版权说明:本文档由用户提供并上传,收益归属内容提供方,若内容存在侵权,请进行举报或认领
文档简介
BE
OSIN
022
GlobalWeb3
SecurityReport2022
&CryptoRegulatoryComplianceResearch
CONTENTS
I.2022GlobalWeb3SecurityStatistics
01
TopTenSecurityIncidentsin2022 04
TypesofAttackedProject 07
LossbyChain 08
AttackType 09
AuditAnalysis 11
StolenFundFlow 11
RugPullsin2022 12
II.2022CryptoCrime,FinancialRiskandRegulation 13
GlobalCryptoCrimeStatisticsandCases 13
RegulatoryResponsesArisingFromFinancialRisks 14
RegulatoryComplianceinDifferentCountries&Regions 16
2023GlobalRegulatoryandPolicyOutlook 25
III.SecurityGuidelinesforWeb3Users 26
PrivateKey&SeedPhrase 26
PhishingWebsites 27
IV.Beosin's2023BlockchainSecurityIndustryOutlook 28
BeosinSecurityProduct 29
AboutBlockchainSecurityAlliance 30
AboutBeosin 30
AboutLegalDAO 30AboutBuidlerDAO 30AboutFootprintAnalytics 30
CONTACTUS 31
Preface
Astheblockchainindustryushersinanewperiodofdevelopmentin2022,varioussecurityrisksarealsoemerging.Thehighoccurrenceofblockchainsecurityincidentsthatemergeoneafteranotherhasbeenaseriouschallengetotheblockchainindustry.
FromBeosin'sstatisticsin2022,multipleprojectshavebeenhackedandthehugeeconomiclosseshaveseriouslyaffectedthesecurityandstabilityoftheblockchainecosystem.
Intermsofregulationandcompliance,thereisstillalongwaytogotoimproveandestablishtherelevantsystemofblockchainindustry,andtheinterventionofrelevantdepartmentsandeffectivepromotionofindustrypractitionersareurgentlyneeded.Thecurrentdevelopmenttrendoftheblockchainindustryisgenerallypositiveandthefuturedevelopmentpotentialispromising,butitisalsoimportanttorecognizethatthechaoticsecuritysituationandmulti-facetedsecuritychallengesurgentlyrequirethestrengthen-ingofblockchainsecurityregulationandcompliance.
Inthis'GlobalWeb3SecurityReport2022&CryptoRegulatoryComplianceResearch',wewillrecaponthetop10securityincidentsandanalyzetheglobalWeb3securitystatisticsfrommultipledimensionsinsectionone.Thesecondsectionwillintroduceglobalcryptocrimestatistics,majorfinancialevents,andregulatorycomplianceindifferentcountriesorregions.Insectionthree,securityguidelinesandsolutionswillbeprovidedforweb3users.ThefinalsectionisBeosin's2023outlookontheblockchainsecurityindustry.
SECURING
BLOCKCHAINECOSYSTEM
I.
2022
GlobalWeb3SecurityStatistics
Contributors:
Beosinresearchteam-Mario,Donny
Datasource(AsofDec20,2022):
work/@Beosin/Footprint-Beosin-2022-Report
I.2022GlobalWeb3SecurityStatistics
In2022,BeosinEagleEyemonitoredover167majorattacksintheWeb3space,withatotallossofapproximately$3.6billionfromalltypesofattacks,anincreaseof47.4%from2021.Ofthese,10securityincidentslostover$100millioninasingleattackandlossesof21securityincidentsrangedfrom$10millionto$100million.
Byprojecttype,the12cross-chainbridgeincidentshavecausedatotallossofapproximately$1.89billion,rankingfirstamongallprojecttypes.DeFi-typeprotocolswereattacked113times,orabout67.6%ofthetotalattacks,makingitthemostfrequentlyattackedprojecttype.
