{"id":74597,"date":"2024-03-27T09:02:47","date_gmt":"2024-03-27T13:02:47","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=74597"},"modified":"2024-03-27T09:02:49","modified_gmt":"2024-03-27T13:02:49","slug":"munchables-hacker-returns-stolen-funds-without-ransom","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/munchables-hacker-returns-stolen-funds-without-ransom\/","title":{"rendered":"Munchables Hacker Returns Stolen Funds Without Ransom"},"content":{"rendered":"\n<p>Following the<a href=\"https:\/\/coinscreed.com\/staging\/ftx-exploiter-transfers-36-8m-in-ether-as-sbf-trial-begins.html\" target=\"_blank\" rel=\"noreferrer noopener\"> Ether exploit <\/a>on Munchables, the developer hacker, who stole $62.8 million worth of Ether , has decided to return the funds without demanding a ransom after eight hours.<\/p>\n\n\n\n<figure class=\"wp-block-image aligncenter size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"530\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-1024x530.png\" alt=\"Munchables Hacker Returns Stolen Funds Without Ransom\" class=\"wp-image-74603\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-1024x530.png 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-300x155.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-768x398.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-750x389.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119-1140x591.png 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119.png 1191w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Munchables Hacker Returns Stolen Funds Without Ransom<\/figcaption><\/figure>\n\n\n\n<p>At approximately 9:30 pm UTC on March 26, Munchables, an Ethereum-based nonfungible token (NFT) game, disclosed a breach that compromised the GameFi application, resulting in more than 17,400 ETH loss.<\/p>\n\n\n\n<p>Munchables and <a href=\"https:\/\/coinscreed.com\/staging\/national-crime-agency-uk-looks-to-hire-blockchain-investigators.html\" target=\"_blank\" rel=\"noreferrer noopener\">blockchain investigators<\/a>, including ZachXBT and PeckShield, initiated the monitoring of the whereabouts of the stolen funds to apprehend them.<\/p>\n\n\n\n<figure class=\"wp-block-image size-jnews-featured-750\"><img decoding=\"async\" width=\"750\" height=\"157\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-116-750x157.png\" alt=\"\" class=\"wp-image-74600\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-116-750x157.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-116-300x63.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-116-768x161.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-116.png 935w\" sizes=\"(max-width: 750px) 100vw, 750px\" \/><figcaption class=\"wp-element-caption\"><em>Source:\u00a0<a href=\"https:\/\/twitter.com\/_munchables_\/status\/1772739713687752761\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Munchables<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a><\/em><\/figcaption><\/figure>\n\n\n\n<p>According to ZachXBT, the exploit originated from the Munchables team's employment of a North Korean developer with the alias &#8220;Werewolves0943.&#8221;<\/p>\n\n\n\n<p>Munchables identified the intruder as one of its developers at 4:40 am UTC on March 27. Following an hour of negotiations, the erstwhile developer consented to the return of the compromised funds. As stated in a formal statement by Munchables:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p><em>\u201cThe Munchables developer has shared all private keys involved to assist in recovering the user funds. Specifically, the key which holds $62,535,441.24 USD, the key which holds 73 WETH, and the owner key which contains the rest of the funds.\u201d<\/em><\/p>\n<\/blockquote>\n\n\n\n<p>Under the alias Pacman, the<a href=\"https:\/\/coinscreed.com\/staging\/ethereum-layer-2-network-base-tvl-doubles.html\" target=\"_blank\" rel=\"noreferrer noopener\"> Ethereum layer-2 blockchain<\/a> Blast developer thanked ZachXBT for his assistance and declared that &#8220;the former Munchables developer ultimately decided to return all funds without demanding a ransom.&#8221;<\/p>\n\n\n\n<figure class=\"wp-block-image size-jnews-featured-750\"><img decoding=\"async\" width=\"750\" height=\"512\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-117-750x512.png\" alt=\"\" class=\"wp-image-74601\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-117-750x512.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-117-300x205.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-117-768x525.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-117.png 934w\" sizes=\"(max-width: 750px) 100vw, 750px\" \/><figcaption class=\"wp-element-caption\">Source:\u00a0Pacman\u00a0<\/figcaption><\/figure>\n\n\n\n<p>Being a member of the Munchables team, Pacman will assist in redistributing the unlawfully acquired funds, given that Munchables was constructed atop the Blast blockchain.<\/p>\n\n\n\n<p>Victims of the breach are advised to ensure they only follow communications from reputable sources in the interim to prevent falling victim to refund schemes.<\/p>\n\n\n\n<p>Four days before the exploit, an individual breached four distinct <a href=\"https:\/\/coinscreed.com\/staging\/paraswap-returns-crypto-after-smart-contract-exploit.html\" target=\"_blank\" rel=\"noreferrer noopener\">decentralized finance (DeFi) aggregator ParaSwap<\/a> addresses and seized approximately $24,000. After recovering the funds, the protocol initiated the process of refunding users.<\/p>\n\n\n\n<figure class=\"wp-block-image size-jnews-featured-750\"><img loading=\"lazy\" decoding=\"async\" width=\"750\" height=\"421\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-118-750x421.png\" alt=\"\" class=\"wp-image-74602\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-118-750x421.png 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-118-300x168.png 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-118-768x431.png 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-118.png 948w\" sizes=\"(max-width: 750px) 100vw, 750px\" \/><figcaption class=\"wp-element-caption\">Source:\u00a0<a href=\"https:\/\/twitter.com\/paraswap\/status\/1771964824542441528\" target=\"_blank\" rel=\"noreferrer noopener\"><span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><use href=\"#wpil-svg-outbound-7-icon-path\"><\/use><\/svg><\/span><\/a>ParaSwap<\/figcaption><\/figure>\n\n\n\n<p>White hat hackers assisted ParaSwap in resolving the issue and revoking authorizations for the susceptible AugustusV6 smart contract.<\/p>\n\n\n\n<p>The vulnerability impacted 386 addresses in total, according to ParaSwap. As of March 25, 213 addresses still need to revoke allowances for the defective contract.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Following the Ether exploit on Munchables, the developer hacker, who stole $62.8 million worth of Ether , has decided to return the funds without demanding a ransom after eight hours. At approximately 9:30 pm UTC on March 26, Munchables, an Ethereum-based nonfungible token (NFT) game, disclosed a breach that compromised the GameFi application, resulting in [&hellip;]<\/p>\n","protected":false},"author":12,"featured_media":74603,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11476],"tags":[5817,6115,18945],"class_list":["post-74597","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-hacks-and-scams","tag-hack-2","tag-hackers-2","tag-munchables"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/03\/image-119.png","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74597","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/12"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=74597"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/74597\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/74603"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=74597"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=74597"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=74597"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}