<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:atom="http://www.w3.org/2005/Atom"
     xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
     xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
     xmlns:georss="http://www.georss.org/georss"
     xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#"
     xmlns:media="http://search.yahoo.com/mrss/">
    <channel>
        <title><![CDATA[Another Axie Infinity hack, this time using discord bot]]></title>
        <atom:link href="https://usagag.com/2022/05/18/another-axie-infinity-hack-this-time-using-discord-bot/" rel="self" type="application/rss+xml" />
        <link>https://usagag.com/2022/05/18/another-axie-infinity-hack-this-time-using-discord-bot/</link>
        <lastBuildDate>Wed, 18 May 2022 15:37:00 +0000</lastBuildDate>
        <sy:updatePeriod>hourly</sy:updatePeriod>
        <sy:updateFrequency>1</sy:updateFrequency>
        <generator>https://usagag.com</generator>
        <media:content url="/uploads/2022/05/18/another-axie-infinity-hack-this-time-using-discord-bot-2022-05-18-15-43-17.png" medium="image">
            <media:title type="html">Another Axie Infinity hack, this time using discord bot</media:title>
        </media:content>
        <content:encoded><![CDATA[<p>Axie Infinity has declared on its Twitter account that the MEE6 bot on its Discord server was compromised. The MEE6 team has disputed that its bot was under assault.</p>
<p>Numerous servers utilize the MEE6 bot to automate messages and do other activities on Discord.</p>
<p><a href="https://coincryptous.com/price/axie-infinity/">Axie Infinity</a> reported on May 18 that the attackers infiltrated the bot and used it to provide rights to a false Jiho account, which they then used to publish a bogus mint announcement.</p>
<blockquote class="twitter-tweet">
<p dir="ltr" lang="en">1/ There was a compromise of the Mee6 bot which was installed on the main Axie server. The attackers used that bot to add permissions to a fake Jiho account, which then posted a fake announcement about a mint.</p>
&mdash; Axie Infinity🦇🔊 (@AxieInfinity) <a href="https://twitter.com/AxieInfinity/status/1526760612419837954?ref_src=twsrc%5Etfw">May 18, 2022</a></blockquote>
<p>
<script src="https://platform.twitter.com/widgets.js" async=""></script>
</p>
<p>Fortunately, the developers immediately spotted it. They eliminated the compromised bot and destroyed the communications. According to the gaming platform, there will never be a surprise mint, and such events are often announced on Twitter, Facebook, Discord, and Substack.</p>
<p>However, it also stated that some users may be able to view the erased messages until they restart their Discord client. At least one user reports losing an NFT and Domain owing to the breach.</p>
<h3>Axie asserts that others have had the same misfortune</h3>
<p><a title="Axie Infinity" href="https://coincryptous.com/2022/04/15/u.s.-officials-believe-north-koreas-lazarus-group-is-responsible-for-the-breach-of-axie-infinity/?preview=1" target="_blank" rel="noopener">Axie Infinity</a> indicated that the breach is not unique to its server and that numerous servers running MEE6 Bot had previously seen similar difficulties. Cool Cats, RTFKT, PXN, PROOF/Moonbirds, and Memeland have all claimed that the bot has compromised their administrator accounts.</p>
<blockquote class="twitter-tweet">
<p dir="ltr" lang="en">4/ This was not unique to Axie and happened to many servers with the Mee6 bot installed.</p>
&mdash; Axie Infinity🦇🔊 (@AxieInfinity) <a href="https://twitter.com/AxieInfinity/status/1526765876967575552?ref_src=twsrc%5Etfw">May 18, 2022</a></blockquote>
<p>
<script src="https://platform.twitter.com/widgets.js" async=""></script>
</p>
<p>According to people with knowledge of Discord's security, the hackers presumably first targeted admin accounts. Then, they developed a response role function for the MEE6 bot, which transfers the admin position to a different account.</p>
<p>This allowed them to send webbook messages without disclosing the hijacked administrator account.</p>
<h3>MEE6 denies any hack .</h3>
<p>MEE6 has disputed the accusation that its Discord server was compromised. It was said that their bot did not breach any NFT communities.</p>
<blockquote>
<p><em><strong>&ldquo;We have not been contacted by any real community owners at the time of this message, nor via Discord or any other Support Communication Channels. We have checked the situations with our engineers, and no data of unusual activities have been spotted,&rdquo; the statement reads.</strong></em></p>
</blockquote>
<p>AXS, the native token of Axie Infinity, has suffered since the exploit, even when additional money were raised to repay customers.</p>
<p>Due to delays and growing security concerns, user confidence has decreased and continues to fall. Currently, AXS is trading at $21.6, compared to a high of $164.9 in November 2021.</p>
<p>
<script src="https://platform.twitter.com/widgets.js" async=""></script>
</p><script async="" src="https://platform.twitter.com/widgets.js"></script>]]></content:encoded>
                <dc:creator><![CDATA[Sam byFord]]></dc:creator>
            </channel>
</rss><!--Time: 0.029232025146484-->