Atotalof20publicblockchainshadmajorsecurityincidentsin2022,withthetopthreebyamountlostbeingEthereum,BNBChain,andSolana;andthetopthreebynumberofattacksbeingBNBChain,Ethereum,andSolana.
Vulnerabilityexploitsrankedhighestinbothfrequencyandlossthroughouttheyear,with$1.458billionlostin87vulnerabili-tyexploits.
Ofthe167majorattacksmonitoredin2022,auditedandunauditedprotocolsaccountedforroughly50/50,at51.5%and48.5%respectively.
Approximately$1,396millionofstolenfundsweredepositedintoTornadoCashin2022,representing38.7%ofthefundslostinallattacks.Only8%ofthestolenfundswererecoveredfortheyear,oraround$289million.
01
I.2022GlobalWeb3SecurityStatistics
Globalcryptocrimesamountedto$13.76billionfortheyear2022(financialcrimesareexcluded),withmoneylaunderingaccountingfor$7.33billion,attacks/exploits$3.6billion,pyramidschemes$1billionandscams$830million.
Amongthescamsin2022,243Rugpullshaveinvolvedatotalamountof$425million(excludingthe$440millionFTXevent).Approximately86.4%oftheprojectruggedwithfundsintherangeof$1k-$1M.
02
I.2022GlobalWeb3SecurityStatistics
GlobalTVLshranksignificantlyin2022,endingtheyearwithTVLdownapproximately80%fromitspeakatthebeginningoftheyear.ThemarketwasheavilyimpactedbyaseriesofblackswaneventsrepresentedbyThreeArrowsCapital,TerraLunaandFTX.
Despiteasignificantshrinkageinglobalcryptomarketcap,theoverallcrimefigureforblockchainin2022stillreached$13.7billion,withasignificantincreaseinattackscomparedto2021.Thepast2022wasatoughyearforglobalblockchainsecurityingeneral,andwillplacehigherandmoreurgentdemandsonthesecurityindustryin2023.Combatingrampanthacking,acceleratingtheestablishmentofaglobalregulatorysystem,andbringingabouttechnologicalbreakthroughstoaddressexistingindustryshortcomings-thesewillbethekeyissuestobeconsideredandurgentlyaddressedin2023.
03
2022GlobalWeb3SecurityStatistics
TopTenSecurityIncidentsin2022
No1.RoninNetwork
Loss:$624Million AttackType:Socialengineering
On29March2022,theAxieInfinitysidechainRoninwasattackedandapproximately$624millionincryptocurrencywasstolen.Thehackersusedthestolenprivatekeytoforgeawithdrawalcredential,whichrequiredatleastfivevalidators,andeventuallytheattackersmanagedtotakecontroloffivevalidatorstostealthefunds.
Accordingtotheinvestigation,thehackerssentafakeofferlettertoSkyMavis'engineersbywayofsocialengineering,andthedocumentallowedthehackerstocompromiseRonin'ssystem.Aftertheattack,thestolenassetsweresenttomultipleaddressesandlaunderedinbatchesthroughTornadoCash.On20May,theRoninattackerstransferredthelastbatchoffundstoTornadoCashandallassetswerelaundered.On28June,RoninannounceditsreopeningonTwitter.
Beosinsecurityteamgavethefollowingrecommendationsforsuchcross-chainbridgeprojects:1.Payattentiontothesecurityofvalidator;2.Whenthesignatureserviceistakenofflineintherelevantbusiness,thepolicyshouldbeupdatedintimetoclosethecorrespondingservicemodule,andthecorrespondingsignatureaddresscanbediscarded;3.Inmulti-sig-natureverification,themulti-signatureserviceshouldbelogicallyisolatedfromeachother,andthesignaturecontentshouldbeverifiedindependently;4.Theprojectownershouldmonitortheabnormalsituationoffundsinrealtime.
