Crypto Sleuth Links The Wintermute $160M Hack To Insider Job

2022-9-28 22:56

In the crypto industry, issues of hacks and exploits have become one of the dreaded nightmares. The increasing expansion of the crypto space brews more exploitations as well. Despite the security measures most crypto protocols build around them, the bad actors never cease to scan for available vulnerabilities.

On September 20, a source revealed bug exploitation on a Wintermute smart contract. According to the report, the hacker carted away more than 70 different crypto tokens from the platform worth about $160 million.

The stolen tokens include 671 Wrapped Bitcoin (wBTC), Tether (USDT), and USD Coin (USDC). The values of the coins at the time of the exploit are $13 million, 29.5 million, and 61.4 million, respectively.

Crypto Hack Analysis Points To An Internal Actor

A Medium post outlined the hack’s analysis. The author of the post, James Edwards, also known as the Librehash, stated the hack was from an internal party. His induction was based on how the exploit occurred on the smart contract of the algorithmic market maker.

Librehash alleged that the relevant transactions initiated by the externally owned address (EOA) suggest the involvement of a member of the Wintermute team.

Detailing his claims, Edwards reported that the EOA triggered the compromise on the Wintermute smart contract. He noted the EOA itself is compromised through the team’s use of a faulty online vanity address generator tool.

According to Edwards, the attacker could make calls on the Wintermute smart contract by recovering the EOA’s private key. But the EOA’s private key was supposed to have admin access.

Transparency Of Wintermute In Doubt

Edwards’ analysis revealed that the same has no uploaded and verified code. Hence, it inhibits the ease of the confirmation of the external hacker theory by the public. This spikes up concerns regarding the transparency of the algorithmic market maker.

The author termed it a transparency flop on the protocol itself. He noted that the smart contract manages users’ funds on the blockchain. So, the expectation is to enable the public to examine and audit the Solidity code.

Further analysis through manual decompiling of the smart contract code unveiled more truth. Edwards stated that the code did not match the attributed cause of the exploit.

Also, during the attack, there was a transfer of 13.48M USDT to the 0x0248 smart contract from the Wintermute smart contract. The hacker is supposedly the creator and controller of the recipient address.

Cryptocurrency market incurs a minor loss | Source: Crypto Total Market Cap on TradingView.com

Wintermute had not revealed details of the attack. But it took to Twitter to acknowledge the hack on September 21 while stating its continuous service to its partners. It noted that the hack did not impact its DeFi smart contract, internal systems, or third-party data.

Featured image from Al Bawaba, chart from TradingView.com origin »

Bitcoin price in Telegram @btc_price_every_hour

Emerald Crypto (EMD) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 4.67 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Цена в час новости $ 0.0095806 (-100%)

crypto around build actors bad protocols despite

crypto around → Результатов: 126


Binance KYC Hack: CZ Denies That Scammers Stole Thousands Of Users Data

Reports have been going around that the Binance Crypto exchange was allegedly hacked as “Thousands of KYC users data” were on Telegram messenger. The solicitude of the major exchange users occurred when the photos of passports and identity cards allegedly owned by Binance users appeared on the Telegram channel named “FIND YOUR BINANCE KYC”.

2019-8-8 14:20


Facebook’s Libra Continues To Receive Worrisome Outlooks From Global Finance Regulators

Libra, the cryptocurrency project headed by Facebook and the Libra Association, is getting heat from several privacy and data protection regulators around the world. According to recent reports made by The Block Crypto, regulators from countries such as the United States, Canada, United Kingdom, Australia and the European Union are all concerned about Libra and […]

2019-8-7 22:35


Bitcoin Hater Peter Schiff: ‘I Made a Mistake’ Not Buying Bitcoin at $10

Goldbug and fierce bitcoin critic Peter Schiff is “kicking himself” for not buying bitcoin when he first heard about it around the $10 mark. In a debate with Anthony Pompliano hosted by CNBC Crypto Trader, Schiff said: “I’m already kicking myself, I had that opportunity, I could already be a billionaire if I had only […] The post Bitcoin Hater Peter Schiff: ‘I Made a Mistake’ Not Buying Bitcoin at $10 appeared first on CCN Markets

2019-8-1 12:54


Bitcoin may be Still for the Next Two Months But ETH, XRP Could go Wild – Analyst

The cryptocurrency market has been moving sideways especially for Bitcoin which has crashed significantly from the 2019 high of over $13,000 to the current $9,000s. While the crypto community is hoping things will turn around soon and Bitcoin will start rising to a new high for the year, the crypto analyst known on Twitter as […] The post Bitcoin may be Still for the Next Two Months But ETH, XRP Could go Wild – Analyst appeared first on ZyCrypto.

2019-7-31 10:46


Analyst: Bitfinex Court Hearing Could Contribute to Massive Bitcoin Volatility

The crypto markets have been closely following the situation that has been unfolding around the popular and controversial Bitfinex cryptocurrency exchange, which also owns the controversial stable coin Tether, which is accused by the NYAG of allowing US-based users to flout the Bitcoin (BTC) and crypto leveraged trading restrictions.

2019-7-30 01:00