warp.green Confirms Exploited Bridge Vulnerability, Offers 90% Return for White Hat Designation

iconKuCoinFlash
Share
AI summary iconSummary
Vulnerability news emerged as the cross-chain protocol Warp.green confirmed an exploited flaw in its ERC-20 bridge module on August 24 (UTC+8). The breach resulted in the loss of 93,000 USDC, which was converted to ETH and stored in an Ethereum wallet. The project issued an on-chain message offering to classify the incident as a white-hat disclosure if 90% of the funds are returned to a multisig address within 48 hours, with the attacker retaining 10% as a bounty.

ME News reports that on August 24 (UTC+8), the cross-chain protocol warp.green tweeted that it has confirmed a vulnerability in its ERC-20 bridge has been exploited, specifically in the Chia-side module of the bridge, and verified no other malicious transactions occurred. The total loss amounts to the previously disclosed 93,000 USDC (85,000 wUSDC.b + 8,000 wUSDC). The attacker has converted the funds into ETH, which are now held in their Ethereum wallet. The project team subsequently sent an on-chain message to the wallet address holding the stolen funds, stating that if the attacker returns 90% of the obtained funds to a designated Ethereum multisig address within 48 hours, the incident will be classified as a white-hat disclosure, and the attacker may retain the remaining 10% as a bug bounty. (Source: Foresight News)

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.