No2.BSCTokenHub(BNBChain)
Loss:$560Million AttackType:Blockchainvulnerability
On7October2022,BNBChain'scross-chainbridgeTokenHubwashacked.Thehackerfirstpaid100BNBtoregisterasaRelayerbycallingthecontractatblockheight21955968,andthenacquiredatotalof2millionBNBfromBNBChain'sTokenHubcontract.Thehackerthenpledged900,000oftheseBNBsonBNBChain'slendingprotocolVenusandborrowedout62.5millioninBUSD,50millioninUSDT,and35millioninUSDC.
BeosinsecurityteamfoundthatduetotheBSCTokenHubusedaspecialpre-compiledcontractforvalidatingtheIAVL
treewhenperformingcross-chaintransactionverification.Theimplementationisvulnerable,allowinganattackertoforgearbitrarymessages.
On24October,BinancefounderChangpengZhaosaidthatthescopeoftheattacker'sidentityhadbeennarroweddownwiththehelpoflawenforcement.Inaddition,CZsaidBinancewasabletofreezeabout80to90percentofthestolenfunds,withactuallossesintherangeof$100million.
04
I.2022GlobalWeb3SecurityStatistics
No3.FTX:Hackorrugpull?
Loss:$440Million AttackType:Suspectedrugpull
On15November2022,shortlyafterFTXdeclaredbankruptcy,FTXwasannouncedthatithadbeenhacked.Approximately
$440millionwasstolen.Theadministratorsentamessagetotheofficialtelegramgroupstatingthatthebankruptplatformhadbeenhackedandthatallapplicationsweremalware.Theadministratoradviseduserstodeletetheappandnottovisitthesiteoropentheirapps,asthiswouldlikelycontainaTrojanhorse.Therearestillmanyunknowns,manybelievethatthisislikelytobeaninsideroperation.
No4.Wormhole
Loss:$326Million AttackType:Contractvulnerability-validationissue
On3February2022,Wormholewashacked,resultinginalossofapproximately$326million.AnalysisbytheBeosinsecurityteamfoundthatthehackershadexploitedasignatureverificationvulnerabilityinWormholecontractsthatallowedhackerstoforgesysvaraccountsinordertomintwETH.ThevulnerabilityhadbeenpatchedinSolana1.9.4andwasstillsubjecttoareviewprocessbeforeitwasfinallylive,andthehackerstookadvantageofthisgaptoattackcontractsstillusingSolana1.8contracts.
Followingtheattack,Wormholeannouncedthatithadrestoreditscross-chainbridgefundingandwasbackonline.CryptoinvestmentfundJumpCryptoannouncedon4Februarythatithadinvested120,000EthertocoverthelossoftheincidentinordertosupportWormhole'scontinuedgrowth.
No5.Nomadbridge
Loss:$190Million AttackType:Contractvulnerability-validationissue
On2August2022,Nomad,across-chainbridgeprotocol,wassubjectedtoamassivehackthatinvolvedover500hackeraddressesandcausedalossof$190million.Beosinsecurityteamanalysedthetransactionandfoundthattheprojectownerhadincorrectlyadded0x000...000asanacceptableroot,causingthejudgementtohold,thusallowingtheattackertowithdrawthefundsinthecontract.
Asaresult,anyattackercouldsimplycopythefirsthackedtransactionandreplaceitwithanunusedattackaddress,thenclicktosenditthroughEtherscantostealthefunds.Also,sinceitwastheReplicacontractthatwasvulnerable,allitscorrespondingBridgeRouter-relatedDAppswereaffected,sothestolenfundsexhibitedamulti-tokennature.
OnAugust3,Nomadreleasedanotetocallonwhitehathackerstoreturnthestolenfunds.AsofAugust15,theprojecthasrecovered$37million.
No6.Beanstalk
Loss:$182Million AttackType:Flashloan
OnApril17,2022,thealgorithmicstablecoinprojectBeanstalkFarmssufferedaflashloanattack,withtheprotocollosing
$182millionandtheattackersmakingaprofitof$80million.Theattackerstransferredtheentire$80milliontoTornadoCashsoonaftertheattack.
