Fun

Kraken recovers $3 million from CertiK, ending bug bounty saga

News Feed - 2024-06-20 11:06:31

Zoltan Vardai9 hours agoKraken recovers $3 million from CertiK, ending bug bounty sagaCertiK has returned the funds to the Kraken exchange, putting a happy end to the bug bounty-related saga.1714 Total views1 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksCryptocurrency exchange Kraken has recovered missing funds following a high-profile bug bounty exploit fiasco. 


Kraken confirmed the return of the stolen digital assets worth nearly $3 million, putting an end to the Kraken-CertiK saga that started on June 9.


The recovery of the funds, minus transaction fees, was confirmed by Nicholas Percoco, chief security officer of Kraken, in a June 20 X post:“Update: We can now confirm the funds have been returned (minus a small amount lost to fees).”


Kraken’s CSO first announced the $3 million worth of missing funds on June 19, when he claimed that a “security researcher” maliciously withdrew them from the treasury after discovering and sharing an existing bug.


Kraken claimed that it was extorted by the security researcher, who was refusing to return the funds, demanding a reward and a call with the exchange’s business development team.


Related:Nomura crypto arm Laser Digital bags Abu Dhabi licenseCertiK’s side of the story


Shortly after Kraken’s post about the missing funds, blockchain security firm CertiK publicly identified itself as the “security researcher” that Kraken claimed stole $3 million of digital assets.


In a June 19 X post, CertiK said it had informed Kraken of an exploit that allowed it to remove millions of dollars from the exchange’s accounts. CertiK also claimed to have been threatened by the exchange’s team:“After initial successful conversions on identifying and fixing the vulnerability, Kraken’s security operation team has THREATENED individual CertiK employees to repay a MISMATCHED amount of crypto in an UNREASONABLE time even WITHOUT providing repayment addresses.”


The security firm posted a timeline of events, starting with identifying the exploit on June 5 and ending with claims Kraken threatened a CertiK employee on June 18. In a statement to Cointelegraph, CertiK said it planned to transfer the funds “to an account that Kraken will be able to access.”Bug bounty saga timeline. Source: CertiK


Related:Bitcoin ETFs legitimized the crypto industry for investors — Storm PartnersWhy did CertiK withdraw nearly $3 million?


Kraken’s Percoco initially said that the first malicious transfer, worth just $4, would have been sufficient to prove the bug and collect “sizable rewards” from Karken’s bounty program.


However, the security researcher, which was later disclosed as CertiK, had minted nearly $3 million into their Kraken accounts.


In a post following the return of the $3 million, CertiK said that the multimillion-dollar sum was necessary to test the limits of the exchange:“We want to test the limit of Kraken’s protection and risk controls. After multiple tests across multiple days and close to $3 million worth of crypto, no alerts were triggered and we still haven’t figured out the limit.”


Moreover, CertiK claims that it didn’t initially request a bounty, but it was something mentioned by the exchange:“We never mentioned any bounty request. It was Kraken who first mentioned their bounty to us, while we responded that the bounty was not the priority topic and we wanted to make sure the issue was fixed.”


CertiK added that no Kraken user funds were endangered since the exploited funds were “minted out of air.”


Magazine:Ethereum’s recent pullback could be a gift: Dynamo DeFi, X Hall of Flame# Kraken# Altcoin# Business# Hackers# Cryptocurrency Exchange# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Crypto Economy Hovers Below $3T: Analyst Says First Bear Marker ‘Would Be a Capitalization Drop Under $2.38T’
Crypto Economy Hovers Below $3T: Analyst Says First Bear Marker "Would Be a Capitalization Drop Under $2.38T" The crypto asset economy has been down in value over the last week as
NYC Mayor Undeterred by Falling Bitcoin Price, Says Buying the Dip Could Yield ‘Good Profit’
NYC Mayor Undeterred by Falling Bitcoin Price, Says Buying the Dip Could Yield "Good Profit" The mayor of New York City, Eric Adams, is not deterred by bitcoin’s volatility,
Cowboy Maverick Johnny Cash Mines 2.6 BTC Jackpot in Gold Rush at Bitcoin.com’s Crypto Casino
Cowboy Maverick Johnny Cash Mines 2.6 BTC Jackpot in Gold Rush at Bitcoin.com’s Crypto Casino Gold Rush with Jonny Cash dishes out a massive win of 2.6 BTC! Massive Win on Casino
Sotheby's to sell CryptoPunk and Beeple NFT at digital auction
Ezra Reguerra12 hours agoSotheby"s to sell CryptoPunk and Beeple NFT at digital auctionThe online event will occur at 7 pm UTC and end on Aug. 22. 1568 Total views17 Total sharesListen to article 0:00NewsOwn this piece
Bitcoinization: JPMorgan Sees No ‘Tangible Economic Benefits’ of Bitcoin as Legal Tender
Bitcoinization: JPMorgan Sees No ‘Tangible Economic Benefits’ of Bitcoin as Legal Tender JPMorgan has offered its view on the bitcoinization of El Salvador,
Ethereum Could Be Mirroring Bitcoin’s 2018-2021 Cycle Amid Record Selling
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Spellfire to Huobi Primelist on January 27th
Spellfire to Huobi Primelist on January 27th sponsored Spellfire is gaining momentum. The legend is back better than ever. Chase the $SPELLFIR
Biggest Movers: DOGE, LTC Near 3-Week Lows on Thursday
Biggest Movers: DOGE, LTC Near 3-Week Lows on Thursday Dogecoin was trading close to a three-week low on Thursday, following the release of retail sales figures in the United Stat
‘New nine’ Spot Bitcoin ETF volumes reach new daily high as BTC nears $55K
Brayden Lindrea1 hour ago‘New nine’ Spot Bitcoin ETF volumes reach new daily high as BTC nears $55KBlackRock’s IBIT made up more than 50% of the daily trading volume and even smashed its own daily record by more th
Brayden Lindrea6 hours agoRobinhood beats investors’ appeal in GameStop meme stock caseThe appeals court judge said Robinhood had the right to impose restrictions on meme trade purchases.6751 Total views5 Total sharesL
India’s Central Bank RBI Says Crypto Is Prone to Fraud and Poses Immediate Risks to Consumer Protection
India"s Central Bank RBI Says Crypto Is Prone to Fraud and Poses Immediate Risks to Consumer Protection India’s central bank, the Reserve Bank of India (RBI), has warned abo
Dogecoin Open Interest Spikes To Nearly $5 Billion – Impact On Price
Este artículo también está disponible en español. Analysts are betting on a high possibility of a price rally for the largest meme coin in the cryptocurrency landscape, a