Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Michigan Attorney General Rejects DOJ Request for Detroit Ballots in Broader Federal Election Push

April 21, 2026

The Growing Differences Between Competitive and Casual Gaming Audiences

April 21, 2026

Airia Shortlisted in The 2026 Security Awards

April 21, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»General Bytes Bitcoin ATMs Hacked to Steal Funds
General Bytes Bitcoin ATMs Hacked to Steal Funds
Security and Privacy

General Bytes Bitcoin ATMs Hacked to Steal Funds

May 25, 2023No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

A leading provider of Bitcoin ATMs is urging clients to upgrade their systems immediately after revealing hackers exploited a zero-day vulnerability in its software last weekend to steal funds.

General Bytes explained in an advisory that the bug itself was found in the master service interface used by Bitcoin ATMs to upload videos to the server.

“The attacker scanned the Digital Ocean cloud hosting IP address space and identified running CAS [Crypto Application Server] services on ports 7741, including the General Bytes Cloud service and other GB ATM operators running their servers on Digital Ocean (our recommended cloud hosting provider),” it continued.

“Using this security vulnerability, [the] attacker uploaded his own application directly to [an] application server used by [the] admin interface. Application server was by default configured to start applications in its deployment folder.”

After uploading the Java app to the master service interface used by the ATMs, the threat actor was able to perform a range of actions including:

  • Accessing the database
  • Reading and decrypting API keys used to access funds in hot wallets and exchanges
  • Sending funds from hot wallets
  • Downloading usernames and password hashes and switching off two-factor authentication
  • Accessing terminal event logs and scanning for any instance where customers scanned private keys at the ATM

General Bytes said that, as well as other operators’ standalone servers, its own cloud service was breached by its attackers.

It urged any ATM operator to immediately patch their CAS software and consider all users’ CAS passwords and API keys to exchanges and hot wallets to have been compromised. As a result, they should reset passwords and generate new API keys/invalidate the old ones.

See also  Prominent Bitcoin Proponent Slams Defi Sector As ThorSwap Went On Maintenance (FTX Hacker) 

Read more on cryptocurrency ATMs: FCA: Crypto ATMs Are Illegal in the UK.

General Bytes is shutting its cloud service as a result of the attack.

“It is theoretically (and practically) impossible to secure a system granting access to multiple operators at the same time where some of them are bad actors. You’ll need to install your own standalone server. GB support will provide you with help you to migrate your data from the GB Cloud to your own standalone server,” it explained.

“Please keep your CAS behind a firewall and VPN. Terminals should also connect to CAS via VPN.  With VPN/Firewall, attackers from [the] open internet cannot access your server and exploit it. If your server was breached please reinstall the whole server including operation system.”

General Bytes missed the zero-day bug despite claiming to have conducted “multiple security audits” since 2021.

Source link

ATMs Bitcoin Bytes Funds general hacked Steal
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Michigan Attorney General Rejects DOJ Request for Detroit Ballots in Broader Federal Election Push

April 21, 2026

UK Gas Firm Clarifies Bitcoin Mining Plans at Yorkshire Site

April 21, 2026

Oil tanker attacked after falling for crypto scam granting fake Strait of Hormuz safe passage

April 21, 2026

North Korean Blamed for $290m KelpDAO Crypto Heist

April 21, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Dutch Authorities Arrest Tornado Cash Developer Following U.S. Sanctions on Crypto Mixer Firm

June 15, 2023

Two US Representatives Urge the SEC To Approve Options on Spot Bitcoin Exchange-Traded Funds: Report

May 3, 2024

Avalanche exhibits high network growth – Can it boost AVAX?

December 3, 2023

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Michigan Attorney General Rejects DOJ Request for Detroit Ballots in Broader Federal Election Push

April 21, 2026

The Growing Differences Between Competitive and Casual Gaming Audiences

April 21, 2026

Airia Shortlisted in The 2026 Security Awards

April 21, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$75,059.00-1.60%
  • ethereumEthereum(ETH)$2,300.27-1.39%
  • tetherTether(USDT)$1.00-0.02%
  • rippleXRP(XRP)$1.41-1.02%
  • binancecoinBNB(BNB)$626.15-0.67%
  • usd-coinUSDC(USDC)$1.000.00%
  • solanaSolana(SOL)$84.61-1.45%
  • tronTRON(TRX)$0.3327581.32%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.29%
  • dogecoinDogecoin(DOGE)$0.093938-1.53%