Connect with us

Published

on

Bitcoin ATMs are a rapidly growing presence in the United States and, some experts say, a rapidly growing cybercrime menace. ATMs dealing in bitcoin are similar to their cash cousins: there are PINs to punch and withdrawal fees, just like any other ATM.

Unlike cash ATMs, though, the high value of crypto makes them prime targets for hackers. So, while a cash ATM tucked away between the snack cakes and energy drinks at a gas station may not draw much attention, a bitcoin ATM gets more scrutiny from bad actors.

“It’s clear that these machines are particularly vulnerable to both physical and cyber threats, making them a prime target for hackers and thieves,” said Timothy Bates, clinical professor of cybersecurity at the University of Michigan’s College of Innovation and Technology.

Bitcoin ATMs can be susceptible to attacks where hackers install malware on the machines to capture private keys, steal funds, or manipulate transactions, which Bates said is “especially concerning for ATMs that may not receive regular software updates or security patches.” Network vulnerabilities are also a weak spot. “If the machine’s network communications are not adequately secured, attackers can intercept data transfers between the ATM and the server, leading to data theft or unauthorized access,” Bates said.

Whether it’s hackers or scammers, the government is sounding the alarm about bitcoin ATMs. The Federal Trade Commission reported this week that scam incidents have risen by 1,000% since 2020.

Ironically, a bitcoin ATM’s risks are directly related to its strengths, according to Joe Dobson, principal analyst at Mandiant, a Google Cloud-owned cybersecurity company. Bitcoin is decentralized, permission-less, and immutable. “A transaction cannot be reversed or recalled if funds are deposited to the wrong address,”  Dobson said. And while many crypto bulls find bitcoin’s lack of governance appealing, that can be problematic in ATMs. “There is no governing body within bitcoin dictating who can or cannot run a bitcoin ATM, hence many independent organizations operate the ATMs,”  Dobson said.

There are also old criminal tricks that might be reversible in a traditional banking situation, but in the world of bitcoin, that is not so. For example, someone could maliciously slip their personal deposit slips into the stack at the bank, tricking folks into depositing money into their account. “A similar attack can happen with bitcoin ATMs,” Dobson said. “If an attacker compromises a bitcoin ATM, they may change the receiving wallet address (or ‘account number’), effectively stealing user funds.”

But in addition to old tricks, there are newer threats bitcoin ATMs introduce that cash ATMs do not face. Many bitcoin ATMs require personally identifiable information, such as an ID or even a Social Security number to comply with financial industry Know Your Customer (KYC) requirements. This information could be at risk if a bitcoin ATM is compromised.

In Middletown, Ohio, at the Middletown Food Mart in a hollowed-out end of town, a Bitcoin Depot ATM sits opposite a regular cash ATM, blending in among the potato chips, bottled water, and beer. Middletown’s claim to fame lately is as the hometown of Donald Trump’s running mate Ohio Senator J.D. Vance, who has refashioned himself, similar to Trump, as a pro-cryptocurrency warrior. The Middletown Food Mart sits across the street from where Vance grew up.

‘Elon Musk told me to do it.’

Sai Patel, whose family owns Middletown Food Mart, says the bitcoin ATM isn’t very busy.

“Maybe once a month someone comes in to use it,” Patel said. And if it is someone new, Patel will patiently explain how the machine works. He also keeps an eye out for unusual activity. Although the bitcoin ATM isn’t exactly drawing crowds, Patel says a surprising number of senior citizens show up at the kiosk, alarming given the rise of bitcoin ATM scams targeting seniors.

“Elderly people come in and use it,” Patel said.

He described one encounter where an elderly woman entered his shop and headed for the bitcoin ATM, then attempted to send a lot of money somewhere but had questions about using the machine. When Patel asked the woman a few questions as to why, she said, “Elon Musk told me to do it.” Patel quickly realized she had fallen prey to a scam. “I told her, no, no, no, it’s a scam,” Patel said, and he stopped her from dumping her life savings into the machine.

Alice Frei, head of security and compliance at blockchain communications & consulting agency Outset PR, says bitcoin ATM fraud is costly, enhanced by the sometimes shadowy world of crypto.