Theattackersinitiatedaproposalonedaybeforetheattack,whichwillwithdrawthefundsfromtheBeanstalkProtocolcontract.Thehackergainedalargereserveoffundsviaflashloan,whichwasthenswappedrepeatedly.Afinalvoteontheproposalresultedinitsbeingpassed.Inresponsetothisincident,theBeosinsecurityteamrecommendsthat:1.thefundsusedforvotingshouldbelockedinthecontractforacertainperiodoftimeandavoidusingthecurrentfundbalanceoftheaccounttocountthenumberofvotes;2.theprojectownerandthecommunityshouldpayattentiontoallproposalsand,ifamaliciousproposaloccurs,itisrecommendedtodiscardtheproposal;3.Considerbanningcontractaddressesfromvoting.
05
I.2022GlobalWeb3SecurityStatistics
No7.Wintermute
Loss:$160Million AttackType:Privatekeycompromise
OnSeptember20,2022,Wintermutelost$160millionintheDeFihack.AnalysisbyBeosinsecurityteamfoundthattheattackersfrequentlyexploited0x0000000fe6a...addresstocallthe0x178979aefunctionofthe0x00000000ae34...con-tracttotransfermoneytotheattacker'scontract.Bydecompilingthecontract,itwasfoundthatcallingthe0x178979aefunctionrequiredpermissionchecks,andbyqueryingthefunction,itwasconfirmedthatthe0x0000000fe6aaddresshadsetCommonAdminpermissions,andthattheaddresshadnormalinteractionwiththecontractbeforetheattack,soitcouldbeconfirmedthatthe0x0000000fe6a'sprivatekeywascompromised.
On21September,WintermuteconfirmedthatithadusedProfanityandaninternaltooltocreatewalletaddressesinJune,andthattheProfanitytoolwasatriskofprivatekeybursting.
No8.Mangomarkets
Loss:$116Million AttackType:Pricemanipulation
OnOctober12,2022,theMangoprotocolonSolanawashacked,approximately$116millionwaslost.Thehackersusedtwoaccountsandatotalof10millionUSDTasstartingfundstoleverage100+millionofassets.ThemainreasonforthisattackwastheleveragedcontractdidnotlimitthepositionsthatMangocouldopen,allowingtheattackerstoraisethepriceofMangotokensforprofit.
No9.Elrond
Loss:$113Million AttackType:VMissue
OnJune5,2022,theblockchainnetworkElrondwashacked,withhackers"obtaining"nearly1.65millioninEGLDsanddumpingthroughthedecentralisedexchangeMaiar,causing$EGLDstoplummetby92%.
Elrondhaspostedapost-mortemthattheattackersdidnotexploitanysmartcontractcodevulnerabilitiesandthattheproblemwaswiththevirtualmachine.Previousbugshavebeenresolvedandalmostallofthestolenfundshavebeenrecovered.AnyremainingmissingfundsfromknownbugswillbefullycoveredbytheElrondFoundation.
No10.Harmony
Loss:$100Million AttackType:Privatekeycompromise
OnJune24,2022,theHarmonycross-chainbridgewasattacked,costingapproximately$100million.Harmony'sfounderstatedthattheattackonHorizonwasnotduetoasmartcontractvulnerability,butrathertoaprivatekeycompromise.AlthoughHarmonystoreditsprivatekeysencrypted,theattackersdecryptedsomeofthemandsignedsomeunauthorizedtransactions.
Immediatelyaftertheattack,HarmonystoppedtheHorizonBridgetopreventfurthertransactions.ItthencontactedtheFBIandmultiplepartnerstoinvestigate.ThehackersneverthelesslaunderedthestolenfundsthroughTornadoCash.On27July,Harmonyissuedacompensationproposal.
