SEC Says Other Systems Secure After X Account Hack

CoinDeskPolicy发布于2024-01-12更新于2024-01-13

文章摘要

The regulator's latest update on the hack suggests it never lost access to the account.

The U.S. Securities and Exchange Commission said Friday its systems and devices were not breached by the party responsible for tweeting out a fake bitcoin ETF approval announcement earlier this week.

On Tuesday, the SEC's official X (formerly Twitter) account, @SECgov, tweeted that the agency had approved a number of spot bitcoin exchange-traded fund (ETF) applications to begin trading, a message that was ultimately shown to be faked by someone who was able to gain access to the account through the phone number associated with it. On Friday, the SEC statement provided a timeline of events on Tuesday, saying the first "unauthorized post" came at 4:11 p.m. ET (21:11 UTC), and SEC Chair Gary Gensler published his clarification 15 minutes later.

10

The statement suggested that SEC staff never lost access to the account, saying they had deleted the fake post, un-liked some other bitcoin-related tweets and shared an update on the main SECgov account within 30 minutes.

Advertisement
Advertisement

"Staff also reached out to X.com for assistance in terminating the unauthorized access to the @SECGov account. Based on information currently available, staff believe that the unauthorized access to the account was terminated between 4:40 pm ET and 5:30 pm ET," the statement said.

An SEC spokesperson said on Wednesday that the FBI was investigating the issue, adding that the SEC did not draft the message (dispelling rumors that the fake approval notice was an already planned announcement that was released prematurely). Friday's statement added that the Department of Homeland Security's Cybersecurity and Infrastructure Security Agency (CISA) are also investigating.

On Wednesday, the SEC did approve nearly a dozen bitcoin ETF applications, which began trading a day later.

The hack alarmed a number of lawmakers, who publicly demanded answers about how it happened. Senators Ron Wyden (D-Ore.) and Cynthia Lummis (R-Wyo.) published a letter on Thursday asking that SEC Inspector General Deborah Jeffrey's office open an investigation into the hack "and the SEC's apparent failure to follow cybersecurity best practices."

Future hacks could harm public markets and their stability, the letter said.

The letter followed Senators J.D. Vance (R-Ohio) and Thom Tillis (R-N.C.), who similarly asked Gensler to brief their teams on a number of questions around the hack and the SEC's decision-making on bitcoin ETFs, including how the SEC "plans to rectify any financial losses borne by investors as a result of the errant announcement."

Advertisement
Advertisement

"The SEC takes its cybersecurity obligations seriously. Commission staff are still assessing the impacts of this incident on the agency, investors, and the marketplace but recognize that those impacts include concerns about the security of the SEC’s social media accounts. The staff also will continue to assess whether additional remedial measures are warranted," the SEC's statement on Friday said.

你可能也喜欢

从兜售数据库到出售活跃会话访问权限:俄罗斯黑市如何变迁

俄罗斯暗网市场发生显著转变:犯罪分子的重点从出售大规模企业数据库,转向贩卖对用户账户的短期实时访问权限。这类通过恶意软件直接从受感染设备窃取的实时信息,其价值在过去一年上涨近13%。如今黑市上热销的不再是过时的数据档案(售价仅10-15美元),而是包含活跃会话令牌、有效密码、VPN及云存储凭证、企业网络管理权限等能实现即时入侵的工具包。订阅提供每日新鲜数据流的私密频道,每月费用高达250-300美元,市场为时效性而非数据量付费。 官方统计显示,自2024年以来,大规模数据泄露事件数量因严厉制裁而减少,监管机构也对造成泄露的企业处以罚款。然而,这种监管模式对新威胁模型失效。恶意软件是在数据离开企业防护边界、到达个人设备后才实施窃取,企业数据库形式上未受损,从而规避了监管机制。 这种在终端设备上截取数据的方式可绕过多因素认证等企业多层防护。2026年上半年,约60%的Web攻击旨在获取入侵企业内部系统的密钥。一个受感染的员工设备就足以使受保护网络门户大开。 当前趋势与国际网络犯罪演变路径一致,类似Genesis Market的模式此前已被取缔。但这并未消除感染源,只是转移了销赃渠道。这种模式还催生结构性风险:对“新鲜”数据的持续需求,激励僵尸网络运营商长期维持受感染设备的活跃状态,将其变为持续收入来源。 核心矛盾在于,攻击发生在企业防护边界与个人设备之间的监管空白地带。随着远程操作普及,能同时访问多个服务的短期令牌价值将持续攀升,而现有保护法规对此领域尚难有效覆盖。

cryptonews.ru1小时前

从兜售数据库到出售活跃会话访问权限:俄罗斯黑市如何变迁

cryptonews.ru1小时前

交易

现货
活动图片