Kraken says its being extorted following bug bounty report

cyptouser2 weeks agoCryptocurrencies News21
55966e89>

Cryptocurrency exchange Kraken has revealed that a research team remains in possession of $3 million worth of digital assets it had s recently discovered bug.

An anonymous self-proclaimed ‘security researcher’ found a critical security bug and alerted the cryptocurrency exchange on June 9.

However, two accounts related to the security researcher have exploited the bug to withdraw over $3 million worth of digital assets, according to Nick Percoco, the chief security officer of Kraken.

Following the multi-million withdrawal, the security researcher is demanding a reward for the stolen funds, Percoco wrote in a June 19 X post:

“Instead, they demanded a call with their business development team (i.e. their sales reps) and have not agreed to return any funds until we provide a speculated $ amount that this bug could have caused if they had not disclosed it. This is not white-hat hacking, it is extortion!”

The cryptocurrency was stolen directly from Kraken’s treasury. The exchange claims that no user funds were endangered.

Cointelegraph has approached Kraken for comment.

Related: Nomura crypto arm Laser Digital bags Abu Dhabi license

This is not white-hat hacking: Kraken

One of the three Kraken accounts related to the exploit has previously completed Know Your Customer (KYC) verification to an individual claiming to be a security researcher, but his identity remains undisclosed.

The individual who discovered a bug has initially proven the flaw with a crypto transfer worth $4, which would have been sufficient to prove the bug and collect “sizable rewards” from Karken’s bounty program.

However, the individual disclosed the bug to two other accounts that fraudulently siphoned nearly $3 million from their Kraken accounts.

These actions are akin to extortion, not ethical hacker behavior, according to Kraken’s Percoco:

“In the essence of transparency, we are disclosing this bug to the industry today. We are being accused of being unreasonable and unprofessional for requesting that “white-hat hackers” return what they stole from us. Unbelievable.”
$3 billion stolen in hacks — Why are crypto crimes surging?. Source: Cointelegraph

Related: Stablecoin transfer volume increased 16x during past 4 years

Crypto hacks in 2024 could outperform 2023

Crypto hackers and exploiters could be poised for a more successful year in 2024, compared to 2023.

In the first quarter of 2024, hackers stole digital assets valued at $542.7 million, a 42% increase compared to the same period in 2023. In an interesting turn of events, private key leaks were the leading cause of the growing exploits, not smart contract-related exploits.

Hacked funds lost to smart contract vulnerabilities fell 92% to $179 million in 2023, down from a staggering $2.6 billion in 2022, according to Merkle Science’s “2024 Crypto HackHub Report” report,

Crypto total losses by vulnerabilities. Source: Merkle Science

Over 55% of the hacked digital assets were lost to private key leaks during 2023.

The cryptocurrency industry suffered 785 reported hacks and exploits, resulting in nearly $19 billion lost during the past 13 years.

Magazine: Roaring Kitty’s GME shares hit $1B, BTC open interest soars, and other news: Hodler’s Digest, June 2–8

The content on this website comes from the Internet. Due to the inconvenience of proofreading the authenticity and accuracy of the copyright or content of some content, it may be temporarily impossible to confirm the authenticity and accuracy of the copyright or content. For copyright issues or other issues caused by this, please Call or email this site. It will be deleted or changed immediately after verification.

related articles

Aussie admits to promoting BitConnect crypto services without a license

55966e89˃An Australian man has pleaded guilty to his involvement in promoting cryptocurrency lending...

Arweave's AO sees $260 million pre-bridged in 4 days

AO, a hyper-parallel computer, saw an influx of $260 million stETH pre-bridged to its platform, prop...

NYSE gauges interest in 24/7 stock trading like crypto: Report

NYSE gauges interest in 24/7 stock trading like crypto: Report

1205f261˃The New York Stock Exchange (NYSE) is reportedly getting a gauge on whether traders would e...

BitForex alleged $2.5 billion volume flatlines as exchange abruptly goes offline

BitForex alleged $2.5 billion volume flatlines as exchange abruptly goes offline

Hong Kong-based crypto exchange BitForex appears to have gone entirely dark following the suspension...

Ethereum due for new all-time high as countdown to Ether ETF nears end

Ethereum due for new all-time high as countdown to Ether ETF nears end

55966e89˃Ether (ETH) may surprise crypto markets to hit fresh all-time highs before Bitcoin (BTC) re...

Bitcoin miner GRIID debuts on Nasdaq under 'GRDI' ticker

Bitcoin miner GRIID debuts on Nasdaq under 'GRDI' ticker

Bitcoin miner GRIID will begin trading its common stock under the “GRDI ” ticker on the...