Crypto hackers have been busy lately. Hardly a day goes by when we don’t read another dramatic headline about a multimillion-dollar crypto scam.
Cyber thieves purloined a whopping $4.5 billion worth of digital currency in 2021, doubling their bounty from 2020.
Cyber criminals helped themselves to nearly $2bn worth of crypto this year alone, clocking a 60 per cent jump in such transgressions.
These frequent crypto-related crimes are the proverbial salt on the wounds of investors already smarting from the precipitous and unrelenting fall of crypto prices across the spectrum.
Worth more than $3 trillion barely months ago, the crypto market value has now sunk to $1tn, as of November 7, according to Coinmarketcap.com.
Worse yet, crypto transactions are irreversible - once stolen, digital assets are often lost for ever.
Crypto theft isn’t a risk that’s going to disappear overnight. With crypto becoming more mainstream and attracting more investors, learning about how to protect your crypto has become more critical than ever before.
Read on to learn how to be an astute — and safe — crypto investor.
Threats to crypto safety
Blockchain, a digital ledger for transactions, forms the backbone of cryptocurrencies.
Its decentralised nature and lack of intermediaries makes a blockchain vulnerable to sophisticated hackers who can find safety gaps in the tech infrastructure of crypto exchanges and online trading platforms, and exploit it to drain crypto accounts.
“Vulnerabilities can happen through a variety of ways: both simple bugs, but also design flaws that open the door for attacks,” says Christian Seifert, security researcher at Forta, a real-time detection network for security and operational monitoring of blockchain activity.
Lack of awareness among investors and failure to take adequate security measures is another area crypto thieves look for.
____________
Watch: what is Bitcoin and how did it start?
Hacking risks can also take the form of malicious links or malware that are designed to steal private information.
Phishing remains the most common cause of theft in the crypto industry. Swindlers design phishing websites that mirror established brands and trick users into giving up personal financial information.
“A major way that end users are impacted is through private key theft and ice phishing attacks,” says Mr Seifert.
“Both are social engineering attacks where users are tricked into disclosing information or signing transactions that give attackers access to a user’s digital assets.”
Account takeover attacks have also been on the rise. Criminals are using this automated scam to take over people’s online accounts using bot-driven hacking techniques, including credential stuffing or credential cracking.
Once perpetrators take control of accounts of popular businesses, they redirect users to fake websites to either drain crypto held in wallets or steal seed phrases — a list of 12 to 24 words that can be used to access funds in a crypto storage.
Storage choices
Custodial wallets, cold wallets and hot wallets are some of the most common storage options used by crypto investors to secure their coins and private keys.
For the average crypto investor, custodial wallets are the default storage option as they’re held and operated by crypto exchanges.
Cold wallets are offline hardware wallets regarded as arguably the safest bet for holding cryptocurrency. It’s an external storage device, like a memory stick, and is not connected to the internet.
Hot wallets, by contrast, are internet-connected desktop, mobile and web-based applications.
In crypto wallets, “digital assets are stored on the ledger, or the blockchain, and wallets manage the keys that allow one to operate on these digital assets”, says Mr Seifert.
“Hot wallets store these keys locally on your device [and thus, they are subject to being stolen] whereas cold wallets are disconnected, making it much more difficult to steal the keys.”
Unlike custodial wallets, held by third parties, non-custodial wallets allow users full control over their assets. They eliminate the danger of unauthorised access of your account information.
Whereas hot wallets require users to be technical savvy, cold wallets don't so much. Hot wallets used to access or store crypto within centralised exchanges require labyrinthine registration and verification processes and require a tremendous amount of trust that a big tech company will not steal or cut the user off from their digital assets.
Protecting your crypto
Offline crypto storage is widely regarded as the safest option, used both by individuals and exchange platforms to secure their digital assets.
When digital assets are stored with an exchange, you are delegating the management and safety of those assets to that entity.
“Exchanges have instituted best practices to secure your digital assets and theft from exchanges have been increasingly rare,” Mr Seifert says.
____________
Cryptocurrencies — in pictures
Non-custodial wallets, particularly cold wallets, put the onus on the owner for managing and securing their keys.
There are three distinct aspects to securing a cold wallet, says Walt Greene, founder, inventor and chief executive of QDEx Labs, a cybersecurity and blockchain development company.
“Keep your chosen physical storage device in a safe place — preferably in a safe until you need to use it,” he says.
Second, store your recovery phrase offline, in a safe. This provides you the ability to restore “the entire wallet’s contents if something were to happen to it and grants access to all your private keys”, says Mr Greene, who advises against saving a recovery phrase on any device connected to a network since it can be accessed by skilled hackers.
