June 7, 2022

$250,000 stolen from Bored Ape Yacht Club

Threat actors have stolen more than $250,000 in ETH (Ethereum) from Bored Ape Yacht Club (BAYC), this is the third security breach it suffered in 2022.

The hackers conducted a phishing attack, they set up a phishing site that impersonated the official BAYC site claiming that BAYC, MAYC and OthersideMeta holders were able to claim a free NFT for a short period of time.

The website was advertised through the official BAYC Discord for a Yuga Labs community manager that was previously hacked:

Following the theft of NFTs, the attacker began to sell the collected assets at 08:25:42 AM UTC. After selling off the stolen NFTs, threat actors moved the funds to the obfuscation platform.

This hacker attack marks the third time the BAYC social media servers have been hacked by attackers this year.

The first hack of the BAYC discord server took place on Apr. 1.

On Apr. 25, BAYC was hit the victim of another phishing attack, threat actors compromised its Instagram account and stole 91 NFTs, equivalent to $1,345,472.34

At this time it is unclear how the attackers have hacked the community manager’s account.

Palermo systems also were hacked recently. The municipality of Palermo in Southern Italy suffered a massive hacker attack on June 3, which appears to have had a massive impact on a broad range of operations and services to citizens and tourists.