Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Cardano Price Could Be Heading To $0.1 — Crypto Founder Offers Insight

June 6, 2026

NatureU® Now Has Three Clinical Studies Publicly Registered on ClinicalTrials.gov as 56-Day PQQ Skin-Aging Study (NCT07571629) Joins Two Previously Published Peer-Reviewed Trials

June 6, 2026

Not all Ethereum layer 2s are dying, but many general-purpose chains no longer have a reason to exist

June 6, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»General Bytes Bitcoin ATMs Hacked to Steal Funds
General Bytes Bitcoin ATMs Hacked to Steal Funds
Security and Privacy

General Bytes Bitcoin ATMs Hacked to Steal Funds

May 25, 2023No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

A leading provider of Bitcoin ATMs is urging clients to upgrade their systems immediately after revealing hackers exploited a zero-day vulnerability in its software last weekend to steal funds.

General Bytes explained in an advisory that the bug itself was found in the master service interface used by Bitcoin ATMs to upload videos to the server.

“The attacker scanned the Digital Ocean cloud hosting IP address space and identified running CAS [Crypto Application Server] services on ports 7741, including the General Bytes Cloud service and other GB ATM operators running their servers on Digital Ocean (our recommended cloud hosting provider),” it continued.

“Using this security vulnerability, [the] attacker uploaded his own application directly to [an] application server used by [the] admin interface. Application server was by default configured to start applications in its deployment folder.”

After uploading the Java app to the master service interface used by the ATMs, the threat actor was able to perform a range of actions including:

  • Accessing the database
  • Reading and decrypting API keys used to access funds in hot wallets and exchanges
  • Sending funds from hot wallets
  • Downloading usernames and password hashes and switching off two-factor authentication
  • Accessing terminal event logs and scanning for any instance where customers scanned private keys at the ATM

General Bytes said that, as well as other operators’ standalone servers, its own cloud service was breached by its attackers.

It urged any ATM operator to immediately patch their CAS software and consider all users’ CAS passwords and API keys to exchanges and hot wallets to have been compromised. As a result, they should reset passwords and generate new API keys/invalidate the old ones.

See also  Ava Labs CEO Issues Warning, Says Rise of ‘Trash L2s’ Will Fill Void of Sam Bankman-Fried

Read more on cryptocurrency ATMs: FCA: Crypto ATMs Are Illegal in the UK.

General Bytes is shutting its cloud service as a result of the attack.

“It is theoretically (and practically) impossible to secure a system granting access to multiple operators at the same time where some of them are bad actors. You’ll need to install your own standalone server. GB support will provide you with help you to migrate your data from the GB Cloud to your own standalone server,” it explained.

“Please keep your CAS behind a firewall and VPN. Terminals should also connect to CAS via VPN.  With VPN/Firewall, attackers from [the] open internet cannot access your server and exploit it. If your server was breached please reinstall the whole server including operation system.”

General Bytes missed the zero-day bug despite claiming to have conducted “multiple security audits” since 2021.

Source link

ATMs Bitcoin Bytes Funds general hacked Steal
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Adam Iza, self-proclaimed crypto ‘Godfather,’ pleads guilty in $245 million Bitcoin kidnapping plot

June 6, 2026

A little-known 1,250% rule could lock US banks out of Bitcoin

June 6, 2026

Bitcoin reclaims $61,000 after dipping below $60,000 in an AI-led rout

June 6, 2026

Bitcoin maximalists say the brutal price crash is just a temporary liquidity crunch caused by the AI boom

June 6, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

SEC Postpones Decision on Hashdex and Ark 21Shares Ethereum ETF to May 30

March 21, 2024

Ethereum-Based Decentralized Exchange dYdX Suffers $9,000,000 Loss in an Alleged ‘Market Manipulation Attempt’

November 20, 2023

Security Firm Certik’s Account Hijacked to Spread Crypto Drainer

January 8, 2024

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Cardano Price Could Be Heading To $0.1 — Crypto Founder Offers Insight

June 6, 2026

NatureU® Now Has Three Clinical Studies Publicly Registered on ClinicalTrials.gov as 56-Day PQQ Skin-Aging Study (NCT07571629) Joins Two Previously Published Peer-Reviewed Trials

June 6, 2026

Not all Ethereum layer 2s are dying, but many general-purpose chains no longer have a reason to exist

June 6, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$60,943.000.22%
  • ethereumEthereum(ETH)$1,564.12-2.28%
  • tetherTether(USDT)$1.000.01%
  • binancecoinBNB(BNB)$576.47-1.24%
  • usd-coinUSDC(USDC)$1.000.01%
  • rippleXRP(XRP)$1.110.22%
  • solanaSolana(SOL)$62.78-3.67%
  • tronTRON(TRX)$0.320860-1.10%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.030.96%
  • HyperliquidHyperliquid(HYPE)$58.69-4.52%