“Written format is preferable,” he stresses.
Third, your private keys are specific to a coin/blockchain via a unique address and should be kept in a secure place in written format, preferably in a physical safe and “always immediately disconnect your cold wallet from the device you are performing a trade on when finished”, Mr Greene cautions.
Keep your IDs non-obvious and passwords as strong as possible such as mixtures of “nonsense letters, phrases and words that have no correlation to each other along with numbers/symbols scattered throughout”, he says.
The more complex, the better, and write it down. Make sure you are on the right website (URL) every time you log in.
____________
Watch: take a look inside Thailand's cryptocurrency cafe
“Never enter your private [ID/password] information anywhere other than the proper log-in screen,” says Mr Greene, who urges investors to never share their seed phrase, ID or password with anyone who says they need it to transfer you anything.
To make it more foolproof, avoid using the same password for multiple accounts.
Cybercrime experts suggest using a password manager, an encrypted digital vault that safely stores password/login information for apps and accounts on your digital devices and websites.
“For the average user,” Mr Seifert says, “I would recommend custodial wallets as one delegates the responsibility of managing wallet keys to professionals.”
This can be beneficial both in the event of a key loss or a cyberattack.
Final word
The threat landscape is constantly evolving and attackers are innovating to steal digital assets. In recent years, this has even led to well-funded state-sponsored adversaries to be active in this space.
“Overall, the industry has recognised the need for built-in security features, understanding the threat landscape in real-time,” says Mr Seifert.
End users need to demand security from the platforms and wallets they are using, he adds.
That said, save for not investing in crypto at all, nothing is watertight when it comes to crypto safety, warns Mr Greene.
“Because many attacks are based on social engineering [meaning techniques that rely on human failing, not the technical prowess of a potential hacker], nothing will ever be 100 per cent safe from theft,” Mr Greene says.
As crypto holders, therefore, keeping your assets safe, taking maximum precaution and putting protective measures in place is your responsibility.
Lexus LX700h specs
Engine: 3.4-litre twin-turbo V6 plus supplementary electric motor
Power: 464hp at 5,200rpm
Torque: 790Nm from 2,000-3,600rpm
Transmission: 10-speed auto
Fuel consumption: 11.7L/100km
On sale: Now
Price: From Dh590,000
Specs
Engine: Dual-motor all-wheel-drive electric
Range: Up to 610km
Power: 905hp
Torque: 985Nm
Price: From Dh439,000
Available: Now
How much do leading UAE’s UK curriculum schools charge for Year 6?
- Nord Anglia International School (Dubai) – Dh85,032
- Kings School Al Barsha (Dubai) – Dh71,905
- Brighton College Abu Dhabi - Dh68,560
- Jumeirah English Speaking School (Dubai) – Dh59,728
- Gems Wellington International School – Dubai Branch – Dh58,488
- The British School Al Khubairat (Abu Dhabi) - Dh54,170
- Dubai English Speaking School – Dh51,269
*Annual tuition fees covering the 2024/2025 academic year
UAE v Gibraltar
What: International friendly
When: 7pm kick off
Where: Rugby Park, Dubai Sports City
Admission: Free
Online: The match will be broadcast live on Dubai Exiles’ Facebook page
UAE squad: Lucas Waddington (Dubai Exiles), Gio Fourie (Exiles), Craig Nutt (Abu Dhabi Harlequins), Phil Brady (Harlequins), Daniel Perry (Dubai Hurricanes), Esekaia Dranibota (Harlequins), Matt Mills (Exiles), Jaen Botes (Exiles), Kristian Stinson (Exiles), Murray Reason (Abu Dhabi Saracens), Dave Knight (Hurricanes), Ross Samson (Jebel Ali Dragons), DuRandt Gerber (Exiles), Saki Naisau (Dragons), Andrew Powell (Hurricanes), Emosi Vacanau (Harlequins), Niko Volavola (Dragons), Matt Richards (Dragons), Luke Stevenson (Harlequins), Josh Ives (Dubai Sports City Eagles), Sean Stevens (Saracens), Thinus Steyn (Exiles)
Red flags
- Promises of high, fixed or 'guaranteed' returns.
- Unregulated structured products or complex investments often used to bypass traditional safeguards.
- Lack of clear information, vague language, no access to audited financials.
- Overseas companies targeting investors in other jurisdictions - this can make legal recovery difficult.
- Hard-selling tactics - creating urgency, offering 'exclusive' deals.
