Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop
Tag:

hacker

Sui-based Cetus Protocol offers $6M bounty to hacker after $223M exploit
GameFi Guides

Cetus Protocol offers hacker $6M bounty after $223M exploit

by admin May 23, 2025



Cetus Protocol, the largest decentralized exchange on the Sui blockchain, is offering a $6 million bounty to the hacker behind a massive $223 million exploit that occurred on May 22.

In a May 22 follow-up statement accompanied by an on-chain message, the Cetus team confirmed they had identified the attacker’s Ethereum wallet and offered a “whitehat settlement” to recover user funds. The hacker is being asked to return 20,920 ETH and all frozen assets on Sui (SUI) in exchange for keeping 2,324 Ethereum (ETH), worth approximately $6 million, and immunity from legal action.

Cetus said this is a time-sensitive offer and that if the funds are off-ramped or mixed, the deal is off. The team is coordinating with law enforcement, cybercrime specialists, the Sui Foundation, and regulators including FinCEN and the U.S. Department of Defense. Inca Digital, a cybersecurity firm, is leading the negotiation efforts.

📜 Dear Sui community, thank you for your patience while our team works on the incident investigation and resolution.

Since taking the actions indicated in our previous announcement, we have also done the following:

1. We engaged the broader ecosystem, Sui team, and related… https://t.co/Gs1EWXZ6AD

— Cetus🐳 (@CetusProtocol) May 22, 2025

The breach exploited a vulnerability in Cetus’ pricing mechanism and impacted its concentrated liquidity market maker pools. The attacker used spoof tokens, which are fake or low-value assets with manipulated metadata, to inject tiny amounts of liquidity into trading pools. 

Because of the distortion of those pools’ internal accounting, the hacker was able to take out substantial quantities of valuable tokens, such as SUI and USD Coin (USDC), at incorrect exchange rates. 

The attacker deceived the system into believing the pools were balanced by carefully timing these spoof token deposits with complex flash swaps and price manipulation. As a result, they were able to drain substantial real assets without supplying equivalent value.

Cetus had reportedly passed recent security audits prior to the hack. However, by exploiting internal pricing logic and economic assumptions rather than simple code errors, the attacker’s method evaded typical vulnerability scans.

After initially draining $11 million from an SUI/USDC pool, the attacker quickly intensified the attack. They bridged more than $60 million in stolen funds to Ethereum and bought over 21,900 ETH. They currently have millions of SUI, ETH, and stablecoins in their wallets.

The Sui ecosystem was severely damaged by the exploit. Smaller tokens like AXOL, HIPPO, and SQUIRT lost almost all of their value, while the SUI token dropped as much as 15%. CETUS, the token of Cetus, fell 20–33%. Trading volumes surged as users scrambled to withdraw funds.

Cetus has paused smart contracts following the hack the hack and is attempting to secure its platform. The incident raises questions about the security of DeFi protocols on newer chains like Sui and Aptos (APT). Although these ecosystems offer innovation, analysts warn that vulnerabilities in complex DeFi logic remain a persistent risk.





Source link

May 23, 2025 0 comments
0 FacebookTwitterPinterestEmail
Alleged Coinbase hacker trolls ZachXBT with on-chain message after swapping $42.5m BTC
Crypto Trends

Alleged Coinbase hacker trolls ZachXBT with on-chain message after swapping $42.5m BTC

by admin May 22, 2025



Crypto sleuth ZachXBT revealed that the hacker accused of stealing Coinbase customer data left him a taunting message on-chain after swapping $42.5 million worth of BTC for ETH on THORChain.

In a broadcast message sent to his Investigations Telegram channel, on-chain investigator ZachXBT claimed to have received a message sent from a hacker accused of swindling more than $300 million worth of crypto assets from users. The message was sent to his on-chain Ethereum (ETH) account.

“The threat actor who stole $300M+ from Coinbase users by paying customer support just began trolling me on-chain with this message,” said ZachXBT in his Telegram message.

The message was sent from an address simply named Fake_Phishing1158790 and contained the words “L bozo” and what appeared to be a link to a YouTube video showing the viral internet short clip of former NBA athlete James Worthy smoking a cigar after a Lakers win.

“Smoking that ZachXBT pack,” one user commented under the YouTube video, indicating they were led to the video after seeing the on-chain message addressed to the crypto sleuth.

The message was linked to the alleged hacker’s recent on-chain transaction, which consisted of swapping $42.5 million worth of BTC (BTC) for ETH via THORChain.

The Coinbase user data exploit was first disclosed by the exchange on May 15. The hacker was believed to have bribed customer support staff to steal sensitive user data.

According to Coinbase, the attacker was able to get ahold of phone names, addresses, phone numbers, government-issued IDs, and other account data. The exchange claimed that the exploit only affected less than 1% of users.

After firing the customer service workers involved, the company estimated the breach could cost up to $400 million to resolve. The attackers had asked for a $20 million ransom from the crypto exchange. Coinbase refused to pay the $20 million ransom and is offering a bounty for anyone who can track down the attacker.



