The security team exposes serious vulnerabilities in two exchanges, putting fund security at risk

【Crypto World】Security organizations reveal exchange vulnerability issues. On December 18th, well-known security team SlowMist discovered serious security vulnerabilities in two trading platforms, which directly threaten user funds. Even more upsetting, SlowMist repeatedly tried to contact these two platforms, but either couldn’t reach them or received no response despite public communication attempts.

Regarding the size of these two trading platforms, they are quite substantial. One has a 24-hour trading volume of $3.7 billion, and the other has a daily trading volume of $240 million. Logically, such large platforms should have relatively comprehensive security teams, but from this incident, it seems they may have fallen short in security emergency response.

According to tweets from the official SlowMist account, they did actively reach out recently to a trading platform called ICRYPEX Global to report these vulnerabilities. The failure to address these security risks in a timely manner poses a hidden danger to users. Many industry insiders, after noticing this issue, are discussing the importance of exchanges’ security responsibilities and emergency response mechanisms.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 9
  • Repost
  • Share
Comment
0/400
DAOdreamervip
· 12-19 22:31
Is it really impossible for such a large exchange to even respond to security team emails? Laughable, I can't believe it. --- ManoMoo has been ignored despite repeated feedback, this is the most terrifying part. --- A trading volume of $3.7 billion and still so unprofessional? Should I withdraw my coins or just keep lying flat? --- It's the same process again: vulnerability exposed → exchange apologizes → user funds go down the drain. When will they change? --- ICRYPEX's recent actions have definitely shot themselves in the foot. No wonder others are exposing them. --- Why are the biggest platforms always the least reliable, while smaller platforms do a better job of security? --- Multiple attempts to contact them have gone unanswered. How little do they value their users? --- ManoMoo's recent expose was too intense, but someone should finally burst the bubble of these "big" platforms. --- They have a staggering vulnerability with a daily trading volume of 240 million yen. Where are the compliance and risk control? --- Wait, is this due to poor technology or do they simply have no intention of fixing it?
View OriginalReply0
NftDeepBreathervip
· 12-18 19:46
This exchange is really outrageous. Tens of billions of dollars in volume and they can't even staff a security team? Even MistTrack proactively reached out and still pretends to be dead. This is hilarious. Stop talking, I already transferred my assets out. Who still trusts these platforms? With a daily trading volume of 3.7 billion USD, the security department is essentially nonexistent... How ironic. ICRYPEX's operation is truly top-notch. Security risks are right in front of us, but they choose to ignore them. Larger platforms are actually the least reliable, which is the most frightening part. MistTrack has exposed them, yet they still refuse to make improvements. How little do they value their users? Both of these companies are like this. I need to check where my coins are held... If they can't even ensure fund security, what's the point of running an exchange? I'm really fed up. In my opinion, platforms like these should be frozen. Protecting users should always come first.
View OriginalReply0
ProposalManiacvip
· 12-18 08:28
This is a typical case of governance mechanism failure. The larger the scale, the more it exposes the shortcomings of emergency response. Comparing it to traditional financial risk control processes, exchanges are completely lagging behind, and the communication chain is essentially useless...
View OriginalReply0
RebaseVictimvip
· 12-18 08:21
All major exchanges are like this; the security departments might just be a facade. What’s going on? A daily trading volume of $3.7 billion and they can still go offline? Ridiculous. Even SlowMist can’t find anyone, and we small retail investors are even more ignored, huh? It’s ICRYPEX again. This time, I really can’t hold back anymore. Putting funds into exchanges is just gambling. Blame me if you want.
View OriginalReply0
NoodlesOrTokensvip
· 12-18 08:15
