP file contained a Lua-based script disguised as a certificate, which deploys the StealC malware. Once executed, StealC harvests system data, takes screenshots, and steals browser credentials, cryptocurrency wallet information, and more, sending it to attacker-controlled servers. The malware also includes a backup system that can read new server addresses from the Polygon blockchain if the primary server is taken down. This incident is part of a broader campaign called FakeGit, active since March 2025, which has created thousands of malicious repositories. Approximately 800 of these specifically target AI tools using a method called AgentBaiting, sometimes tricking AI assistants into recommending them. Separate reports detail hundreds of other fake GitHub repositories spreading malware like BoryptGrab and campaigns like Megalodon that generate thousands of clones rapidly. Attackers copy legitimate projects, create convincing documentation, and even list them on public AI registries to appear trustworthy. The fake repositories exploit the high demand for open-source AI capabilities, putting users who run models locally at significant risk of data theft.

cryptonews.ru1 год тому

SlowMist Flags Fake Qwen 3.8 27B GitHub Repository Concealing StealC Information

cryptonews.ru1 год тому

Торгівля

Спот
活动图片