• BTC Dominance: %
XBT.Market
Advertisement
  • Home
  • Coins MarketCap
  • Crypto Exchanges
  • Crypto Calculator
  • Top Gainers and Loser
  • News
  • Contact Us
No Result
View All Result
XBT.Market
No Result
View All Result
Home Bitcoin

Cyber sleuth alleges $160M Wintermute hack was an inside job

Jon Hartney by Jon Hartney
September 27, 2022
in Bitcoin, Blockchain, Business, Market
0
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

James Edwards bases his accusations on what he feels are dubious transactions and smart contract code that doesn’t match the post-mortem analysis.

A fresh new crypto conspiracy theory is afoot — this time in relation to last week’s $160 million hack on algorithmic market maker Wintermute — which one crypto sleuth alleges was an “inside job.”

Cointelegraph reported on Sept. 20 that a hacker had exploited a bug in a Wintermute smart contract which enabled them to swipe over 70 different tokens including $61.4 million in USD Coin (USDC), $29.5 million in Tether (USDT) and 671 Wrapped Bitcoin (wBTC), worth roughly $13 million at the time.

Related articles

Bitcoin derivatives data shows room for BTC price to move higher this week

January 23, 2023

Bitcoin price consolidation opens the door for APE, MANA, AAVE and FIL to move higher

January 22, 2023

In an analysis of the hack posted via Medium on Sept. 26, the author known as Librehash argued that due to the way in which Wintermute’s smart contracts were interacted with and ultimately exploited, it suggests that the hack was conducted by an internal party, claiming:

“The relevant transactions initiated by the EOA [externally owned address] make it clear that the hacker was likely an internal member of the Wintermute team.”

The author of the analysis piece, known also as James Edwards, is not a known cybersecurity researcher or analyst. The analysis marks his first post on Medium but so far hasn’t garnered any response from Wintermute or other cybersecurity analysts.

In the post, Edwards suggests that the current theory is that the EOA “that made the call on the ‘compromised’ Wintermute smart contract was itself compromised via the team’s use of a faulty online vanity address generator tool.”

“The idea is that by recovering the private key for that EOA, the attacker was able to make calls on the Wintermute smart contract, which supposedly had admin access,” he said.

Edwards went on to assert that there’s no “uploaded, verified code for the Wintermute smart contract in question,” making it difficult for the public to confirm the current external hacker theory, while also raising transparency concerns.

“This, in itself, is an issue in terms of transparency on behalf of the project. One would expect any smart contract responsible for the management of user/customer funds that’s been deployed onto a blockchain to be publicly verified to allow the general public an opportunity to examine and audit the unflattened Solidity code,” he wrote.

Edwards then went into a deeper analysis via manually decompiling the smart contract code himself, and alleged that the code doesn’t match with what has been attributed to causing the hack.

Related: Almost $1M in crypto stolen from vanity address exploit

Another point that he raises questions about was a specific transfer that happened during the hack, which “shows the transfer of 13.48M USDT from the Wintermute smart contract address to the 0x0248 smart contract (supposedly created and controlled by the Wintermute hacker).”

Edwards highlighted Etherscan transaction history allegedly showing that Wintermute had transferred more than $13 million worth of Tether USD (USDT) from two different exchanges, to address a compromised smart contract.

“Why would the team send $13 million dollars worth of funds to a smart contract they *knew* was compromised? From TWO different exchanges?,” he questioned via Twitter.

His theory has, however, yet to be corroborated by other blockchain security experts, although following the hack last week, there were some murmurs in the community that an inside job could’ve been a possibility.

The fact that @wintermute_t used the profanity wallet generator and kept millions in that hot wallet is negligence or an inside job. To make things worse the vulnerability in profanity tool was disclosed a couple of days ago.

— Rotex Hawk (@Rotexhawk) September 21, 2022

Providing an update on the hack via Twitter on Sept. 21, Wintermute noted that while it was “very unfortunate and painful,” the rest of its business has not been impacted and that it will continue to service its partners.

“The hack was isolated to our DeFi smart contract and did not affect any of Wintermute’s internal systems. No third party or Wintermute data was compromised.”

The hack was isolated to our DeFi smart contract and did not affect any Wintermute’s internal systems. No third party or Wintermute data was compromised.

— Wintermute (@wintermute_t) September 21, 2022

Cointelegraph has reached out to Wintermute for comment on the matter but has not received an immediate response at the time of publication. 

Read Entire Article
Tags: CointelegraphCryptocurrencyInvestmentMining Bitcoin
Share76Tweet47

Related Posts

Bitcoin derivatives data shows room for BTC price to move higher this week

by Jon Hartney
January 23, 2023
0

BTC options data suggest that the Bitcoin price rally still has legs, even with wider economic concerns growing and the

Bitcoin price consolidation opens the door for APE, MANA, AAVE and FIL to move higher

by Jon Hartney
January 22, 2023
0

BTC could take a break from its sharp rally and if BTC price bounces off underlying support, APE, MANA, AAVE...

