Ordswap loses control of its website, urges users to recover keys

Ordswap loses control of its website, urges users to recover keys

By Charles Thuo - min read
  • Ordswap has experienced a security breach that has led to phishing risks for users’ private keys and assets.
  • An online tool has been introduced for MetaMask users to recover private keys.
  • The incident underscores security concerns in crypto.

In a recent crypto hack incident, Ordswap, a prominent marketplace for Bitcoin Ordinals, has fallen victim to a significant security breach that has made it lose control of its website. The platform’s website was compromised leading to potential risks for users.

Ordswap users were met with a distressing situation as the compromised website directed them to a phishing link. This deceptive link aimed to trick users into revealing their private keys and other sensitive information, posing a severe threat to their cryptocurrency assets.

Recovery tool introduced amid the chaos

In response to the security breach, Ordswap acted swiftly by providing an online tool designed to assist users who had logged into the platform through MetaMask.

This tool is meant to aid affected users in recovering their Ordswap private keys, allowing them to securely migrate their assets to other service providers.

Ordswap blames Netlify for the glitch

Ordswap placed the blame for the security incident on Netlify, a company specializing in website development and hosting services.

While the exact nature of the breach and its connection to Netlify remains under investigation, it highlights the vulnerabilities associated with relying on third-party service providers in the digital landscape.

Attempts to drain users’ crypto wallets

Users reported encountering a button on the compromised Ordswap website that attempted to drain their crypto wallets.

https://twitter.com/Sir_Gadfly/status/1711452268816629777?s=20

This tactic, known as a wallet-draining scam, is increasingly employed by crypto scammers to illicitly siphon off digital assets. It serves as a stark reminder of the risks associated with interacting with cryptocurrency platforms.

Ordswap affirms user assets unaffected

Despite the security breach, an Ordswap team member on Discord claimed that user’s private keys and assets remained unaffected. However, users were cautioned that their security could be compromised if they continued to engage with the compromised website.

This incident underscores the critical importance of user security in the cryptocurrency space. Vigilance and caution are paramount, as phishing attempts and scams continue to target crypto enthusiasts. At the moment, the Ordswap team is actively working to regain control of its website and restore user confidence in the platform.