Source link

May 22, 2025 0 comments
0 FacebookTwitterPinterestEmail
Coinbase hacker trolls ZachXBT onchain after $42.5M THORChain swap
Crypto Trends

Coinbase hacker trolls ZachXBT onchain after $42.5M THORChain swap

by admin May 22, 2025



The hacker behind the data breach targeting Coinbase users mocked blockchain investigator ZachXBT with an onchain message following a major crypto swap.

On May 21, the hacker used Ethereum transaction input data to write “L bozo,” followed by a meme video of NBA player James Worthy smoking a cigar.

The message came after the attacker swapped about $42.5 million from Bitcoin (BTC) to Ether (ETH) via THORChain.

ZachXBT flagged the message on his Telegram channel, linking it to the same entity responsible for the Coinbase data breach affecting at least 69,400 users.

Coinbase hacker trolling ZachXBT. Source: ZachXBT.

On May 22, blockchain security firm PeckShield reported that the hacker had continued to move funds, swapping 8,697 ETH for 22 million Dai (DAI). A separate but closely linked address, which received 9,081 ETH via THORChain, also converted the assets into 23 million DAI.

Related: DOJ is investigating Coinbase data breach— Report

Coinbase hit with lawsuits after breach

The Coinbase breach, first reported in a filing with the Maine Attorney General’s office, occurred in December 2024 and was discovered on May 11. The stolen data includes names, home addresses and other personal information.

Following the disclosure, the attackers demanded a $20 million ransom in Bitcoin to prevent the release of the stolen data. Coinbase refused and instead offered a $20 million bounty for information leading to the identification of the hackers.

The company estimates a potential financial impact between $180 million and $400 million due to remediation costs and customer compensation.

Coinbase has also faced a wave of lawsuits following the revelation. At least six legal complaints were filed on May 15 and 16, with plaintiffs accusing the exchange of failing to implement adequate security measures and mishandling its response to the breach.

Related: Coinbase data leak could put users in physical danger: TechCrunch founder

THORChain under scrutiny for criminal use

The Coinbase hacker’s use of THORChain to swap $42.5 million worth of Bitcoin into Ether comes as the protocol faces growing scrutiny over its role in facilitating illicit transactions.

In March, the platform came under fire after its swap volume surged following the $1.4 billion Bybit hack. The protocol generated over $5 million in revenue after processing $5.4 billion in swap volume, with over $1 billion moved in a single day.

Blockchain security firms identified North Korea’s Lazarus Group as the main suspect, using THORChain to launder a significant portion of the stolen funds.

Source: Lookonchain

The controversy intensified when a THORChain developer, known as “Pluto,” resigned after a vote to block transactions linked to Lazarus was overturned.

Magazine: TradFi is building Ethereum L2s to tokenize trillions in RWAs: Inside story



Source link

May 22, 2025 0 comments
0 FacebookTwitterPinterestEmail

Categories

  • Crypto Trends (95)
  • Esports (74)
  • Game Reviews (78)
  • Game Updates (85)
  • GameFi Guides (92)
  • Gaming Gear (92)
  • NFT Gaming (86)
  • Product Reviews (93)
  • Uncategorized (1)

Recent Posts

  • Venom spikes after achieving 150K TPS in closed-network stress test
  • A Brief Guide to the Rani, the Diva Time Lady Villainess of ‘Doctor Who’
  • Overwatch 2 devs reveal the most banned heroes and one has a 93% ban rate
  • WalletConnect Token Lands on Solana With WCT Airdrop
  • Fantasy Life i studio announces free DLC as the “slow-life RPG” sequel gets off to a flying start

Recent Posts

  • Venom spikes after achieving 150K TPS in closed-network stress test

    May 23, 2025
  • A Brief Guide to the Rani, the Diva Time Lady Villainess of ‘Doctor Who’

    May 23, 2025
  • Overwatch 2 devs reveal the most banned heroes and one has a 93% ban rate

    May 23, 2025
  • WalletConnect Token Lands on Solana With WCT Airdrop

    May 23, 2025
  • Fantasy Life i studio announces free DLC as the “slow-life RPG” sequel gets off to a flying start

    May 23, 2025

Newsletter

Subscribe my Newsletter for new blog posts, tips & new photos. Let's stay updated!

About me

Welcome to Laughinghyena.io, your ultimate destination for the latest in blockchain gaming and gaming products. We’re passionate about the future of gaming, where decentralized technology empowers players to own, trade, and thrive in virtual worlds.

Recent Posts

  • Venom spikes after achieving 150K TPS in closed-network stress test

    May 23, 2025
  • A Brief Guide to the Rani, the Diva Time Lady Villainess of ‘Doctor Who’

    May 23, 2025

Newsletter

Subscribe my Newsletter for new blog posts, tips & new photos. Let's stay updated!

@2025 laughinghyena- All Right Reserved. Designed and Developed by Pro


Back To Top
Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop

Shopping Cart

Close

No products in the cart.

Close