MistTrack, the investigative wing of SlowMist, identified private key leaks as the top cause of crypto thefts in Q2 2024. The leaks stemmed from storing private keys on cloud services like Google Docs and sending sensitive info via platforms like WeChat.
Hackers used “credential stuffing” to access victims’ accounts and steal crypto-related data. Fake wallet apps, such as a counterfeit imToken on apkcombo, also contributed to these leaks. A similar fake Phantom wallet bypassed Apple’s app store and drained crypto assets.
Honeypot scams, especially on Binance Smart Chain, were common in Q2 2024, trapping investors in bogus projects. Crypto thefts since 2011 have cost $20 billion, with $176.2 million stolen in June 2024 alone.
Understanding these threats is crucial for securing crypto assets in the long term.