Genesis bankruptcy case scheduled for first hearing

by Jon Hartney
January 22, 2023
0

The first hearing in Genesis Capital's bankruptcy case will be held on January 23, according to court filings

Terra lending protocol Mars to launch mainnet

by Jon Hartney
January 22, 2023
0

The Mars Hub will launch an independent Cosmos application chain and issue MARS to users who hold the token during...

Central African Republic eyes legal framework for crypto adoption

by Jon Hartney
January 22, 2023
0

A 15-member committee is tasked with working on a legal framework that will allow cryptocurrencies to operate in

Load More
  • Trending
  • Comments
  • Latest

Ethereum Classic gets ‘endorsement’ from Vitalik Buterin, but ETC price still risks 50% crash

July 27, 2022

Critique on Helium’s $6.5K monthly revenue causes a stir

July 28, 2022

All aboard! Elon Musk’s Vegas Loop now taking Dogecoin payments

July 7, 2022

Cardano Vasil hard fork hit with another delay for several weeks

July 29, 2022

All aboard! Elon Musk’s Vegas Loop now taking Dogecoin payments

0

Crypto owners banned from working on US Government crypto policies

0

Korean startup Uprise lost $20M shorting LUNC

0

Ethereum testnet Merge mostly successful — ‘Hiccups will not delay the Merge.’

0

Bitcoin derivatives data shows room for BTC price to move higher this week

January 23, 2023

Bitcoin price consolidation opens the door for APE, MANA, AAVE and FIL to move higher

January 22, 2023

Genesis bankruptcy case scheduled for first hearing

January 22, 2023

Terra lending protocol Mars to launch mainnet

January 22, 2023

XBT.Market

This website is an automated news feed powered by the Nebulome cloud system. The site is made possible by YYC TECH Consulting and Alberta Digital Mining Company. As a team with major crypto and bitcoin enthusiasm, we have curated major sources of news, trading and financial data to bring you, our viewer, an unbiased source of truth.

Recent Posts

  • Bitcoin derivatives data shows room for BTC price to move higher this week January 23, 2023
  • Bitcoin price consolidation opens the door for APE, MANA, AAVE and FIL to move higher January 22, 2023
  • Genesis bankruptcy case scheduled for first hearing January 22, 2023
  • Terra lending protocol Mars to launch mainnet January 22, 2023
  • Central African Republic eyes legal framework for crypto adoption January 22, 2023

News Categories

  • Bitcoin
  • Blockchain
  • Business
  • Market

Tags

bitcoinMagzine Cointelegraph Cryptocurrency insidebitcoins Investment Mining Bitcoin NewsBTC

Quicklinks

  • Home
  • Coins MarketCap
  • Crypto Exchanges
  • Crypto Calculator
  • Top Gainers and Loser
  • News
  • Contact Us

© 2022 Xbt.Market - Powered by YYC Tech Consulting & ADMCO.

No Result
View All Result
  • Home
  • Coins MarketCap
  • Crypto Exchanges
  • Crypto Calculator
  • Top Gainers and Loser
  • News
  • Contact Us

© 2022 Xbt.Market by Nebulome.

