Fun

Kraken says its being extorted following bug bounty report

News Feed - 2024-06-19 10:06:30

Zoltan Vardai10 hours agoKraken says its being extorted following bug bounty reportThe bug resulted in at least $3 million worth of stolen funds, but no user funds were endangered, according to Kraken.7022 Total views3 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksCryptocurrency exchange Kraken has revealed that a research team remains in possession of $3 million worth of digital assets it had appropriated in a recently discovered bug.


An anonymous self-proclaimed “security researcher” found a critical security bug and alerted the cryptocurrency exchange on June 9.


However, two accounts related to the security researcher have exploited the bug to withdraw over $3 million worth of digital assets, according to Nicholas Percoco, chief security officer of Kraken.


Following the multimillion-dollar withdrawal, the security researcher is demanding a reward for the stolen funds, Percoco wrote in a June 19 X post:“Instead, they demanded a call with their business development team (i.e. their sales reps) and have not agreed to return any funds until we provide a speculated $ amount that this bug could have caused if they had not disclosed it. This is not white-hat hacking, it is extortion!”


The cryptocurrency was stolen directly from Kraken’s treasury. The exchange claims that no user funds were endangered.


Kraken will continue its bug bounty programs to assure the exchange’s security and is working with law enforcement to recover the stolen funds, a Kraken spokesperson told Cointelegraph:“We’re disappointed by this experience and are now working with law enforcement agencies to retrieve the assets from these security researchers.”


Related:Nomura crypto arm Laser Digital bags Abu Dhabi licenseThis is not white-hat hacking: Kraken


One of the three Kraken accounts related to the exploit has previously completed Know Your Customer (KYC) verification to an individual claiming to be a security researcher, but his identity remains undisclosed.


The individual who discovered a bug has initially proven the flaw with a crypto transfer worth $4, which would have been sufficient to prove the bug and collect “sizable rewards” from Karken’s bounty program.


However, the individual disclosed the bug to two other accounts that fraudulently siphoned nearly $3 million from their Kraken accounts.


These actions are akin to extortion, not ethical hacker behavior, according to Kraken’s Percoco:“In the essence of transparency, we are disclosing this bug to the industry today. We are being accused of being unreasonable and unprofessional for requesting that ‘white hat hackers’ return what they stole from us. Unbelievable.”$3 billion stolen in hacks — Why are crypto crimes surging? Source: Cointelegraph


Related:Stablecoin transfer volume increased 16x during past 4 yearsCrypto hacks in 2024 could outperform 2023


Crypto hackers and exploiters could be poised for a more successful year in 2024, compared to 2023.


In the first quarter of 2024, hackers stole digital assets valued at $542.7 million, a 42% increase compared to the same period in 2023. In an interesting turn of events, private key leaks were the leading cause of the growing exploits, not smart contract-related exploits.


Hacked funds lost to smart contract vulnerabilities fell 92% to $179 million in 2023, down from a staggering $2.6 billion in 2022, according to Merkle Science’s “2024 Crypto HackHub Report.”Crypto total losses by vulnerabilities. Source: Merkle Science


Over 55% of the hacked digital assets were lost to private key leaks during 2023.


The cryptocurrency industry suffered 785 reported hacks and exploits, resulting in nearly $19 billion lost over the past 13 years.


Magazine:Roaring Kitty’s GME shares hit $1B, BTC open interest soars, and other news: Hodler’s Digest, June 2–8# Kraken# Altcoin# Hackers# Hacks# DeFiAdd reaction

News Feed

If You Don’t Trust Yourself, These Crypto Vaults Will Help You Hodl Safely
If You Don’t Trust Yourself, These Crypto Vaults Will Help You Hodl Safely Hodling in difficult times has historically proven to be a long-term winning strategy. Keeping your c
Turner Wright8 hours agoLegal proceedings start for Terraform Labs co-founder in South Korea: ReportTerra co-founder Do Kwon is currently in custody in Montenegro, while Daniel Shin’s trial preparations in South Korea
Derek Andersen4 hours agoXRP, TON win approval in Dubai International Financial Centre free trade zoneThe new tokens join the ranks of BTC, ETH and LTC for use by the 4,000-plus companies located in the zone, which is co
VulcanVerse Takes NFTs to Next Level With Amazing Graphics, Gameplay and Lore
VulcanVerse Takes NFTs to Next Level With Amazing Graphics, Gameplay and Lore sponsored The NFT industry has been exploding recently with all types of artists, sp
Up to 12 Million Iranians Own Cryptocurrency, Traders Choose Local Exchanges
Up to 12 Million Iranians Own Cryptocurrency, Traders Choose Local Exchanges Cryptocurrencies are a popular investment among Iranians and estimates suggest that the number of those
Jerome Powell’s pivot heralds a boring summer for Bitcoin
Lucas Kiely4 hours agoJerome Powell’s pivot heralds a boring summer for BitcoinThe Federal Reserve isn"t sticking with the schedule of interest rate cuts it predicted earlier in the year. That makes navigating the mark
El Salvador launches $360M Bitcoin treasury monitoring website
Zoltan Vardai14 hours agoEl Salvador launches $360M Bitcoin treasury monitoring websiteEl Salvador was the first country to adopt Bitcoin as legal tender in 2021 and now holds over 5,700 BTC.5202 Total views6 Total share
Martin Young3 hours agoEthereum logs $1M MEV block reward amid Curve Finance exploitThe highest recently generated block reward was 584 ETH, created by a MEV bot front-running transactions during the DeFi chaos.1419 Tota
Woo X exchange launches world’s first tokenized T-bills for retail
Zoltan Vardai12 hours agoWoo X exchange launches world’s first tokenized T-bills for retailThe real-world assets sector continues generating interest as the second most profitable crypto narrative in the first quarter
Crypto Community Responds to Tornado Cash Sanctions, Privacy Advocates Say ‘There Are Many Legitimate Reasons to Seek Financial Anonymity’
Crypto Community Responds to Tornado Cash Sanctions, Privacy Advocates Say "There Are Many Legitimate Reasons to Seek Financial Anonymity" The U.S. government banning the ethereum
Brayden Lindrea5 hours agoOn-chain tool to seize crypto is a purist’s nightmare, but a must, says CEOA United States federal court recently used on-chain tech to lock criminals out of their crypto on the Jurat Network.
Meta’s metaverse lab has lost $40B since Facebook changed its name in 2021
Tristan Greene6 hours agoMeta’s metaverse lab has lost $40B since Facebook changed its name in 2021Despite the losses, the company’s other endeavors pushed it to record profits in Q4 2023, with gains expected to cont