CryptoMediaClub
Tuesday, June 17, 2025
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis
No Result
View All Result
CryptoMediaClub
No Result
View All Result
Home All news

3Commas Suffers Security Incident

10.10.2023
A A
0
122
VIEWS
ShareShare

3Commas, a popular crypto trading bot, provides smart trading solutions for investors worldwide.

Unfortunately, the popularity of the tool also makes it a big glowing target for bad actors, who are sometimes successful in their attempts at getting ahold of user data – or even the bot’s API data.

Fortunately, the most recent attack was far more limited in scope.

Unauthorized Trades Reported

Towards the end of the weekend, 3Commas began receiving reports from users who saw that unauthorized trades were being made on their accounts.

Although the whole point of the trading bot is to allow automated – or nearly automated – trades, these operations still generally require inputs and guidelines from the user, which quickly ruled out an issue with the bot’s software.

After a preliminary investigation – which is being followed up by an internal one – the devs noticed that these trades took place shortly after the affected users had reset their passwords, pointing to a data breach whose author is as of yet unknown.

Lack of 2FA Was The Likely Culprit

The users’ API data and passwords themselves, however, had not been compromised. Most of the accounts affected also lacked Two-Factor Authentication, which could help the devs locate the attackers’ point of entry better.

“Our current understanding is that a security incident took place, which presumably resulted in unauthorized access to customer account data. Fortunately, in only a few customer accounts were passwords reset and alleged unauthorized trades conducted. The latter mainly affected customers who had not enabled two-factor authentication (2FA). Please note that the data accessed did not include your API secret data and account passwords.”

Until the investigation is concluded, 3Commas devs have advised users to change their passwords and enable 2FA if they have not done so already.

Since unauthorized trades had previously taken place shortly after a password reset, the devs implemented a stopgap measure that disconnects the user from the API after a password reset.

In order to start trading again, a user has to reconnect manually, preventing a bad actor from hijacking their account.

Unfortunately, the event has caused yet another loss of reputation for 3Commas, whose userbase pointed out that over three security breaches had taken place in less than a year and who are, understandably, quite upset.

SPECIAL OFFER (Sponsored) Binance Free $100 (Exclusive): Use this link to register and receive $100 free and 10% off fees on Binance Futures first month (terms).
PrimeXBT Special Offer: Use this link to register & enter CRYPTOPOTATO50 code to receive up to $7,000 on your deposits.

Share9Tweet6ShareSharePin2

Related Posts

Trump’s Truth Social Wants to Launch a Bitcoin & Ethereum ETF – Here’s What That Could Mean
All news

Trump’s Truth Social Wants to Launch a Bitcoin & Ethereum ETF – Here’s What That Could Mean

17.06.2025
0

Key Takeaways: Trump Media & Technology Group has filed to launch a Bitcoin and Ethereum ETF, with Crypto.com as custodian...

Read moreDetails
ChatGPT’s o3 Pro Reveals Shocking DOGECOIN Price Prediction as It Tests Key $0.175 Support

ChatGPT’s o3 Pro Reveals Shocking DOGECOIN Price Prediction as It Tests Key $0.175 Support

16.06.2025
Breaking: Tron ($TRX) Plans US Public Offering – What This Means for Crypto

Breaking: Tron ($TRX) Plans US Public Offering – What This Means for Crypto

16.06.2025
Telegram Gets Its First Native DeFi Lending App With Affluent Launch

Telegram Gets Its First Native DeFi Lending App With Affluent Launch

16.06.2025
Shopify Launches USDC Cross-Border Payments in 34 Countries

Shopify Launches USDC Cross-Border Payments in 34 Countries

16.06.2025
Load More
Next Post
Polygon (MATIC) rally comes to an end as competitors devour market share

Polygon (MATIC) rally comes to an end as competitors devour market share

0 0 votes
Рейтинг статьи
Subscribe
Notify of
guest
guest
0 комментариев
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Recommended

South Korean Election: How Will 6 Million Crypto Traders Vote?

South Korean Election: How Will 6 Million Crypto Traders Vote?

1 year ago
MetaMask Refutes $10.5M Hack Claim Pointing Towards Wallet Exploit

MetaMask Refutes $10.5M Hack Claim Pointing Towards Wallet Exploit

2 years ago
Is the AI Agent Increase Price Investing in 2025?

Is the AI Agent Increase Price Investing in 2025?

5 months ago
Metaplanet Issues Fresh $210M Bonds to Evo Fund, ‘All Bitcoin,’ Says CEO

Metaplanet Issues Fresh $210M Bonds to Evo Fund, ‘All Bitcoin,’ Says CEO

16 hours ago

Categories

  • All news
  • Altcoins
  • Analysis
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
No Result
View All Result

Highlights

Telegram Gets Its First Native DeFi Lending App With Affluent Launch

Investors price Metaplanet’s 10k Bitcoin holdings at $759k each as stock hits ¥1 trillion

Shopify Launches USDC Cross-Border Payments in 34 Countries

HYPE Explodes 10% to New All-Time High Above $44 – Is This the Top?

Bitcoin Whales and Retail Investors: Powerful Signal as Holding Reaches New Lows

Bitcoin surges past $107k as crypto market defies global unrest over Israel-Iran tensions

Trending

Trump’s Truth Social Wants to Launch a Bitcoin & Ethereum ETF – Here’s What That Could Mean
All news

Trump’s Truth Social Wants to Launch a Bitcoin & Ethereum ETF – Here’s What That Could Mean

17.06.2025
0

Key Takeaways: Trump Media & Technology Group has filed to launch a Bitcoin and Ethereum ETF, with...

ChatGPT’s o3 Pro Reveals Shocking DOGECOIN Price Prediction as It Tests Key $0.175 Support

ChatGPT’s o3 Pro Reveals Shocking DOGECOIN Price Prediction as It Tests Key $0.175 Support

16.06.2025
Breaking: Tron ($TRX) Plans US Public Offering – What This Means for Crypto

Breaking: Tron ($TRX) Plans US Public Offering – What This Means for Crypto

16.06.2025
Telegram Gets Its First Native DeFi Lending App With Affluent Launch

Telegram Gets Its First Native DeFi Lending App With Affluent Launch

16.06.2025
Investors price Metaplanet’s 10k Bitcoin holdings at $759k each as stock hits ¥1 trillion

Investors price Metaplanet’s 10k Bitcoin holdings at $759k each as stock hits ¥1 trillion

16.06.2025
  • All news
  • Altcoins
  • Bitcoin
  • Blockchain
  • Ethereum
  • NFT
  • Analysis
Editor: cryptomediaclub.com@gmail.com
Advertising: digestmediaholding@gmail.com

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

No Result
View All Result
  • All news
  • Bitcoin
  • Ethereum
  • Altcoins
  • NFT
  • Blockchain
  • Analysis

Disclaimer: Information found on CryptoMediaClub is those of writers quoted. It does not represent the opinions of CryptoMediaClub on whether to sell, buy or hold any investments. You are advised to conduct your own research before making any investment decisions. Use provided information at your own risk.
CryptoMediaClub covers fintech, blockchain and Bitcoin bringing you the latest crypto news and analyses on the future of money.

© 2023 Crypto News. All Rights Reserved

wpDiscuz