Here are some comments in the style of "Eat noodles or eat coins": --- $3.7 billion daily trading volume and still so sluggish? Is the security team just for show? --- Can't get in touch? That's outrageous. Surely no one is really managing this big platform? --- Vulnerabilities and no response—who will safeguard users' funds? --- SlowMist has said so many times without any reaction. This platform really wants to have an incident. --- Large size ≠ strong security awareness. Now I finally understand this truth. --- ICRYPEX's move directly shows people what it means to be unworthy of being an exchange. --- I just want to know how many people's funds are still on these two platforms.
View OriginalReply0
GasFeeVictimvip
· 12-18 08:13
Emma, is it this set again? All the major exchanges dare to slack off like this. Where can we small retail investors be safe? --- SlowMist has been shouting until they’re hoarse, but the platform just acts like they didn’t hear... How much can they pretend? --- A daily trading volume of 3.7 billion USD and it’s still so sloppy. Laughing to death. Are the security teams just drawing salaries for nothing? --- ICRYPEX’s move this time is really top-notch. They kindly warned, but were ignored as if they were air. Serves them right. --- No, what’s going on with these two platforms? They have vulnerabilities but keep them under wraps? Users’ funds are just a joke to them. --- Another "big but not strong" exchange. Size doesn’t matter; they still drop the ball at critical moments. --- Why are all the exchanges like this now? Too many excuses for not being reachable.
View OriginalReply0
GateUser-40edb63bvip
· 12-18 08:11
Damn, can't even get in touch? A trading volume of 3.7 billion USD and still not taking security seriously, how much confidence does that take? Putting funds on this kind of platform is really gambling. Even SlowMist proactively reached out and still got ignored. What the hell? Can major exchanges still be this unreliable? It's hard to hold on. What should we do if something happens now? It's the same story again. If vulnerabilities aren't fixed, users will pay the price. It's always like this. I've never even heard of ICRYPEX... No wonder responses are so slow. Probably a common problem with small platforms. I smell a run happening, or maybe the operational team just has this level of competence. Can't contact two platforms? What are they playing at? No compliance at all, right? Putting money into exchanges is really unsafe. It's always the same story. When will this stop?
View OriginalReply0
PaperHandsCriminalvip
· 12-18 08:09
A platform with a $3.7 billion trading volume can be found vulnerable by SlowMist and no one cares, I really am convinced—how little they regard their users. --- It's the same story again: big platform security teams are just a facade. When something happens, they'll just shift the blame. --- Can't get in touch? Bro, maybe your email went to spam. Their operational ability is truly impressive. --- Even when SlowMist proactively reached out, they played deaf and mute. Do they really want to wait until hackers stab them in the back before pretending to be pitiful? --- A platform with a 24-hour trading volume of $3.7 billion is so insecure, and my coins are still inside... my mental state is collapsing. --- That's why I never keep assets on small platforms. But now even big platforms are starting to go missing. --- The problem is, SlowMist already issued warnings, and some people still keep pouring money in. Is this gambler's mentality? --- Thinking back, I also stored some coins on ICRYPEX. Now I'm a bit panicked—what's going on? --- Big exchanges' vulnerabilities can take so long to fix, and what about small exchanges? They're all just paper tigers.
View OriginalReply0
MetaverseLandlordvip
· 12-18 08:09
Is such a large platform still so unprofessional? Is the security team asleep? --- Even when Meng Wu proactively knocked on the door, they ignored it. Who else can match this attitude? --- A trading volume of $3.7 billion but can't even handle an emergency response. Truly impressive. --- It's the same old story of ignoring security feedback. User funds are always at risk, no matter who holds them. --- Can't get in touch? No response even after making it public? What exactly is this platform playing at? --- That's why I don't trust big platforms that much... they're all the same. --- Why does ICRYPEX feel so unfamiliar to me... Is it a small-scale platform or am I just out of the loop? --- The vulnerabilities have been exposed, so what are you waiting for? Hurry up and run away with your funds, everyone. --- Large platforms tend to have the worst emergency responses? That's hilarious. That's the most ironic part.
View OriginalReply0
View More
  • Pin
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate App
Community
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)