Security Report Paints Mixed Picture of Protection at Biggest Crypto Exchanges

Published at: Oct. 3, 2018

Coinbase Pro topped the ratings of a new report from ICORating into cryptocurrency exchange security Wednesday, October 3, while researchers flag multiple shortcomings that continue to plague the sector. ICORating conducts analytical research in the crypto space in its role as an independent rating agency.

The report rates one hundred exchanges whose daily trade volume is over $1 million on various criteria relating to security models, including end user protection and robustness of code.

Many of the world’s highest ranked crypto exchanges by trade volume — such as Bitfinex, Bitstamp and Binance — scored relatively poorly, with Binance’s total coming in at 63/100 and Bitstamp at 37/100.

“Over the past 8 years about 31 crypto exchanges have been hacked and more than a 1 billion dollars (actually, $1.3 bn) stolen,” the report summarizes.

Ranking the exchanges by console errors, user account security, registrar and domain security, and web protocols security, ICORating finds several areas in need of improvement.

32 percent of the ranked exchanges, according to the report, have code errors that could impact user experience and “lea[d] to certain defects in operations.”

In terms of user account security, 41 percent of exchanges allow “simple” passwords of fewer than eight characters, contrasting with the three percent statistic relating to those which do not support two-factor authentication.

Web security performance was found to be worse, with the majority of exchanges failing registrar and domain security, as well as web protocol security, in some way.

“Still nobody is fully protected from the loss of their crypto assets, therefore, invest in reliable assets, diversify your portfolio and choose good crypto exchanges,” the report advises.

As Cointelegraph reported, Coinbase, which scored 89 in the report, had filed a patent in August relating to boosting security of Bitcoin (BTC) payments.

Tags
Related Posts
Bilaxy exchange suspends website after ERC-20 hot wallet hack
Bilaxy, a lesser-known cryptocurrency exchange, has confirmed a major hacking incident, reporting the losses of funds due to an exploit of the platform’s ERC-20 hot wallet. Bilaxy announced on its Telegram channel that the crypto exchange suffered a “serious hack” on Saturday between 6 pm and 7 pm UTC, resulting in the transfer of 295 different ERC-20 tokens. According to the exchange, the affected tokens were transferred by the hacker to a single address. At the time of writing, the tokens are valued at $170,600, with the most recent transaction sending out 50 Ether (ETH), or about $159,000, on Monday. …
Bitcoin / Aug. 30, 2021
Pioneering hardware wallet brings enhanced staking to cold storage
Twelve months ago, the total value of cryptocurrency locked in staking programs was barely more than $1 billion. Today, there is $58 billion locked in decentralized finance, or DeFi. The adoption of DeFi has been a sea change that’s helped push the crypto industry into the mainstream, but it’s hardly the only one. Mainstream institutions including MicroStrategy and Tesla have poured billions of dollars into Bitcoin — and some have been buying the dip — while nonfungible tokens have evolved from CryptoKitties and CypherPunks to an artistic medium pulling in millions in bids for a new generation of digital artists …
Technology / June 8, 2021
Binance CEO Suggests Crypto Exchanges Are Safer Than Keeping One’s Keys
Changpeng Zhao, the co-founder and CEO of cryptocurrency exchange Binance, suggested that for most, keeping crypto assets on an exchange is safer than keeping the keys themselves. Zhao gave his comments in a tweet on Jan. 19 after famous crypto skeptic and gold bug Peter Schiff complained that he lost access to his Bitcoin (BTC). Invoking the phrase “SAFU” — a slanger term in the crypto community for “safe,” Zhao said: “Many hardcore crypto [organizations] advocate storing your own keys. But the truth is, today most people are not able to secure a key even from themselves (losing it). A …
Bitcoin / Jan. 20, 2020
The Steem Takeover and the Coming Proof-of-Stake Crisis
The Steem blockchain reportedly experienced a troubling episode recently, whereby the blockchain’s entire governance system was disturbed. Tron founder Justin Sun, new owner of the Steemit social network based on the Steem token, appears to have successfully executed a takeover of Steem by leveraging not only tokens directly controlled, but also tokens held on several major exchanges, in order to vote out the previous delegates (Steem uses a delegated proof-of-stake system) and install new ones. This means that customers of these exchanges likely had their funds used without their consent in this blockchain power struggle. While it was an unfortunate …
Blockchain / March 6, 2020
Overview of Software Wallets, the Easy Way to Store Crypto
Similar to a bank account for fiat currency, a crypto wallet is a personal interface for a cryptocurrency network that provides reliable storage and enables transactions. Whether a cryptocurrency is securely stored or not, much depends on the wallet, which is only as secure as its private keys. Wallets are generally either hot or cold. The funds in a hot wallet can be spent at any time, online. A cold wallet functions in contrast: not intended for regular cryptocurrency transactions, but funds can be received at any time. Wallets can also be divided into three groups: software, hardware and paper. …
Blockchain / March 29, 2020