{"id":322,"date":"2018-03-17T18:37:48","date_gmt":"2018-03-17T17:37:48","guid":{"rendered":"https:\/\/kriptoblog.hu\/?p=322"},"modified":"2025-12-27T13:33:56","modified_gmt":"2025-12-27T12:33:56","slug":"cryptopia-co-nz-feltort-fiokok-illetektelen-atutalasok-es-nema-csend-cselekedj-azonnal","status":"publish","type":"post","link":"https:\/\/kriptoblog.hu\/en\/cryptopia-co-nz-feltort-fiokok-illetektelen-atutalasok-es-nema-csend-cselekedj-azonnal\/","title":{"rendered":"Cryptopia.co.nz \u2013 Compromised Accounts, Unauthorized Transfers and Silence, ACT IMMEDIATELY!"},"content":{"rendered":"<p>Yesterday 2018.03.16 and today, more and more people on Facebook and in some Twitter posts have been complaining about receiving a warning from the Cryptopia online trading platform about a failed login attempt.<\/p>\n<p>This is chilling when you know you weren't even near a computer, and if you're aware of your own IP address or the range it's usually assigned from, the following message is surprising:<\/p>\n<p><em><u>A failed logon attempt was detected from the following IP address: 210.222.49.158<\/u><\/em><\/p>\n<figure id=\"attachment_324\" aria-describedby=\"caption-attachment-324\" style=\"width: 619px\" class=\"wp-caption aligncenter\"><img fetchpriority=\"high\" decoding=\"async\" class=\"size-full wp-image-324\" src=\"https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01.jpg\" alt=\"\" width=\"619\" height=\"620\" srcset=\"https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01.jpg 619w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01-300x300.jpg 300w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01-100x100.jpg 100w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01-600x601.jpg 600w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01-150x150.jpg 150w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz01-440x440.jpg 440w\" sizes=\"(max-width: 619px) 100vw, 619px\" \/><figcaption id=\"caption-attachment-324\" class=\"wp-caption-text\">The warning email that someone tried to log into my account...<\/figcaption><\/figure>\n<p><strong>Let me tell you two interesting things to consider!<\/strong> I have two accounts. One that I actively use and another that I don't use at all, it's just linked to a random email address with an extra strong password printed on A4 paper \u2014 so no computer storage or anything similar. Both email addresses received this warning!<\/p>\n<h1><span style=\"color: #ff0000;\"><strong>So what's going on exactly? THERE'S A VERY BIG PROBLEM!<\/strong><\/span><\/h1>\n<p>It's fine that someone somehow gets my trading email address \u2014 that's not a problem in itself, maybe my email happened to be in some gigantic package of addresses and through trial and error they eventually get a result. BUT! An email address that's practically a random combination of 64 numbers and letters \u2014 how is that possible?<\/p>\n<p>On the official site's Forum (<a href=\"https:\/\/www.cryptopia.co.nz\/Forum\/Thread\/2400\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cryptopia.co.nz\/Forum\/Thread\/2400<\/a>) several people have also indicated that something is wrong! Some people's coins have disappeared, despite having 2FA authentication enabled, something happened. The official pages, Facebook (https:\/\/www.facebook.com\/cryptopiaexchange), Twitter (<a href=\"https:\/\/twitter.com\/Cryptopia_NZ\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/Cryptopia_NZ<\/a>) make no mention of having been hit by any hacker attack. Moreover, their official announcements page (<a href=\"https:\/\/www.cryptopia.co.nz\/news\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cryptopia.co.nz\/news<\/a>) doesn't contain anything either.<\/p>\n<p><strong>What can be done now? You MUST immediately set up 2FA authentication, and if possible immediately transfer your coins elsewhere from the account! Pay close attention to the exact address! Don't search for it in Google and click the first result because the first result is a phishing site! Antivirus and some special new password setup everywhere \u2014 email, Cryptopia, 2FA &gt; Google, etc...