todayonchain.com

$1 for the Keys? Dark Web Post Claims Kraken Admin Access for Sale

BeInCrypto
A dark web post claims to be selling read-only access to Kraken's internal admin panel, raising significant security concerns.

Summary

A post on a dark web forum is reportedly selling read-only access to the internal admin panel of the Kraken cryptocurrency exchange for as little as $1. The advertised access allegedly allows viewing user profiles, transaction histories, and full KYC documents, lasting one to two months with no IP restrictions, and includes the ability to generate support tickets. While some online users are skeptical of the listing's authenticity, security experts warn that even read-only access poses a major risk, enabling threat actors to impersonate staff, reference real data to build trust, and launch sophisticated phishing or social engineering attacks. CIFER Security advises Kraken users to immediately enable hardware key authentication, activate global settings locks, whitelist withdrawal addresses, and exercise extreme caution with support communications, highlighting that centralized custody remains a significant point of failure in the crypto industry.

(Source:BeInCrypto)