$250K bounty ‘not too low to be insulting,’ says Coinbase white hat hacker

Share This Post

The white-hat hacker responsible for discovering a crisis-level flaw in Coinbase API said the $250K bounty was not “too low.”

On February 11th, two days before the Super Bowl and Coinbase’s $14 million color-changing QR code advert, an engineer was desperately trying to reach out to Coinbase management and the development team.

Tree of Alpha had discovered “a flaw in the new Advanced Trading feature would have allowed a malicious user to sell BTC or any other coin without owning them.” The flaw in the code had the potential to “nuke” the market.

Commenting on the flaw, Tree of Alpha told Cointelegraph that the “vulnerability itself was indeed worrying,” sharing that “some oversight on both the dev team and the QA/testing team was needed to let this happen.”

“While the advanced trading product was not available for everyone and was still in beta testing, a significant number of users could have used the exploit.”

However, thanks to the hacker’s quick reactions and an “overwhelming community response,” the danger was averted and Coinbase avoided a “possible crisis.”

As is common with white hat hacking, a bounty was duly awarded. Coinbase has initially awarded $250,000–an insignificant sum for the Silicon Valley-born unicorn. Twitter was quick to judge the quarter-million sum as a “bear market” bounty, particularly considering the scale of the hack and that Coinbase executives earn that figure annually.

Coinbase executive salaries according to Comparably. Source: Comparably

Tree of Alpha told Cointelegraph that the amount was “not too low to be insulting.”

“While a higher bounty might have been wise to deter more grey hats from exploiting vulnerabilities, it is common in the crypto sphere to lose touch with the value of money. For most working human beings, $250K is a very decent sum.”

Related: MakerDAO launches biggest ever bug bounty with $10M reward

Ultimately, the events shone a light on the importance of white hat hacking for a relatively nascent industry. The U.S. State Department recently announced it would offer up to $10 million in crypto rewards to white hat hackers; however, Tree of Alpha affirmed that “white hat hacking is crucial yet criminally overlooked by companies.”

In a word to the wise, they concluded:

“Companies won’t hesitate to spend tens of millions on marketing but won’t spend a fraction of it on making sure there is something left to market.”

Coinbase CEO Brian Armstrong was among the first to thank the white-hat hacker for saving his company:


Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Bhutan fourth largest Bitcoin holder among countries with 13,029 BTC stash

The Royal Government of Bhutan holds 13,029 Bitcoin (BTC), worth roughly $755 million at current prices, according to on-chain data gathered by Arkham Intelligence Additionally, wallets tied to the

Best Binance Referral Code / ID for Maximum Bonuses

Binance, the world’s leading cryptocurrency exchange, offers a secure, user-friendly environment for buying, selling, and trading a wide variety of digital assets And now, there’s an

Dogecoin Breaking Out Of Monthly Downtrend: Can DOGE Reach $12?

Dogecoin (DOGE) is holding strong above a key price level after a small market dip on Sunday, putting it at a crucial turning point The meme coin recently broke out of a monthly downtrend that has

Analyst Claims Saudi Arabia Has Covertly Bought 160 Tonnes of Gold Since 2022

Jan Nieuwenhuijs, a gold market analyst, claims that Saudi Arabia has been covertly buying gold since 2022, trying to get its hands on physical gold due to its neutral and sanction-proof traits

Unlock Massive Gains: 3 Reasons to Add FLOKI & GEGG to Your Portfolio as They Shake the Market

The cryptocurrency space is no stranger to market-shaking trends, and with the latest buzz around GoodEgg (GEGG) and Floki (FLOKI), investors are paying close attention Both of these innovative

FET Millionaire Worth $8m pledges 18% of Portfolio to GoodEgg (GEGG) Presale, Currently at $0.00015

Artificial Superintelligence Alliance (FET) has long been a top choice for AI-focused crypto investors, especially those looking to gain exposure to advanced artificial intelligence and machine