Courtesy: Carol Glynn, founder of Conscious Finance Coaching
'Brazen'
Director: Monika Mitchell
Starring: Alyssa Milano, Sam Page, Colleen Wheeler
Rating: 3/5
EPL's youngest
- Ethan Nwaneri (Arsenal)
15 years, 181 days old
- Max Dowman (Arsenal)
15 years, 235 days old
- Jeremy Monga (Leicester)
15 years, 271 days old
- Harvey Elliott (Fulham)
16 years, 30 days old
- Matthew Briggs (Fulham)
16 years, 68 days old
The specs: 2019 Haval H6
Price, base: Dh69,900
Engine: 2.0-litre turbocharged four-cylinder
Transmission: Seven-speed automatic
Power: 197hp @ 5,500rpm
Torque: 315Nm @ 2,000rpm
Fuel economy, combined: 7.0L / 100km
UAE currency: the story behind the money in your pockets
TOURNAMENT INFO
Fixtures
Sunday January 5 - Oman v UAE
Monday January 6 - UAE v Namibia
Wednesday January 8 - Oman v Namibia
Thursday January 9 - Oman v UAE
Saturday January 11 - UAE v Namibia
Sunday January 12 – Oman v Namibia
UAE squad
Ahmed Raza (captain), Rohan Mustafa, Mohammed Usman, CP Rizwan, Waheed Ahmed, Zawar Farid, Darius D’Silva, Karthik Meiyappan, Jonathan Figy, Vriitya Aravind, Zahoor Khan, Junaid Siddique, Basil Hameed, Chirag Suri
BMW M5 specs
Engine: 4.4-litre twin-turbo V-8 petrol enging with additional electric motor
Power: 727hp
Torque: 1,000Nm
Transmission: 8-speed auto
Fuel consumption: 10.6L/100km
On sale: Now
Price: From Dh650,000
More from Neighbourhood Watch
Mohammed bin Zayed Majlis
Getting there
Flydubai flies direct from Dubai to Tbilisi from Dh1,025 return including taxes
Company%20profile
%3Cp%3E%3Cstrong%3EName%3A%3C%2Fstrong%3E%20Homie%20Portal%20LLC%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStarted%3A%3C%2Fstrong%3E%20End%20of%202021%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EFounder%3A%20%3C%2Fstrong%3EAbdulla%20Al%20Kamda%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EBased%3A%3C%2Fstrong%3E%20Dubai%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ESector%3A%3C%2Fstrong%3E%20FinTech%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EInitial%20investment%3A%3C%2Fstrong%3E%20Undisclosed%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ECurrent%20number%20of%20staff%3A%3C%2Fstrong%3E%2014%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EInvestment%20stage%3A%20%3C%2Fstrong%3ELaunch%C2%A0%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EInvestors%3A%3C%2Fstrong%3E%20Self-funded%3C%2Fp%3E%0A
Conflict, drought, famine
Estimates of the number of deaths caused by the famine range from 400,000 to 1 million, according to a document prepared for the UK House of Lords in 2024.
It has been claimed that the policies of the Ethiopian government, which took control after deposing Emperor Haile Selassie in a military-led revolution in 1974, contributed to the scale of the famine.
Dr Miriam Bradley, senior lecturer in humanitarian studies at the University of Manchester, has argued that, by the early 1980s, “several government policies combined to cause, rather than prevent, a famine which lasted from 1983 to 1985. Mengistu’s government imposed Stalinist-model agricultural policies involving forced collectivisation and villagisation [relocation of communities into planned villages].
The West became aware of the catastrophe through a series of BBC News reports by journalist Michael Buerk in October 1984 describing a “biblical famine” and containing graphic images of thousands of people, including children, facing starvation.
Band Aid
Bob Geldof, singer with the Irish rock group The Boomtown Rats, formed Band Aid in response to the horrific images shown in the news broadcasts.
With Midge Ure of the band Ultravox, he wrote the hit charity single Do They Know it’s Christmas in December 1984, featuring a string of high-profile musicians.
Following the single’s success, the idea to stage a rock concert evolved.
Live Aid was a series of simultaneous concerts that took place at Wembley Stadium in London, John F Kennedy Stadium in Philadelphia, the US, and at various other venues across the world.
The combined event was broadcast to an estimated worldwide audience of 1.5 billion.
