{"id":16981,"date":"2022-01-23T15:34:09","date_gmt":"2022-01-23T14:34:09","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=16981"},"modified":"2022-01-23T15:34:18","modified_gmt":"2022-01-23T14:34:18","slug":"whitehat-hacker-reportedly-returns-259-eth-in-the-multichain-attack","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/whitehat-hacker-reportedly-returns-259-eth-in-the-multichain-attack\/","title":{"rendered":"Whitehat Hacker reportedly returns 259 ETH in the Multichain attack"},"content":{"rendered":"\n<h5 class=\"wp-block-heading\">Following the <a href=\"https:\/\/coinscreed.com\/staging\/users-attack-multichain-over-security-vulnerability-leading-to-losses-of-over-3m.html\" data-type=\"post\" data-id=\"16802\">Multichain<\/a> hack, the cross-chain protocol reported an update stating that a whitehat hacker returned 259 ETH.<\/h5>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"519\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145-1024x519.png\" alt=\"Whitehat Hacker reportedly returns 259 ETH in the Multichain attack\" class=\"wp-image-16822\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145-1024x519.png 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145-300x152.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145-768x390.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145-750x380.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145.png 1029w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/figure><\/div>\n\n\n\n<p>Users of the cross-chain protocol have expressed their dissatisfaction with the platform's response to an unsolved security issue that surfaced earlier in the week. However, Multichain later claimed that one <a href=\"https:\/\/www.google.com\/search?q=Whitehat+Hacker+reportedly+returns+259+ETH+in+the+Multichain+attack&rlz=1C1SQJL_enNG889NG889&oq=Whitehat+Hacker+reportedly+returns+259+ETH+in+the+Multichain+attack&aqs=chrome..69i57.1322j0j4&sourceid=chrome&ie=UTF-8\" data-type=\"URL\" data-id=\"https:\/\/www.google.com\/search?q=Whitehat+Hacker+reportedly+returns+259+ETH+in+the+Multichain+attack&rlz=1C1SQJL_enNG889NG889&oq=Whitehat+Hacker+reportedly+returns+259+ETH+in+the+Multichain+attack&aqs=chrome..69i57.1322j0j4&sourceid=chrome&ie=UTF-8\" target=\"_blank\" rel=\"noopener\">whitehat hacker <span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a>had returned 259 ETH worth $813,000.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">The Multichain six-token attack<\/h2>\n\n\n\n<p>It all began when Multichain revealed the presence of a bug that exposed many accounts to malevolent actors. To protect their assets, the protocol's creators advised users to revoke authorization for six tokens: WETH, PERI, OMT, WBNB, MATIC, and AVAX. This step inevitably caused <a href=\"https:\/\/coinscreed.com\/staging\/north-korean-hackers-stole-nearly-400-million-in-2021.html\" data-type=\"post\" data-id=\"16513\">hackers<\/a> to rush in and exploit the flaw.<\/p>\n\n\n\n<figure class=\"wp-block-image size-full\"><img decoding=\"async\" width=\"555\" height=\"567\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-183.png\" alt=\"\" class=\"wp-image-16984\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-183.png 555w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-183-294x300.png 294w\" sizes=\"(max-width: 555px) 100vw, 555px\" \/><\/figure>\n\n\n\n<p>According to Multichain, three hackers made off with $1.9 million worth of Ether. However, Tal Be'ery, co-founder of ZenGo, estimates that the total money taken has likely exceeded $3 million.<\/p>\n\n\n\n<p>Users who forgot to update their approvals were robbed of $1.43 million by one of the hackers. Another hacker offered to return 80% of the money in exchange for a $150,000 tip. Seeing this, one of the victims, who lost $960,000 as a result of the attack, struck a deal with the hacker, <a href=\"https:\/\/coinscreed.com\/staging\/poly-network-announces-a-500000-bug-bounty-program.html\" data-type=\"post\" data-id=\"8024\">paying a bounty<\/a> of 50 ETH to the address in exchange for the monies.<\/p>\n\n\n\n<p>Users were perplexed after Multichain claimed that &#8220;funds are safe&#8221; even while the exploit was active in a since-deleted tweet. Several victims demanded compensation from Multichain, accusing the scammers of attempting to impersonate the company in order to steal more user cash. DeFi security firm Dedaub was the first to report the flaw, although Multichain claimed to have fixed it.<\/p>\n\n\n\n<h3 class=\"wp-block-heading\">The Crypto.com hack<\/h3>\n\n\n\n<p>The latest intrusion follows<a href=\"https:\/\/coinscreed.com\/staging\/400-accounts-were-compromised-cryptocom-ceo.html\" data-type=\"post\" data-id=\"16838\"> CryptoCom's<\/a> admission on January 17th of a vulnerability in which hackers stole more than $30 million. After a spate of complaints from consumers who claimed their funds had vanished, CryptoCom declared that withdrawals would be suspended. After being repeatedly accused of imprecise communication, the firm didn't formally recognize the incident until Thursday.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Following the Multichain hack, the cross-chain protocol reported an update stating that a whitehat hacker returned 259 ETH. Users of the cross-chain protocol have expressed their dissatisfaction with the platform&#8217;s response to an unsolved security issue that surfaced earlier in the week. However, Multichain later claimed that one whitehat hacker had returned 259 ETH worth [&hellip;]<\/p>\n","protected":false},"author":12,"featured_media":16822,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[23,21],"tags":[5562,5555,6108,6745],"class_list":["post-16981","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ethereum-news","category-news","tag-eth-2","tag-ethereum-3","tag-multichain","tag-whitehat-hacker"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2022\/01\/image-145.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/16981","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=16981"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/16981\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/16822"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=16981"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=16981"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=16981"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}