  • bitcoinBitcoin(BTC)$28,463.001.71%
  • ethereumEthereum(ETH)$1,829.002.66%
  • USDEXUSDEX(USDEX)$1.07-0.53%
  • tetherTether(USDT)$1.000.13%
  • binancecoinBNB(BNB)$316.830.28%
  • usd-coinUSD Coin(USDC)$1.00-0.05%
  • rippleXRP(XRP)$0.54-0.85%
  • cardanoCardano(ADA)$0.4025696.70%
  • Lido Staked EtherLido Staked Ether(STETH)$1,828.002.87%
  • dogecoinDogecoin(DOGE)$0.0765192.59%
  • matic-networkPolygon(MATIC)$1.112.01%
  • SolanaSolana(SOL)$20.962.44%
  • polkadotPolkadot(DOT)$6.324.06%
  • Binance USDBinance USD(BUSD)$1.000.03%
  • litecoinLitecoin(LTC)$89.701.63%
  • Shiba InuShiba Inu(SHIB)$0.0000112.19%
  • tronTRON(TRX)$0.0658682.25%
  • AvalancheAvalanche(AVAX)$17.712.94%
  • daiDai(DAI)$1.000.14%
  • UniswapUniswap(UNI)$6.083.48%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$28,474.001.71%
  • chainlinkChainlink(LINK)$7.625.54%
  • cosmosCosmos Hub(ATOM)$11.190.15%
  • ToncoinToncoin(TON)$2.226.34%
  • leo-tokenLEO Token(LEO)$3.460.37%
  • stellarStellar(XLM)$0.1104474.90%
  • ethereum-classicEthereum Classic(ETC)$20.712.50%
  • moneroMonero(XMR)$157.320.89%
  • OKBOKB(OKB)$41.790.61%
  • Aerarium FiAerarium Fi(AERA)$7.14-13.09%
  • bitcoin-cashBitcoin Cash(BCH)$124.113.56%
  • filecoinFilecoin(FIL)$5.672.88%
  • HederaHedera(HBAR)$0.07408814.69%
  • Lido DAOLido DAO(LDO)$2.478.52%
  • true-usdTrueUSD(TUSD)$1.00-0.05%
  • AptosAptos(APT)$11.332.47%
  • QuantQuant(QNT)$124.83-1.16%
  • ArbitrumArbitrum(ARB)$1.382.64%
  • CronosCronos(CRO)$0.0689501.39%
  • NEAR ProtocolNEAR Protocol(NEAR)$2.004.43%
  • vechainVeChain(VET)$0.0234082.71%
  • algorandAlgorand(ALGO)$0.224502-0.70%
  • Internet ComputerInternet Computer(ICP)$5.234.76%
  • ApeCoinApeCoin(APE)$4.173.44%
  • eosEOS(EOS)$1.201.65%
  • FantomFantom(FTM)$0.4734587.21%
  • The GraphThe Graph(GRT)$0.1463162.94%
  • StacksStacks(STX)$0.93-0.78%
  • The SandboxThe Sandbox(SAND)$0.631.87%
  • MultiversXMultiversX(EGLD)$42.520.69%
  • decentralandDecentraland(MANA)$0.591.87%
  • AaveAave(AAVE)$73.213.34%
  • FraxFrax(FRAX)$1.00-0.21%
  • tezosTezos(XTZ)$1.121.31%
  • theta-tokenTheta Network(THETA)$1.031.74%
  • ImmutableXImmutableX(IMX)$1.121.94%
  • FlowFlow(FLOW)$0.992.40%
  • EdgecoinEdgecoin(EDGT)$1.000.20%
  • Axie InfinityAxie Infinity(AXS)$8.371.69%
  • neoNEO(NEO)$12.49-0.47%
  • ConfluxConflux(CFX)$0.4107090.85%
  • Rocket PoolRocket Pool(RPL)$43.953.01%
  • kucoin-sharesKuCoin(KCS)$8.28-0.28%
  • havvenSynthetix Network(SNX)$2.513.98%
  • WhiteBIT TokenWhiteBIT Token(WBT)$5.310.92%
  • BitDAOBitDAO(BIT)$0.530.96%
  • paxos-standardPax Dollar(USDP)$1.000.01%
  • Terra Luna ClassicTerra Luna Classic(LUNC)$0.0001252.27%
  • Curve DAOCurve DAO(CRV)$0.942.71%
  • GateGate(GT)$5.132.55%
  • OptimismOptimism(OP)$2.283.53%
  • USDDUSDD(USDD)$0.99-0.05%
  • KlaytnKlaytn(KLAY)$0.226807-1.02%
  • bitcoin-cash-svBitcoin SV(BSV)$35.961.99%
  • PancakeSwapPancakeSwap(CAKE)$3.690.88%
  • Mina ProtocolMina Protocol(MINA)$0.772.25%
  • GMXGMX(GMX)$75.951.94%
  • dashDash(DASH)$58.163.81%
  • ChilizChiliz(CHZ)$0.1197122.34%
  • Frax ShareFrax Share(FXS)$8.855.08%
  • CloutContractsCloutContracts(CCS)$52.461,000.00%
  • makerMaker(MKR)$688.402.79%
  • BitTorrentBitTorrent(BTT)$0.0000012.74%
  • eCasheCash(XEC)$0.0000311.11%
  • iotaIOTA(MIOTA)$0.2145212.13%
  • huobi-tokenHuobi(HT)$3.64-0.12%
  • XDC NetworkXDC Network(XDC)$0.0420393.47%
  • KaspaKaspa(KAS)$0.0323947.08%
  • Bitget TokenBitget Token(BGB)$0.3967410.51%
  • cETHcETH(CETH)$36.822.85%
  • Tokenize XchangeTokenize Xchange(TKX)$6.382.15%
  • singularitynetSingularityNET(AGIX)$0.4231533.63%
  • PAX GoldPAX Gold(PAXG)$1,975.53-0.42%
  • Trust WalletTrust Wallet(TWT)$1.180.57%
  • Tether GoldTether Gold(XAUT)$1,976.61-0.31%
  • RenderRender(RNDR)$1.347.13%
  • cUSDCcUSDC(CUSDC)$0.0228380.14%
  • Mask NetworkMask Network(MASK)$6.350.49%
  • zilliqaZilliqa(ZIL)$0.0290974.88%
  • 1inch1inch(1INCH)$0.56-2.15%