06
I.2022GlobalWeb3SecurityStatistics
TypesofAttackedProject
In2022,12cross-chainbridgesecurityincidentscausedatotallossofapproximately$1.89billion,thehighestlossofanyprojecttype.Fivecross-chainbridgeprojectslostover$100millioninasingleincident:Ronin($624million),BSCTokenHub($560million),Wormhole($326million),Nomad($190million)andHarmony($100million).Theattacktypesmainlyincludedsocialengineering,privatekeycompromise,andblockchain/contractvulnerabilities,etc.
Ofthe167majorattacksfortheyear,DeFi-typeprojectswereattacked113times,orapproximately67.6%,whichisthemostfrequenttypebeingattacked.DeFirankssecondintermsoflossesafterthecross-chainbridge,withatotallossamountingtoapproximately$950million.
Atotalof21exchangeandwalletsecurityincidentsthroughouttheyear,resultinginatotallossofapproxi-mately$600million.Theseincidentsinvolvedhighamountsofmoneyandawiderangeofusers,andtheirattacktechniquesweremainlyprivatekeycompromises,contractvulnerabilitiesandsupplychainattacks.
07
I.2022GlobalWeb3SecurityStatistics
LossbyChain
Atotalof20publicchainshaveexperiencedmajorsecurityincidentsin2022,withthetopthreebyamountlostbeingEthereum,BNBChain,andSolana;andthetopthreebynumberofattacksbeingBNBChain,Ethereum,andSolana.
The59attacksonEthereumcaused$2.01billioninlosses,accountingfor55.8%ofthetotallossesfortheyear.
Therewere72attacksonBNBChain,with70%ofthelossinarangefromonethousandtoonemillion.Notably,approxi-mately64%oftheprojectsattackedonBNBChainwereunaudited,and80%oftheunauditedprojectswereattackedbycontractvulnerabilityexploits.
ThesevenattacksonSolanaresultedinatotallossof$512.76million,thehighestaveragelossperincidentacrossallchains.MajorsecurityincidentsontheSolanachainincludetheWormholeincidentinFebruary($326million),theCashioincidentinMarch($48million)andtheMangoMarketincidentinOctober($116million).
08
I.2022GlobalWeb3SecurityStatistics
AttackType
(FTXincidentisexcluded)
Vulnerabilityexploitssawthehighestfrequencyandlossamountthroughouttheyear.Fortheyear2022,$1,458millionwaslostfromvulnerabilityexploitsin87attacks.
Thesecondhighestlosswascausedbysocialengineering,whichistheRoninincidentinMarch,resultingin$624millioninlosses.
Thethirdlosswasfromprivatekeycompromise,with19compromisesresultinginatotallossofapproximately$430million,includingeightincidentswithasinglelossofover$10million.Accordingtothefindingsofsomeincidents,thetheftofprivatekeysbyteammembers/ex-membersisfrequent,whichrequiresprojectownerspayextraattentiontooperationalsecurityandstrengthenteammanagement.Therewerealsosomecasesofprivatekeycompromisesduetotheuseofthird-partytools,andprojectsareadvisedtoconductcarefulsecurityassessmentsbeforeusingthird-partytools.
09
I.2022GlobalWeb3SecurityStatistics
Abreakdownbytypeofvulnerabilitiesshowsthatthetopthreecausesoflosswerevalidationissues,blockchainvulnerabil-ity(BNBChainincident)andimproperbusinesslogic/functiondesignandreentrancy.
Eighteenvalidationissuescaused$619millioninlosses,withmajorincidentsincludingasignaturevalidationvulnerabilityintheWormholeincidentandamessagevalidationbypassissueintheNomadbridgeincident.
Themostfrequentissuewasimproperbusinesslogic/functiondesign,with30occurrences.DuringBeosin'sdailyaudits,thistypeofvulnerabilityisalsotheonethatappearsmostfrequentlyandismostlikelytobeoverlookedbydevelopers.
10
I.2022GlobalWeb3SecurityStatistics
AuditAnalysis
Ofthe167majorattacksmonitoredin2022,auditedandunauditedprojectsaccountforalmosthalfofthetotal,at51.5%and48.5%respectively.
