Get 40% Off
🚨 Volatile Markets? Find Hidden Gems for Serious OutperformanceFind Stocks Now

Wintermute Asks Hacker To Return Stolen Funds — Or Face Legal Action

Published 23/09/2022, 00:07
Updated 23/09/2022, 00:40
© Reuters.  Wintermute Asks Hacker To Return Stolen Funds — Or Face Legal Action

Automated market maker Wintermute, which was hacked of $160 million worth of funds, has told the hacker to return the stolen funds or face legal consequences.

In an on-chain message sent to the hacker on Thursday, Wintermute warned whoever it was to accept a $16 million white-hat bounty and return the remaining $144 million.

Cooperate or Face Legal Consequences

“We want to cooperate with you and resolve this matter immediately. Accept the terms of the bounty and return the funds within 24 hours before September 22nd UST by 23:59 while we can still consider this a white-hat event for a 10% bounty as offered,” the message said.

The message further stated the hacker would be referred to as a "white hat" (a term used to describe ethical hackers) if they returned the funds.

This suggests an assurance that if the bad actor agrees to the request, no legal action will be pursued.

The hacker still has about 6 hours as of this writing to accept the bounty offer.

If the money, minus the bounty, is not returned within the stipulated time, the Wintermute team will contact the "relevant authorities and avenues," the on-chain statement said.

“If the stolen funds are not returned by the deadline, you will force us to remove our bounty offer and white-hat label; we will then proceed accordingly with the appropriate authorities and avenues,” it stated.

Human Error Attributed to the Hack

According to Wintermute CEO Evgeny Gaevoy, the theft of around $160 million from the algorithmic market maker service was the result of a "human mistake."

3rd party Ad. Not an offer or recommendation by Investing.com. See disclosure here or remove ads .

The assault vector was connected to the Ethereum (CRYPTO: ETH) vault that Wintermute uses for its on-chain decentralized finance (DeFi) trading activities.

Gaevoy emphasized this wallet was separate from Wintermute's centralized financing (CeFi) and over-the-counter (OTC) activities, as well as that none of its internal or counterparty data, nor any of its CeFi or OTC wallets, were harmed or compromised.

A Profanity-Related Vulnerability Was Used in the Assault

Gaevoy said that a "profanity-type exploit" on Wintermute's DeFi vault was most likely what started the attack.

Profanity was used to produce keys on the compromised wallet address last week, according to a post written by 1inch contributors.

Are you ready for the next cryptocurrency bull run? Be prepared before it happens! Hear from industry thought leaders like Kevin O’Leary and Anthony Scaramucci at the 2022 Benzinga Crypto Conference on Dec. 7 in New York City.

Photo: Pira25 via Shutterstock

© 2022 Benzinga.com. Benzinga does not provide investment advice. All rights reserved.

Read the original article on Benzinga

Latest comments

Risk Disclosure: Trading in financial instruments and/or cryptocurrencies involves high risks including the risk of losing some, or all, of your investment amount, and may not be suitable for all investors. Prices of cryptocurrencies are extremely volatile and may be affected by external factors such as financial, regulatory or political events. Trading on margin increases the financial risks.
Before deciding to trade in financial instrument or cryptocurrencies you should be fully informed of the risks and costs associated with trading the financial markets, carefully consider your investment objectives, level of experience, and risk appetite, and seek professional advice where needed.
Fusion Media would like to remind you that the data contained in this website is not necessarily real-time nor accurate. The data and prices on the website are not necessarily provided by any market or exchange, but may be provided by market makers, and so prices may not be accurate and may differ from the actual price at any given market, meaning prices are indicative and not appropriate for trading purposes. Fusion Media and any provider of the data contained in this website will not accept liability for any loss or damage as a result of your trading, or your reliance on the information contained within this website.
It is prohibited to use, store, reproduce, display, modify, transmit or distribute the data contained in this website without the explicit prior written permission of Fusion Media and/or the data provider. All intellectual property rights are reserved by the providers and/or the exchange providing the data contained in this website.
Fusion Media may be compensated by the advertisers that appear on the website, based on your interaction with the advertisements or advertisers.
© 2007-2024 - Fusion Media Limited. All Rights Reserved.