Global blockchain supervision and query platform

English
Download

Multichain hacker returns 322 ETH, keeps hefty finders fee

 Multichain hacker returns 322 ETH, keeps hefty finders fee WikiBit

One of the Multichain hackers returned 322 ETH, but over 527 ETH is still outstanding.

Surajdeep Singh Jan 21, 2022 Multichain hacker returns 322 ETH, keeps hefty finders fee

Owing to a security vulnerability in six tokens, Multichain users lost more than $3 million over the week. A white hat hacker returned 322 ETH, but over 527 ETH is still exploited.

22220 Total views 100 Total shares Listen to article 0:00

News

In a dramatic twist, one of this weeks Multichain hackers has returned 322 Ether (ETH) ($974,000 at the time of writing) to the cross-chain router protocol and one of the affected users.

However, the hacker kept 62 ETH ($187,000) as a “bug bounty,” while a total of 528 ETH (worth $1.6M) remains outstanding after the exploits.

Earlier this week, news emerged of a security vulnerability with Multichain relating to Wrapped Ether (wETH), Peri Finance (PERI), Mars Token (OMT), Wrapped Binance Coin (wBNB), Polygon (MATIC) and Avalanche (AVAX), and $1.43 million was stolen. Multichain anounced on Monday the critical vulnerability had been “reported and fixed.”

However, publicity about the vulnerability reportedly encouraged a number of different attackers to swoop in, and more than $3 million in funds were stolen. The critical vulnerability in the six tokens still exists, but Multichain has drained around $44.5 million of funds from multiple chain bridges to protect them.

Yeah, bridge contract need pause function. https://t.co/lPjLsE5EtR

— Zhaojun (@zhaojun_sh) January 20, 2022

One of the hackers, calling himself a “white hat,” has been in communication with both Multichain and a user who lost $960,000 in the past day or so to negotiate the return of 80% of the money in exchange for a hefty finders fee.

According to a Thursday tweet from ZenGo wallet co-founder Tal Beery, the hacker claimed they had been “saving the rest” of the Multichain users who were being targeted by bots in an act of defensive hacking.

The funds were returned across four transactions. On Thursday, the hacker returned 269 ETH ($813,000) in two transactions directly to the user from whom he stole it and kept a bug bounty of 50 ETH ($150,000).

The relieved user responded to the hacker:

“Well received, thank you for your honesty.”

Overnight, the hacker also returned 50 ETH ($150,000) in two transactions to the official Multichain address and kept a bug bounty of 12 ETH ($36,000).

Related: Multichain asks users to revoke approvals amid ‘critical vulnerability’

Multichain (formerly Anyswap) aims to be the “ultimate router for Web3.” The platform supports 30 chains at the moment, including Bitcoin, Ethereum, Avalanche, Litecoin, Terra and Fantom.

In a tweet on Thursday, Multichain co-founder and CEO Zhaojun conceded that Multichain bridge contracts need a pause function to deal with similar incidents in future..

Cointelegraph has contacted the project for comment.

  • #Blockchain

  • #Altcoin

  • #Ethereum

  • #Transactions

  • #Investments

  • #Hackers

  • #DeFi

Related News

  • Blockchain to Disrupt Music Industry and Make It Change Tune

  • DeFi protocol to introduce fixed rate interest yields

  • Kevin OLeary says his crypto holdings could reach 20% of portfolio

  • LCX loses $6.8M in a hot wallet compromise over Ethereum blockchain

  • Industry players respond to Vitalik Buterin's thoughts on cross-chain ecosystems

  • Multichain under fire from users as hacking losses grow to $3M

Load more articles Editors Choice

  • Bitcoin falls to $36K, traders say bulls need a ‘Hail Mary’ to avoid a bear market

  • A key Ethereum price metric hits a 6-month low as ETH falls below $3K

  • SEC rejects MicroStrategy's Bitcoin accounting practices: report

  • Price analysis 1/21: BTC, ETH, BNB, ADA, SOL, XRP, LUNA, DOT, AVAX, DOGE

  • Redditors share their thoughts on buying Bitcoin at all-time highs

Cointelegraph YouTube Subscribe Advertise with us

Disclaimer:

The views in this article only represent the author's personal views, and do not constitute investment advice on this platform. This platform does not guarantee the accuracy, completeness and timeliness of the information in the article, and will not be liable for any loss caused by the use of or reliance on the information in the article.

  • Token conversion
  • Exchange rate conversion
  • Calculation for foreign exchange purchasing
/
PC(S)
Current Rate
Available

0.00