Security

unshETH Says $375,000 In Stolen Fund Still Unreimbursed

According to the notification, the attacker must return the remaining monies to the indicated location by June 3 at 01:00, otherwise, the attacker will be fined $50,000. Moreover, unshETH indicated that if the hackers do not refund the cash by the deadline, legal action will be taken.

Last chance for the hacker to return funds and walk away with clean hands. This is your final warning:https://t.co/TOEop4k3c2

We’re happy you decided to return the contract ownership, as we have said. However, you still have ~$375,000 of funds that are not yours to keep. You…

— unshETH (@unsheth_xyz) June 2, 2023

Recently, a number of KOLs stated that the LSDFi protocol unshETH vault is suspected of having a security issue, advising users to get cash out as quickly as feasible. The reason for this is that the contract owner was tampered with. The project team has been informed. Nonetheless, the team said via Discord that emergency precautions had been implemented and that the essential Ethereum fund was secure.

According to the information in the chain, the contract owner authority was moved to an unknown address.

This morning, the LSDFi protocol replied to the security issue on Twitter. According to unshETH, one of the contract’s deployment private keys was disclosed on May 31. To be safe, the official has temporarily halted the withdrawal of ETH. According to the security model, unshETH’s ETH deposit (TVL up to $35 million) is safe due to multi-signature + time lock.

Moreover, various auxiliary agreement contracts (liquidity mining pools, cross-chain bridges, etc.) have been targeted and are collaborating with white hat security professionals from Coinbase, Stargate, Paladin Blockchain Security, Github, and Ogle to ensure the protection of user funds.

Several users also said that a Chinese white hat hacker discovered the private key was accidentally copied on the protocol’s most recent Github repository and immediately reported it to the team.

DISCLAIMER: The information on this website is provided as general market commentary and does not constitute investment advice. We encourage you to do your own research before investing.

   

Source

Click to rate this post!
[Total: 0 Average: 0]
Показать больше

Добавить комментарий