OpenSea រាយការណ៍អំពីការបំពានទិន្នន័យ ព្រមានអតិថិជនអំពីការប៉ុនប៉ងលួចបន្លំដែលអាចកើតមាន

OpenSea – one of the most popular NFT-centric platforms – has reported a data breach affecting the personally-identifying information (PII) of customers subscribed to the company’s mailing list.

Lax External Security at Fault

The breach was not caused by OpenSea itself, the firm explained. Rather, it was due to an employee of Customer.io, a third-party platform hired by OpenSea to manage social media communications.

This is not the first time Customer Relationship Management (CRMs) platforms have proven to be a chink in the armor for crypto and NFT platforms. As recently as March, a similar CRM – Hubspot – was responsible for a nearly identical data breach affecting Circle, Swan Bitcoin, BlockFi, and NYDIG.

An Uptick in Phishing Attempts Expected

OpenSea officially បានប្រកាស the breach in a blog post published only a few hours ago. In the statement, the company warned users that the amount of data stolen is suspected to be rather large, advising them to be extra vigilant.

On Twitter, OpenSea customers are already reporting suspicious e-mails, phone calls, and messages directed at them, which are believed to be taking place due to info stolen by the Customer.io employee.

The spokesperson for OpenSea also confirmed that the team has already contacted the relevant legal authorities about the breach. Unlike recent exploits of blockchain-related platforms, this attack is centered on customer data – which, unlike tokens, are heavily protected by governments around the world.

“ប្រសិនបើអ្នកបានចែករំលែកអ៊ីមែលរបស់អ្នកជាមួយ OpenSea កាលពីអតីតកាល អ្នកគួរតែសន្មត់ថាអ្នកបានទទួលឥទ្ធិពល។ យើងកំពុងធ្វើការជាមួយ Customer.io ក្នុងការស៊ើបអង្កេតដែលកំពុងបន្តរបស់ពួកគេ ហើយយើងបានរាយការណ៍ពីឧបទ្ទវហេតុនេះទៅឱ្យការអនុវត្តច្បាប់។ សូម​រក្សា​ការ​ប្រុង​ប្រយ័ត្ន​ចំពោះ​ការ​អនុវត្ត​អ៊ីមែល​របស់​អ្នក ហើយ​ត្រូវ​ប្រុង​ប្រយ័ត្ន​ចំពោះ​ការ​ប៉ុនប៉ង​ក្លែង​ខ្លួន​ជា OpenSea តាម​អ៊ីមែល។

OpenSea has already begun to send out e-mails to addresses confirmed to have been affected, briefly explaining how the breach came about and warning users to be on their guard.

Several anti-phishing best practices are also touched on in the e-mail – along with a reminder that opensea.io is the only legitimate website domain owned by the company. A warning to avoid downloading attachments is also included, reiterating that e-mails from OpenSea do not have attachments as a general rule.

Hyperlinks were also touched on – although OpenSea e-mails may include some, any link prompting a user to sign a wallet transaction should be assumed to be fraudulent.

In closing, OpenSea promises to update users about the situation whenever possible and requests that any phishing attempts be reported to their support team.

ការផ្តល់ជូនពិសេស (ឧបត្ថម្ភ)

Binance ឥតគិតថ្លៃ 100 ដុល្លារ (ផ្តាច់មុខ): ប្រើតំណនេះ ដើម្បីចុះឈ្មោះ និងទទួលបាន $100 ឥតគិតថ្លៃ និងថ្លៃសេវា 10% លើ Binance Futures ខែដំបូង (លក្ខខណ្ឌ).

ការផ្តល់ជូនពិសេសរបស់ PrimeXBT៖ ប្រើតំណនេះ ដើម្បីចុះឈ្មោះ និងបញ្ចូលលេខកូដ POTATO50 ដើម្បីទទួលបានប្រាក់រហូតដល់ 7,000 ដុល្លារលើការដាក់ប្រាក់របស់អ្នក។

Source: https://cryptopotato.com/opensea-reports-data-breach-warns-customers-of-possible-phishing-attempts/