Ofthe86auditedprojects,39attacks(45%)stilloriginatedfromvulnerabilityexploitation.Thequalitytheoverallauditmarketisnotpromising.AreviewoftheseincidentsbyBeosinfoundthatthevastmajorityofvulnerabilitiesweredetect-ableandfixableduringtheauditphase.
Noprojectsthatwereattackedduetocontractvulnerabilitiesin2022wereauditedbyBeosin.It
isrecommendedthatprojectsmustbeauditedbyaprofessionalsecuritycompanybeforetheygoliveinordertoeffectivelysafeguardassets.
StolenFundFlow
Approximately$1,396millionofstolenfundsweretransferredtoTornadoCashin2022,representing38.7%ofallfundslostinattacks.SinceTornadoCashwassanctionedbytheUSOFACinAugust,fundstransferredtoTornadoCashhavefallensignificantlyfromthefirsthalfoftheyear.Only$44.85millioninstolenfundswastransferredtoTornadoCashinthefourthquarter.
In2022,approximately$289millionofstolenfundswererecovered,represent-ingonly8%ofalllosses.Thevastmajorityofthiscamefromunsolicitedreturnsfromwhitehathackers.
Around$18.2millionofthestolenfundswenttovariousexchanges.Oftenhackerswhoinvolvesmalleramountofstolenfundswouldhavetransferredassetstoexchangesimmediatelyaftertheattack.Itisparticularlyimportantforexchangestobeabletoidentifythehacker'saddressintimetoblockthetransaction.
【Allamountsareconvertedattheeventtime】
Approximately$443millioninstolenfundswerefrozenbyexchanges,withthebulkofthisamountstemmingfromtheBNBChainincidentinOctober,whenBinanceimmediatelyfroze80to90percentofthehackers'funds,resultinginanactuallossofaround$100millionforthatincident.
11
2022GlobalWeb3SecurityStatistics
RugPullsin2022
Therewere243rugpullsthroughout2022,involvingatotalamountof$425million(excludingFTXincident).
Ofthe243rugpulls,atotalof8projectshaveruggedfor$10millionormore,while210projects(approximately86.4%)ruggedwithamountsbetween$1K-$1M.
In2022,Rugpulleventswerecharacterisedbythefollowingfeatures.
Ahighnumberofruggedprojectsthroughouttheyear.Onaverage,oneprojectruggedevery1.5days.
Shortrugperiod.Mostprojectsruggedwithin3monthsaftergoinglive,that'swhymostfundingamountwereintherangebetween$1K-$1M.
Mostprojectsareunaudited.Someprojectshavehiddenbackdoorfunctionsintheircode,makingitdifficultfortheaverageinvestorstoassessthesecurityoftheproject.
Socialmediainformationislacking.Atleasthalfoftherugpullprojectsdonothaveawell-developedwebsite,Twitteraccount,orTelegraph/Discordgroup.
Projectsarenotstandardised.Someprojectshaveofficialwebsitesandwhitepapers,butoncloserinspectiontherearemanyspellingandgrammaticalerrors,andsomeareevenplagiarisedinlargesections.
Thenumberoftokenslaunchedundertrendingeventshasincreased.Variouskindsoftokenshaveruggedthisyear,suchasMoonbird,LUNAv2,Elizabeth,TRUMP,etc.,whichusuallygoonlinequicklyandrugwiththemoneyinaflash.
12
II.
2022CryptoCrime,
FinancialRiskandRegulation
Contributors:
HELPUniversity:LeeKhengJoo
LegalDAO:
MasterLi,VirgilHo,CarrieGan,RyanHuang,WillLiao,LouiseZhang,JoannaJing
2022CryptoCrime,FinancialRiskandRegulation
GlobalCryptoCrimeStatisticsandCases
(1)2022GlobalCryptoCrimeStatistics
AccordingtostatisticsfromBeosinKYT-thecyrptoAMLcomplianceandanalyticsplatform,globalcryptocrimesamount-edto$13.76billionfortheyear2022(financialcrimesareexcluded),withmoneylaunderingaccountingfor$7.33billion,attacks/exploits$3.6billion,pyramidschemes$1billionandscams$830million.
