{"id":82032,"date":"2024-06-20T16:03:42","date_gmt":"2024-06-20T20:03:42","guid":{"rendered":"https:\/\/coinscreed.com\/staging\/?p=82032"},"modified":"2024-06-20T16:04:29","modified_gmt":"2024-06-20T20:04:29","slug":"kraken-recovers-3m-from-certik-following-bounty-fiasco","status":"publish","type":"post","link":"https:\/\/coinscreed.com\/staging\/kraken-recovers-3m-from-certik-following-bounty-fiasco\/","title":{"rendered":"Kraken Recovers $3M from Certik Following Bounty Fiasco"},"content":{"rendered":"\n<p>Nick Percoco, <a href=\"https:\/\/coinscreed.com\/staging\/kraken-chief-lawyer-says-the-sec-is-open-to-discussion-on-anything-crypto.html\">Kraken's chief <\/a><a href=\"https:\/\/coinscreed.com\/staging\/kraken-chief-lawyer-says-the-sec-is-open-to-discussion-on-anything-crypto.html\" target=\"_blank\" rel=\"noreferrer noopener\">security officer<\/a>, said the Crypto exchange recovered the money stolen due to a technological fault.<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img fetchpriority=\"high\" decoding=\"async\" width=\"1024\" height=\"576\" src=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-1024x576.jpeg\" alt=\"Kraken Recovers $3M from Certik Following Bounty Fiasco\" class=\"wp-image-82033\" srcset=\"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-1024x576.jpeg 1024w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-300x169.jpeg 300w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-768x432.jpeg 768w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-750x422.jpeg 750w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967-1140x641.jpeg 1140w, https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967.jpeg 1200w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><figcaption class=\"wp-element-caption\">Kraken Recovers $3M from Certik Following Bounty Fiasco<\/figcaption><\/figure>\n\n\n\n<p>Percoco said on X on June 20 that the exchange had successfully recovered the monies. The security research firm engaged in the incident was named Certik in previous disclosures, albeit the Kraken CSO did not specify where they learned of this information. <\/p>\n\n\n\n<p>After finding a bug, Kraken accused the <a href=\"https:\/\/coinscreed.com\/staging\/certik-uncovers-kraken-exploit-alleges-threats-from-exchange.html\" target=\"_blank\" rel=\"noreferrer noopener\">security research company<\/a> of being behind the accounts that stole money from the exchange's treasury.\u00a0<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">What took place?\u00a0<\/h2>\n\n\n\n<p>On June 19, Certik published a statement on X identifying the members of its staff who had been in touch with Kraken regarding a serious problem found in the exchange's accounts system. <\/p>\n\n\n\n<p>Certik added that the flaw would have enabled hackers to obtain millions of dollars worth of <a href=\"https:\/\/coinscreed.com\/staging\/curio-smart-contract-platform-faces-16m-digital-assets-exploit.html\" target=\"_blank\" rel=\"noreferrer noopener\">digital assets<\/a> from Kraken. It's interesting to note that research company employees had gone on to remove $3 million from Kraken using this identical weakness. <\/p>\n\n\n\n<p>Then, they insisted that the bug bounty be honored by the exchange. According to Kraken and Certik's post, the employees in question refused to return the money when requested.\u00a0The platform noted:<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>&#8220;After initial successful conversions on identifying and fixing the vulnerability, Kraken's security operation team has threatened individual CertiK employees to repay a mismatched amount of crypto in an unreasonable time even without providing repayment addresses&#8221; <\/p>\n<\/blockquote>\n\n\n\n<p>Kraken called this extortion rather than honest actions of a <a href=\"https:\/\/www.kaspersky.com\/resource-center\/definitions\/white-hat-hackers\" target=\"_blank\" rel=\"noreferrer noopener\">white hat hackers<span class=\"wpil-link-icon\" title=\"Link goes to external site.\" style=\"margin: 0 0 0 5px;\"><svg width=\"24\" height=\"24\" style=\"height:16px; width:16px; fill:#000000; stroke:#000000; display:inline-block;\" viewBox=\"0 0 24 24\" version=\"1.1\" xmlns=\"http:\/\/www.w3.org\/2000\/svg\" xmlns:svg=\"http:\/\/www.w3.org\/2000\/svg\"><g id=\"wpil-svg-outbound-7-icon-path\" fill=\"none\" clip-path=\"url(#clip0_31_188)\">\r\n                            <path d=\"M9.16724 14.8891L20.1672 3.88908\" stroke-linecap=\"round\"\/>\r\n                            <path d=\"M13.4497 3.53554L20.5208 3.53554L20.5208 10.6066\" stroke-linecap=\"round\" stroke-linejoin=\"round\"\/>\r\n                            <path d=\"M17.5 13.5L17.5 16.26C17.5 17.4179 17.5 17.9968 17.2675 18.4359C17.0799 18.7902 16.7902 19.0799 16.4359 19.2675C15.9968 19.5 15.4179 19.5 14.26 19.5L7.74 19.5C6.58213 19.5 6.0032 19.5 5.56414 19.2675C5.20983 19.0799 4.92007 18.7902 4.73247 18.4359C4.5 17.9968 4.5 17.4179 4.5 16.26L4.5 9.74C4.5 8.58213 4.5 8.0032 4.73247 7.56414C4.92007 7.20983 5.20982 6.92007 5.56414 6.73247C6.0032 6.5 6.58213 6.5 7.74 6.5L11 6.5\" stroke-linecap=\"round\"\/>\r\n                        <\/g>\r\n                        <defs>\r\n                            <clipPath id=\"clip0_31_188\">\r\n                                <rect fill=\"white\" height=\"24\" width=\"24\"\/>\r\n                            <\/clipPath>\r\n                        <\/defs><\/svg><\/span><\/a>.<\/p>\n\n\n\n<h2 class=\"wp-block-heading\">Certik Offered to Return Funds<\/h2>\n\n\n\n<p>Later, Certik announced on X that the aforementioned amounts would be transferred to a wallet accessible by Kraken. According to its statement:&nbsp;<\/p>\n\n\n\n<blockquote class=\"wp-block-quote is-layout-flow wp-block-quote-is-layout-flow\">\n<p>\u201cSince Kraken has not provided repayment addresses and the requested amount was mismatched, we are transferring the funds based on our records to an account that Kraken will be able to access.\u201d<\/p>\n<\/blockquote>\n\n\n\n<p>The money was recovered, the Kraken announced on Thursday, with a tiny amount lost to fees. Kraken informed customers in a previous report that no user cash were lost during the bug incident.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Nick Percoco, Kraken&#8217;s chief security officer, said the Crypto exchange recovered the money stolen due to a technological fault. Percoco said on X on June 20 that the exchange had successfully recovered the monies. The security research firm engaged in the incident was named Certik in previous disclosures, albeit the Kraken CSO did not specify [&hellip;]<\/p>\n","protected":false},"author":43,"featured_media":82033,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[11407],"tags":[10415,1406,1671],"class_list":["post-82032","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cryptocurrency-exchange","tag-certik-2","tag-crypto-exchange","tag-kraken"],"jetpack_featured_media_url":"https:\/\/coinscreed.com\/staging\/wp-content\/uploads\/2024\/06\/croc_1718911061967.jpeg","jetpack_sharing_enabled":true,"_links":{"self":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/82032","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/users\/43"}],"replies":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/comments?post=82032"}],"version-history":[{"count":0,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/posts\/82032\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media\/82033"}],"wp:attachment":[{"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/media?parent=82032"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/categories?post=82032"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/coinscreed.com\/staging\/wp-json\/wp\/v2\/tags?post=82032"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}