“Cryptocurrencies are easily exchanged online, often without clear identification of the parties involved. Criminals exploit this anonymity and move money almost invisibly, often employing techniques such as cross-blockchain ‘bridges’ to further obscure transactions,” she said. 

And then there’s the fact that an ATM scam probably doesn’t originate in the town where it occurs. “Many crypto exchanges involved in these activities are based offshore, beyond the reach of regulators, making it difficult to trace and recover stolen funds,” Frei added.

Basic steps to avoid bitcoin ATM scams

To protect against these scams, users should be cautious and skeptical of any request to pay through a bitcoin ATM. Legitimate businesses rarely, if ever, demand payment in bitcoin through a machine.

“Verifying the legitimacy of a transaction, particularly checking the recipient’s wallet for connections to questionable entities is crucial,” Frei said, adding that users should also use licensed ATMs from reputable operators to reduce the risk.

Frei said there are steps that users can take to verify the ownership and legitimacy of a bitcoin ATM or parties involved in transactions.

“You can verify the recipient address by checking for flagged activity on platforms like Chainabuse and running an AML check on the address using available tools,” she said, If these tools show the risk score above 70%, it’s advisable to avoid sending money. “Instead, contact the ATM operator or the person who provided the address to clarify the situation,” Frei added.

According to Frei, data shows that nearly 74% of ATMs globally are managed by just 10 operators.

The largest operator of bitcoin ATMs, Bitcoin Depot, operates over 8,000 ATMs. Its CEO Brandon Mintz says the company’s machines are designed to deter hackers. But he also disputes the claims that bitcoin ATMs are major hacking targets.

“Bitcoin ATMs aren’t typically high-priority targets for cybercriminals due to the separation of the hardware and the bitcoin wallet environments,” Mintz said. Bitcoin Depot does not store any bitcoin locally at a bitcoin ATM, and there are many layers of verification and approval processes that prevent unauthorized access to the Bitcoin Depot wallet, he said.

Additionally, Mintz said, most bitcoin ATMs, including Bitcoin Depot’s, only accept cash, so this removes the ability for criminals to use card skimmers like they can install on traditional cash ATMs. However, he says users do need to be aware of scams, and some of the same basic protocols that protect consumers from old-fashioned financial scams apply to the world of cryptocurrency as well.

“Customers of bitcoin ATMs should never send bitcoin or other cryptocurrencies to unknown digital wallets or individuals they don’t know and trust. It’s important to remain vigilant and skeptical of anyone asking for cryptocurrency payments, especially if the request comes with a sense of urgency or threat,”  Mintz said.

As the market leader, Bitcoin Depot has been a target of litigation and the company disclosed in its S-1 filing before going public that its users “have been and could be targeted in cybersecurity incidents like an account takeover.” A South Carolina woman sued Bitcoin Depot after falling victim to an alleged cryptocurrency scam. In another instance, authorities in Texas intervened to return money from a Bitcoin Depot ATM after a woman fell victim to a scam.

And that points to a central irony of bitcoin and the bitcoin ATM, products of technology, but ones where the most powerful weapon against fraud isn’t more technology but responsibility, Dobson said. “User responsibility is paramount in cryptocurrency. There is little recompense if something goes awry. The onus is largely on the user to take steps.”

Continue Reading

Technology

Inside one of the first all-female hacker houses in San Francisco

Published

on

By

Inside one of the first all-female hacker houses in San Francisco

For Molly Cantillon, living in a hacker house wasn’t just a dream, but a necessity.

“I had lived in a few hacker houses before and wanted to replicate that energy,” said Cantillon, 20, co-founder of HackHer House and founder of the startup NOX. “A place where really energetic, hardcore people came together to solve problems. But every house I lived in was mostly male. It was obvious to me that I wanted to do the inverse and build an all-female hacker house that created the same dynamic but with women.”

Cantillon, who has lived in several hacker houses over the years, saw a need for a space dedicated exclusively to women. That’s why she co-founded HackHer House, the first all-female hacker house in the San Francisco Bay Area.

“A hacker house is a shared living space where builders and innovators come together to work on their own projects while collaborating with others,” said Jennifer Li, General Partner at Andreessen Horowitz and sponsor of the HackHer House. “It’s a community that thrives on creativity and resource sharing, making it a cost-effective solution for those in high-rent areas like Silicon Valley, where talented founders and engineers can easily connect and support each other.”