<\/strong><\/p>\n<figure id=\"attachment_325\" aria-describedby=\"caption-attachment-325\" style=\"width: 1024px\" class=\"wp-caption aligncenter\"><img decoding=\"async\" class=\"wp-image-325 size-large\" src=\"https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-1024x632.png\" alt=\"\" width=\"1024\" height=\"632\" srcset=\"https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-1024x632.png 1024w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-600x370.png 600w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-300x185.png 300w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-768x474.png 768w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02-1080x666.png 1080w, https:\/\/kriptoblog.hu\/wp-content\/uploads\/2018\/03\/ccnz02.png 1564w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption id=\"caption-attachment-325\" class=\"wp-caption-text\">The official forum mentioned to always make sure you're accessing the site at the correct address: <a href=\"https:\/\/www.cryptopia.co.nz\" target=\"_blank\" rel=\"noopener\">https:\/\/www.cryptopia.co.nz<\/a><\/figcaption><\/figure>\n<p>But phishing site or not, can someone please explain to me \u2014 if I have such a backup\/verification email address for almost every similar site registration, and I didn't accidentally go to the WS domain ending, then there's a bigger problem here than just someone randomly trying a few million email addresses... In my opinion, this system has been hacked and it's only a matter of minutes-hours-days before something happens. Will every coin there completely disappear, or will everything be locked and there'll be some official response?<\/p>\n<p>What's additionally certain! This morning I wrote a letter to Support to find out what this login attempt was about when I wasn't even near a computer... That was about 18 hours ago and still no response. Others on the forum also wrote that there's no response from Cryptopia's side... Anyone who has an account with them and has a non-zero balance on any coin should monitor the official channels! That's all I can do either...<\/p>\n<p><strong>Update1<\/strong> \u2013 2018.03.18 \u2013 05:00:\u00a0<a href=\"https:\/\/twitter.com\/Cryptopia_NZ\/status\/975262664367554560\" target=\"_blank\" rel=\"noopener\">https:\/\/twitter.com\/Cryptopia_NZ\/status\/975262664367554560<\/a><\/p>\n<p><strong>Update2<\/strong> \u2013 2018.03.18 \u2013 05:00:\u00a0<a href=\"https:\/\/help.cryptopia.co.nz\/en\/p\/failed-log-in-attempts-faq\" target=\"_blank\" rel=\"noopener\">https:\/\/help.cryptopia.co.nz\/en\/p\/failed-log-in-attempts-faq<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>Tegnap 2018.03.16 \u00e9s mai napon a facebookon \u00e9s p\u00e1r Twitter bejegyz\u00e9s form\u00e1j\u00e1ban egyre t\u00f6bben panaszkodtak arra, hogy figyelmeztet\u00e9s \u00e9rkezett a Cryptopia Online keresked\u00e9si platformt\u00f3l, hogy sikertelen bel\u00e9p\u00e9si k\u00eds\u00e9rlet t\u00f6rt\u00e9nt. Ez h\u00e1tborzongat\u00f3 akkor amikor tudod, hogy nem is volt\u00e1l esetleg sz\u00e1m\u00edt\u00f3g\u00e9p k\u00f6zel\u00e9ben \u00e9s ha tiszt\u00e1ban vagy a saj\u00e1t IP c\u00edmeddel vagy azzal, hogy milyen tartom\u00e1nyb\u00f3l szokott [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":323,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1,12],"tags":[36,73],"class_list":["post-322","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-kereskedes","category-tozsde","tag-cryptopia","tag-hack"],"_links":{"self":[{"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/posts\/322","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/comments?post=322"}],"version-history":[{"count":1,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/posts\/322\/revisions"}],"predecessor-version":[{"id":491,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/posts\/322\/revisions\/491"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/media\/323"}],"wp:attachment":[{"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/media?parent=322"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/categories?post=322"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kriptoblog.hu\/en\/wp-json\/wp\/v2\/tags?post=322"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}