Themoneylaunderingamountaccountsfor53%oftotalcryptocrimes,someofwhichinvolvescross-bordermoneylaundering,placingahighdemandontheabilityofglobalregulatorysystemstocollaborateacrossborders.Attacksandexploits(seeSection1formoredetails)increasedsignificantlyin2022,withveryfewofthesecasesseeinghackersbeingarresedorassetbeingrecovered,leavinganurgentneedforglobalregulators,exchanges,users,projects,andsecuritycompaniestoworktogethertofilltheregulatorygaps.
Pyramidschemes,whichaccountedfor$1billionin2022,ofteninvolvesalargenumberofusersandposesadangerthatshouldnotbeunderestimated.
Theglobalfiguresforthecryptoscamscategorytotaled$830million,with51%ofthatamountcomingfromrugpulls.
Casesofscams
(Remark:Financialriskeventsarenotcounted)
InNovember2022,theUnitedStatesAttorney'sOfficefortheSouthernDistrictofNewYorkannouncedthatJamesZhonghadpleadedguiltytoatelecomfraud.JamesZhongwasaccusedofillegallyobtainingbitcoinsfromtheSilkRoaddarknetin2012.InNovember2021,lawenforcementseized50,676bitcoinshiddeninequipmentatthedefendant'shome,thenworthoverUS$3.36billion.TheseizurewasthenthelargestcryptocurrencyseizureinthehistoryoftheUSDepartmentofJusticeandthesecondlargestfinancialseizureeverundertakenbytheUSDepartmentofJustice.
InNovember2022,policeinLondon,England,uncoveredoneofthe"largestfraudulentoperationsintheUK'shistory,"withmorethan100peoplearrestedandapproximately£3.2million($3.9million)involved.ThecriminalsusedafraudulentwebsitecallediSpooftoimpersonateofficialsfromwell-knownbankssuchasBarclays,Santander,andHSBCandpaidforservicesusingBitcoin,andpolicenarroweddownthesuspectsbytrackingtheBitcoinrecordsusedtopayfortheservices.
InAugust2022,FarukFatihOzer,founderoftheTurkishcryptocurrencyexchangeThodex,wasarrestedintheAlbaniancityofElbasan.HewaswantedbyTurkishauthoritiesformorethanayearonchargesofrunningafraudulentcryptocurren-cyscheme,andin2021,hereceiveda"RedNotice"fromInterpolforhisallegedinvolvementinthecountry'slargest-everfraud,wortharound$2billion.
InFebruary2022,theUSDepartmentofJusticeannouncementstatedthatBitConnectfounderSatishKumbhaniwasaccusedoforchestratingaworldwidePonzischemeinvolvingapproximately$2.4billion.TheannouncementstatedthatBitConnectwasanallegedlyfraudulentcryptocurrencyinvestmentplatformthathadamarketcapof$3.4billion.
13
II.2022CryptoCrime,FinancialRiskandRegulation
Casesofmoneylaundering
InNovember2022,theUSDepartmentofJusticeannouncedthearrestoftwoEstoniancitizenschargedwith18countsfortheirallegedinvolvementin$575millionincryptocurrencyfraudandmoneylaundering.Accordingtocourtdocuments,theydefraudedover100thousandvictimsbyinducingthemtosignfraudulentequipmentleasingcontracts.ThecaseiscurrentlybeinginvestigatedbytheUSFederalBureauofInvestigation.
