Unibot hacker moves $630,000 of stolen funds through Tornado Cash

cyptouser8 months agoCryptocurrencies News186

The Unibot hacker has moved $630,000 of the stolen funds from the popular Telegram trading bot through the sanctioned mixing protocol Tornado Cash, on-chain data shows.

In an Oct. 31 post on X(formerly Twitter), the Unibot team confirmed that the platform suffered a “token approval exploit” on its new router.

“We experienced a token approval exploit from our new router and have paused our router to contain the issue,” Unibot said.

The hack resulted in Unibot’s native UNIBOT token tanking by more than 30% to as low as $32.94 before recovering to $46.02 as of press time, according to CryptoSlate’s data.

How Unibot was exploited

While the trading bot team failed to provide information about the amount stolen, reports from crypto security firm Cyvers Alerts estimated that the hacker took around 345 Ethereum (ETH), equivalent to $630,000, from the platform.

Cyvers Alerts said the attacker was funded via Fixed Float and that:

“The root cause [of the hack] appears to be the absence of input for the ‘transferFrom’ function to transfer tokens that have been granted approval to the contract.”

However, the Unibot team has tried to downplay the effect of the incident, assuring victims that they will be compensated and that their “keys and wallets are safe.”

“We will release a detailed response after investigations conclude,” Unibot added.

Fund movement

Data from Debank shows that the wallet associated with Unibot exploiter first exchanged all of the stolen digital assets, including meme coins, for Ethereum via decentralized exchange platforms like Uniswap and 1inch.

Subsequently, the attacker then transferred all of these ETH via Tornado Cash in an attempt to obfuscate his transaction trail.

The wallet only has about $69 worth of digital assets left in its holding as of press time.

The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other issues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.

related articles

Trac Core launches 'Trac Core for TAP Protocol' to revolutionize Bitcoin data indexing

Trac Core launches 'Trac Core for TAP Protocol' to revolutionize Bitcoin data indexing

In a groundbreaking development for Bitcoin’s data indexing landscape, Trac Core has announced the l...

Apple wins antitrust suit over Venmo, Cash App fees after judge tosses case

25cc9d4a˃United States District Judge Vince Chhabria dismissed an antitrust lawsuit brought against...

BNB blasts past $700. Is there a limit to this rally?

BNB blasts past $700. Is there a limit to this rally?

55966e89˃BNB (BNB), the native token of the BNB Chain, reached an all-time high of $723 on June 6, b...

Tether CEO Paolo Ardoino defends USDt compliance record in wake of Ripple CEO's comments

Paolo Ardoino, CEO of Tether, has responded to Ripple CEO Brad Garlinghouse‘s claims that the...

Solana, BlackRock, Bonk, Uniswap secure top honors in CoinMarketCap's inaugural crypto awards

Solana has emerged as the inaugural winner of CoinMarketCap’s CMC Crypto of the Year award, accordin...

Elon Musk’s X to remove likes and reposts from timeline within ‘weeks’

Elon Musk’s X to remove likes and reposts from timeline within ‘weeks’

55966e89˃The social media platform X could be removing likes and reposts from view on the timeline “...