Haruko Hit with Targeted Cyberattack Exposing 15 Non-Whitelisted Clients
A London-based crypto infrastructure provider called Haruko has confirmed a targeted cyberattack that compromised 15 non-whitelisted clients via a stolen access token.
The attack occurred in the week of September 18, with all affected parties being clients who had not configured Haruko's IP-whitelist feature. The company provides portfolio and trade-data tooling to institutional digital-asset firms and connects to centralized exchanges, custodians, blockchains, and DeFi protocols.
The attacker exploited a vulnerability in one of Haruko's processes, extracted the user-access token, and used it to capture data held in the process's memory. The company has since told clients to enable the inbound IP whitelist for maximum protection.