InSeptember2022,DutchpoliceannouncedthearrestofamalesuspectincryptocurrencymoneylaunderingthroughBitcoinandMonerocoins,involving10million+ofeuros.Thesuspectwasidentifiedbypoliceaftertracingbitcointransac-tionsandthefundsinvolvedwerestolenfromopensourcewalletsthatwereupdatedthroughtheuseofmalware.
InFebruary2022,theUSDepartmentofJusticeannouncedthattwoindividualshadbeenarrestedonsuspicionofcrypto-currencymoneylaunderingoffences.Thecryptocurrenciesinvolvedaresuspectedtobethosestolenfromthe2016hackofthecryptoexchangeBitfinex,andthecryptocurrenciesinvolvedwereworthapproximately$4.5billionatthetimeoftheannouncement.Atthetimeoftheannouncement,lawenforcementhadseizedover$3.6billionworthofcryptocurrencyinconnectionwiththehack.
RegulatoryResponsesArisingFromFinancialRisks
In2022,thecryptomarkethasseenaseriesofblackswaneventsrepresentedbyThreeArrowsCapital,TerraLunaandFTX.Forthiscryptomarket,whichhasgrownsignificantlyinthepastdecade,variousjurisdictionsaroundtheworldhaveshownalackofregulations,orevenfallenintoaregulatoryvoid.Withthisbackground,theglobalWeb3highlandsareacceleratingthedevelopmentofregulatoryframeworks,andby2023theglobalcryptomarketwillhavemovedfromthe"WildWest"tothe"AgeofLaw",withglobalregula
温馨提示
- 1. 本站所有资源如无特殊说明,都需要本地电脑安装OFFICE2007和PDF阅读器。图纸软件为CAD,CAXA,PROE,UG,SolidWorks等.压缩文件请下载最新的WinRAR软件解压。
- 2. 本站的文档不包含任何第三方提供的附件图纸等,如果需要附件,请联系上传者。文件的所有权益归上传用户所有。
- 3. 本站RAR压缩包中若带图纸,网页内容里面会有图纸预览,若没有图纸预览就没有图纸。
- 4. 未经权益所有人同意不得将文件中的内容挪作商业或盈利用途。
- 5. 人人文库网仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对用户上传分享的文档内容本身不做任何修改或编辑,并不能对任何下载内容负责。
- 6. 下载文件中如有侵权或不适当内容,请与我们联系,我们立即纠正。
- 7. 本站不保证下载资源的准确性、安全性和完整性, 同时也不承担用户因使用这些下载资源对自己和他人造成任何形式的伤害或损失。
最新文档
- 4月住院医师规范化培训《核医学科》复习题(含参考答案解析)
- 11月住院医师规范化培训《临床病理科》模拟题与参考答案解析
- 智慧医院SPD平台UDI数据对接设计报告
- 烟气降温除尘设备制造技术方案
- 多校区食堂食材统筹配送实施方案
- 环氧氯丙烷项目节能评估报告
- 高中美术(盲校)选择性必修二《中国书画》知识清单:第一单元 中国书法基础-第1课 书法的工具与材料
- 初中数学七年级上册《有理数》单元整体教案
- 初中七年级信息技术:图像处理技术初探-以南粤风情海报制作为例
- 初中化学九年级复习课:基于真实情境与跨学科整合的“粗盐提纯”项目式学习设计
- 2026-2030中国戊烷80和和20行业市场发展趋势与前景展望战略分析研究报告
- 工程常见质量问题监理实施细则
- 2026水务集团面试题目及答案
- 泳池灯光安装调试施工方案及技术措施
- 2026年部编版二年级上册语文教材分析
- 2026年养老管理师考试试题及答案详解
- 2026年广西公需科目全套1卷《人工智能国家战略与政策通识》
- T-CECS 《多段多级AO除磷脱氮技术规程》
- 脑卒中康复护理中的家庭护理指导
- 涟源市六亩塘镇招聘社区网格员备考题库附答案详解
- 20S515 钢筋混凝土及砖砌排水检查井
评论
0/150
提交评论