Founded by Cantillon, Zoya Garg, Anna Monaco and Anne Brandes, this house was designed to empower women in a tech world traditionally dominated by men. 

“We’re trying to break stereotypes here,” said Garg, 21, a rising senior at Stanford University. “This house isn’t just about living together; it’s about creating a community where women can thrive in tech.”

Located in North Beach, HackHer House was home this summer to seven women, all of whom share the goal of launching successful ventures in tech. 

Venture capital played a key role in making HackHer House possible. With financial backing, the house offered subsidized rent, allowing the women to focus on their projects instead of struggling with the Bay Area’s notoriously high living costs.

“New grad students face daunting living expenses, with campus costs reaching the high hundreds to over a thousand dollars a month,” said Li. “In the Bay Area, finding a comfortable room typically starts at $2,000, and while prices may have eased slightly, they remain significantly higher than the rest of the U.S. This reality forces many, including founders, to share rooms or crash on friends’ couches just to make ends meet.” 

Hacker houses aren’t new to the Bay Area or cities like New York and London. These live-in incubators serve as homes and workspaces, offering a collaborative environment where tech founders and innovators can share ideas and resources. In a city renowned for tech advancements, hacker houses are viewed as critical for driving the next wave of innovation. By providing affordable housing and a vibrant community, these spaces enable entrepreneurs to thrive in an otherwise cutthroat and expensive market.

Watch this video to see how Hacker House is shaping the future of women in tech.

Continue Reading

Technology

Elon Musk’s X will be allowed back online in Brazil after paying one more fine

Published

on

By

Elon Musk's X will be allowed back online in Brazil after paying one more fine

The Federal Supreme Court (STF) in Brazil suspends Elon Musk’s social network after it fails to comply with orders from Minister Alexandre de Moraes to block accounts of those being investigated by the Brazilian justice system. 

Cris Faga | Nurphoto | Getty Images

X has to pay one last fine before the social network owned by Elon Musk is allowed back online in Brazil, according to a decision out Friday from the country’s top justice, Alexandre de Moraes.

The platform was suspended nationwide at the end of August, a decision upheld by a panel of judges on Sept. 2. Earlier this month, X filed paperwork informing Brazil’s supreme court that it is now in compliance with orders, which it previously defied.

As Brazil’s G1 Globo reported, X must now pay a new fine of 10 million reals (about $2 million) for two additional days of non-compliance with the court’s orders. X’s legal representative in Brazil, Rachel de Oliveira, is also required to pay a fine of 300,000 reals.

The case dates back to April, when de Moraes, the minister of Brazil’s supreme court, known as Supremo Tribunal Federal (STF), initiated a probe into Musk and X over alleged obstruction of justice.

Musk had vowed to defy the court’s orders to take down certain accounts in Brazil. He called the court’s actions “censorship,” and railed online against de Moraes, describing the judge as a “criminal” and encouraging the U.S. to end foreign aid to Brazil.

In mid-August, Musk closed down X offices in Brazil. That left his company without a legal representative in the country, a federal requirement for all tech platforms to do business there.

By Aug. 28, de Moraes’ court threatened a ban and fines if X didn’t appoint a legal representative within 24 hours, and if it didn’t comply with takedown requests for accounts the court said had engaged in plots to dox or harm federal agents, among other things.

Earlier this month, the STF froze the business assets of Musk companies, including both X and satellite internet business Starlink, operating in Brazil. The STF said in court filings that it viewed Starlink parent SpaceX and X as companies that worked together as related parties.

Musk wrote in a post on X at that time that, “Unless the Brazilian government returns the illegally seized property of and SpaceX, we will seek reciprocal seizure of government assets too.”

On August 29, 2024, in Brazil, the Minister of the Supreme Court, STF Minister Alexandre de Moraes, orders the blocking of the accounts of another company, Starlink, of Elon Musk, to guarantee the payment of fines imposed by the STF due to the lack of representatives of X in Brazil. 

Ton Molina | Nurphoto | Getty Images

As head of the STF, de Moraes has long supported federal regulations to rein in hate speech and misinformation online. His views have garnered pushback from tech companies and far-right officials in the country, along with former President Jair Bolsonaro and his supporters.