UAE currency: the story behind the money in your pockets
War 2
Director: Ayan Mukerji
Stars: Hrithik Roshan, NTR, Kiara Advani, Ashutosh Rana
Rating: 2/5
Dhadak 2
Director: Shazia Iqbal
Starring: Siddhant Chaturvedi, Triptii Dimri
Rating: 1/5
Scores
Rajasthan Royals 160-8 (20 ov)
Kolkata Knight Riders 163-3 (18.5 ov)
How to avoid crypto fraud
- Use unique usernames and passwords while enabling multi-factor authentication.
- Use an offline private key, a physical device that requires manual activation, whenever you access your wallet.
- Avoid suspicious social media ads promoting fraudulent schemes.
- Only invest in crypto projects that you fully understand.
- Critically assess whether a project’s promises or returns seem too good to be true.
- Only use reputable platforms that have a track record of strong regulatory compliance.
- Store funds in hardware wallets as opposed to online exchanges.
The specs
Engine: 3.9-litre twin-turbo V8
Power: 620hp from 5,750-7,500rpm
Torque: 760Nm from 3,000-5,750rpm
Transmission: Eight-speed dual-clutch auto
On sale: Now
Price: From Dh1.05 million ($286,000)
In numbers: China in Dubai
The number of Chinese people living in Dubai: An estimated 200,000
Number of Chinese people in International City: Almost 50,000
Daily visitors to Dragon Mart in 2018/19: 120,000
Daily visitors to Dragon Mart in 2010: 20,000
Percentage increase in visitors in eight years: 500 per cent
SPEC%20SHEET%3A%20APPLE%20M3%20MACBOOK%20AIR%20(13%22)
%3Cp%3E%3Cstrong%3EProcessor%3A%3C%2Fstrong%3E%20Apple%20M3%2C%208-core%20CPU%2C%20up%20to%2010-core%20CPU%2C%2016-core%20Neural%20Engine%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EDisplay%3A%3C%2Fstrong%3E%2013.6-inch%20Liquid%20Retina%2C%202560%20x%201664%2C%20224ppi%2C%20500%20nits%2C%20True%20Tone%2C%20wide%20colour%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EMemory%3A%3C%2Fstrong%3E%208%2F16%2F24GB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EStorage%3A%3C%2Fstrong%3E%20256%2F512GB%20%2F%201%2F2TB%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EI%2FO%3A%3C%2Fstrong%3E%20Thunderbolt%203%2FUSB-4%20(2)%2C%203.5mm%20audio%2C%20Touch%20ID%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EConnectivity%3A%3C%2Fstrong%3E%20Wi-Fi%206E%2C%20Bluetooth%205.3%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EBattery%3A%3C%2Fstrong%3E%2052.6Wh%20lithium-polymer%2C%20up%20to%2018%20hours%2C%20MagSafe%20charging%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3ECamera%3A%3C%2Fstrong%3E%201080p%20FaceTime%20HD%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EVideo%3A%3C%2Fstrong%3E%20Support%20for%20Apple%20ProRes%2C%20HDR%20with%20Dolby%20Vision%2C%20HDR10%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EAudio%3A%3C%2Fstrong%3E%204-speaker%20system%2C%20wide%20stereo%2C%20support%20for%20Dolby%20Atmos%2C%20Spatial%20Audio%20and%20dynamic%20head%20tracking%20(with%20AirPods)%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EColours%3A%3C%2Fstrong%3E%20Midnight%2C%20silver%2C%20space%20grey%2C%20starlight%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EIn%20the%20box%3A%3C%2Fstrong%3E%20MacBook%20Air%2C%2030W%2F35W%20dual-port%2F70w%20power%20adapter%2C%20USB-C-to-MagSafe%20cable%2C%202%20Apple%20stickers%3C%2Fp%3E%0A%3Cp%3E%3Cstrong%3EPrice%3A%3C%2Fstrong%3E%20From%20Dh4%2C599%3C%2Fp%3E%0A
UPI facts
More than 2.2 million Indian tourists arrived in UAE in 2023
More than 3.5 million Indians reside in UAE
Indian tourists can make purchases in UAE using rupee accounts in India through QR-code-based UPI real-time payment systems
Indian residents in UAE can use their non-resident NRO and NRE accounts held in Indian banks linked to a UAE mobile number for UPI transactions
More from Rashmee Roshan Lall
Cricket World Cup League Two
Oman, UAE, Namibia
Al Amerat, Muscat
Results
Oman beat UAE by five wickets
UAE beat Namibia by eight runs
Fixtures
Wednesday January 8 –Oman v Namibia
Thursday January 9 – Oman v UAE
Saturday January 11 – UAE v Namibia
Sunday January 12 – Oman v Namibia