Crema hacker returns $8M, keeps $1.6M in deal with protocol

Share This Post

The Crema Finance team awarded the hacker who made off with nearly $10 million in funds from the protocol 16.7% of the stolen funds as a white hat bounty.

The hacker who exploited Solana-based liquidity protocol Crema Finance on July 2 returned most of the funds but was allowed to keep $1.6 million as a white hat bounty.

The bounty, 45,455 Solana (SOL), is worth a generous 16.7% of the $9.6 million Crema lost initially, which forced the protocol to suspend services.

Crema’s team began an investigation to identify the hacker by tracking their Discord handle and tracing the original gas source for the hacker’s address. Just as it seemed the team may have been onto the secret identity, it announced that it had been negotiating with the hacker. On Wednesday, the hacker returned 6,064 Ether (ETH) and 23,967 SOL worth roughly $8 million.

The hacker returned the funds in a series of transactions on Ethereum and Solana networks. The first transaction on each network was a test with a negligible amount of coins, while the following was worth the majority of the funds sent.

Users of Crema and the team have reason to rest easier now that the funds have been secured, but there is still work to do. The team announced on Tuesday before the deal had been reached, that it submitted new code for auditing to ensure that the same exploit did not happen again.

Although the community awaits an official post-mortem on the attack, the Crema team outlined what happened in a Sunday thread on Twitter. The attacker took out a flash loan from the Solend decentralized finance (DeFi) lending protocol, which was added as liquidity to a Crema pool.

The hacker then fabricated pricing data to make it seem as though they were owed a much bigger reward than they should have. This allowed them to take “a huge fee amount,” worth about $9.6 million from the pool to, which they added the flash loan.

Related: Dutch University set to recover more than twice the paid BTC ransom in 2019

The Crema protocol will be back up and running after the audit is complete, according to the team’s tweet. The team will also issue a compensation plan for affected users by July 8.

Crema is lucky to have recovered as much of the funds as it did, considering the calamity that befell the Horizon Bridge on Harmony last month. A hacker stole $100 million in crypto from Harmony’s token bridge and rejected the $1 million white hat bounty to return the funds.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Solana’s Meme Coin Craze, Why All Eyes Are on GOAT?

The post Solana’s Meme Coin Craze, Why All Eyes Are on GOAT appeared first on Coinpedia Fintech News On October 25, 2024, the overall cryptocurrency market experienced a modest recovery after a

Bitcoin ETFs See Huge Turnaround—Find Out Which Fund Led the Charge

The 12 US spot bitcoin exchange-traded funds (ETFs) enjoyed a $19231 million boost on Wednesday, bouncing back from a rough Tuesday Even the nine ether funds joined in the fun, seeing some modest

StanChart reaffirms Bitcoin on track to reclaim ATH by election day, 6-figures if Trump wins

Standard Chartered believes Bitcoin will reclaim the $73,000 price level on Election Day, Nov 5 and According to the report Bitcoin—Post-US Election Playbook, authored by the lender’s head of

Analyst Says Dogecoin Price Recovery Trend To Continue Into 2025 And Clock $10

Crypto analyst Dima James has provided an update on what to expect from the Dogecoin price following the meme coin’s recent rise to its highest level since July Based on his analysis, DOGE’s

Dogecoin Liquidity Sweep Signals DOGE Is Ready For A Rally

Dogecoin has been experiencing significant volatility, with a 44% surge followed by a 9% dip since October 10 This dramatic price movement has left analysts and investors cautiously watching the

Vantard’s Initial Presale Sells $500K Instantly: Next Round Opens Today

Crypto’s first Meme Index Fund (MIF), Vantard, made an explosive debut on 22nd October, selling out the first round of its presale, worth $500K, in a matter of minutes With the treasury fully