Bolsonaro is under investigation, suspected of orchestrating a coup in Brazil after losing the 2022 presidential election to current President Luiz Inacio Lula da Silva.

While Musk has called for retribution against de Moraes and Lula, he has worked with and praised Bolsonaro for years. The former president of Brazil authorized SpaceX to deliver satellite internet services commercially in Brazil in 2022.

Musk bills himself as a free speech defender, but his track record suggests otherwise. Under his management, X removed content critical of ruling parties in Turkey and India at the government’s insistence. X agreed to more than 80% of government take-down requests in 2023 over a comparable period the prior year, according to analysis by the tech news site Rest of World.

X faces increased competition in Brazil from social apps like Meta-owned Threads, and Bluesky, which have attracted users during its suspension.

Starlink also faces competition in Brazil from eSpace, a French-American firm that gained permission this year from the National Telecommunications Agency (Anatel) to deliver satellite internet services in the country.

Lukas Darien, an attorney and law professor at Brazil’s Facex University Center, told CNBC that the STF’s enforcement actions against X are likely to change the way large technology companies will view the court.

“There is no change to the law here,” Darien wrote in a message. “But specifically, big tech companies are now aware that the laws will be applied regardless of the size of a business and the magnitude of its reach in the country.”

Musk and representatives for X didn’t immediately respond to a request for comment on Friday.

Late Thursday, X Global Government Affairs posted the following statement:

“X is committed to protecting free speech within the boundaries of the law and we recognize and respect the sovereignty of the countries in which we operate. We believe that the people of Brazil having access to X is essential for a thriving democracy, and we will continue to defend freedom of expression and due process of law through legal processes.”

WATCH: X is a financial ‘disaster’

Elon Musk's X is a financial 'disaster,' co-authors of new book 'Character Limit' say

Continue Reading

Technology

OpenAI sees roughly $5 billion loss this year on $3.7 billion in revenue

Published

on

By

OpenAI sees roughly  billion loss this year on .7 billion in revenue

Sam Altman, CEO of OpenAI, at the Hope Global Forums annual meeting in Atlanta on Dec. 11, 2023.

Dustin Chambers | Bloomberg | Getty Images

OpenAI, the creator of ChatGPT, expects about $5 billion in losses on $3.7 billion in revenue this year, CNBC has confirmed.

The company generated $300 million in revenue last month, up 1,700% since the beginning of last year, and expects to bring in $11.6 billion in sales next year, according to a person close to OpenAI who asked not to be named because the numbers are confidential.

The New York Times was first to report on OpenAI’s financials earlier on Friday after viewing company documents. CNBC hasn’t seen the financials.

OpenAI, which is backed by Microsoft, is currently pursuing a funding round that would value the company at more than $150 billion, people familiar with the matter have told CNBC. Thrive Capital is leading the round and plans to invest $1 billion, with Tiger Global planning to join as well.

OpenAI CFO Sarah Friar told investors in an email Thursday that the funding round is oversubscribed and will close by next week. Her note followed a number of key departures, most notably technology chief Mira Murati, who announced the previous day that she was leaving OpenAI after six and a half years.

Also this week, news surfaced that OpenAI’s board is considering plans to restructure the firm to a for-profit business. The company will retain its nonprofit segment as a separate entity, a person familiar with the matter told CNBC. The structure would be more straightforward for investors and make it easier for OpenAI employees to realize liquidity, the source said.

OpenAI’s services have exploded in popularity since the company launched ChatGPT in late 2022. The company sells subscriptions to various tools and licenses its GPT family of large language models, which are powering much of the generative AI boom. Running those models requires a massive investment in Nvidia’s graphics processing units.

The Times, citing an analysis by a financial professional who reviewed OpenAI’s documents, reported that the roughly $5 billion in loses this year are tied to costs for running its services as well as employee salaries and office rent. The costs don’t include equity-based compensation, “among several large expenses not fully explained in the documents,” the paper said.

WATCH: OpenAI has a lot of challengers, says Madrona’s Matt McIlwain

OpenAI has a lot of challengers, says Madrona's Matt McIlwain

Continue Reading

Trending