Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • TRADING
  • SUBMIT
Crypto Flexs
Home»EXCHANGE NEWS»Bug Bounties Wrong: Kraken Accuses CertiK of Extortion, CertiK Defends Its Actions
EXCHANGE NEWS

Bug Bounties Wrong: Kraken Accuses CertiK of Extortion, CertiK Defends Its Actions

By Crypto FlexsJune 20, 20243 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Bug Bounties Wrong: Kraken Accuses CertiK of Extortion, CertiK Defends Its Actions
Share
Facebook Twitter LinkedIn Pinterest Email

TLDR

  • Kraken discovered a bug that could allow users to artificially inflate balances and withdraw funds without completing a deposit.
  • Blockchain security company CertiK identified itself as the ‘security researcher’ who exploited the bug and withdrew nearly $3 million from Kraken’s coffers.
  • Kraken claims CertiK refused to return the funds until the exchange called its estimates of potential losses “extortion.”
  • CertiK defended its actions, saying it was testing the scope of the vulnerability and that Kraken threatened employees into returning inconsistent amounts of funds within an unreasonable time period.
  • The incident sparked a debate in the cryptocurrency industry about the ethics of white hat hacking and bug bounty programs.

Cryptocurrency exchange Kraken recently revealed that it was hit by a security vulnerability that could allow users to artificially inflate account balances and withdraw funds without fully completing a deposit. The exchange reported that the exploit resulted in approximately $3 million being stolen from treasury.

Blockchain security company CertiK identified the “security researchers” responsible for exploiting the bug and withdrawing funds.

Kraken’s chief security officer, Nick Percoco, previously accused the then-unnamed security team of “robbing” the company for refusing to return funds until the exchange provided an estimate of potential losses if the bug was not disclosed.

Kraken Security Updates:

On June 9, 2024, we received a bug bounty program notification from a security researcher. Although no specifics were initially revealed, their email claimed that they had discovered a “very important” bug in our platform that could have artificially inflated balances.

— Nick Percoco (@c7five) June 19, 2024

But CertiK defended its actions, claiming it was testing the scope of the vulnerability and that Kraken had threatened employees into returning inconsistent amounts of funds within an unreasonable period of time without even providing a redemption address.

CertiK recently identified a series of serious vulnerabilities in: @krakenfx It’s an exchange that could potentially result in hundreds of millions of dollars in losses.

Starting by looking for @krakenfxA deposit system that may not be able to distinguish internal differences… pic.twitter.com/JZkMXj2ZCD

— CertiK (@CertiK) June 19, 2024

The security company provided a timeline of events detailing its interactions with Kraken and the discovery of the exploit.

According to CertiK, the vulnerability allowed millions of dollars to be deposited into Kraken accounts, and the manipulated cryptocurrency could be withdrawn and converted to valid cryptocurrency.

The company also claimed that no alerts were raised during several days of testing, and that Kraken responded and locked down test accounts just days after the initial public disclosure.

The incident sparked debate about the ethics of white hat hacking and the effectiveness of bug bounty programs.

While some argue that CertiK’s actions were justified to thoroughly test vulnerabilities, others believe the company crossed a line by withdrawing so much money and refusing to return it immediately.

Kraken claims CertiK’s actions do not conform to the principles of white hat hacking and that it is working with law enforcement to recover its assets. The exchange also emphasized that user funds were not affected by the attack as the stolen money came from Kraken’s own coffers.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Ethereum price is struggling to gain pace and recovery remains fragile.

April 22, 2026

Bitcoin price is strong, could surge to surpass $75,000

April 19, 2026

Solana (SOL) Upside Builds, $90 Currently Main Battlegrounds

April 16, 2026
Add A Comment

Comments are closed.

Recent Posts

PI price pressure grows ahead of Protocol 22 deadline

April 24, 2026

HOYA BIT Becomes World’s First BSI ISO 14068-1 Certified Carbon-Neutral Crypto Exchange

April 24, 2026

Institutional Wallet Receives 100,000 Ethereum ($233.7M) from BitGo: Find out who’s behind the move

April 24, 2026

SafeBets Introduces New Prediction Platform At Industry Conference

April 23, 2026

Verifiable Bitcoin Accounts For Institutional Bitcoin. Your Custody, Your Terms.

April 23, 2026

Phemex Launches Prediction Market Powered By Polymarket, Introduces Month-Long Forecasting Championship

April 23, 2026

Vantage introduces an enhanced app with a seamless all-in-one trading experience.

April 23, 2026

Berachain Is Too Early For Mainstream Adoption?

April 23, 2026

DeFi platform Volo, hit by $3.5 million Vault attack, begins recovery efforts

April 23, 2026

Global Stocks Reach Record Highs As S&P 500 Surpasses 7,000 Milestone

April 22, 2026

Bitmine Immersion Technologies (BMNR) Announces ETH Holdings Reach 4.976 Million Tokens, And Total Crypto And Total Cash Holdings Of $12.9 Billion

April 22, 2026

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

PI price pressure grows ahead of Protocol 22 deadline

April 24, 2026

HOYA BIT Becomes World’s First BSI ISO 14068-1 Certified Carbon-Neutral Crypto Exchange

April 24, 2026

Institutional Wallet Receives 100,000 Ethereum ($233.7M) from BitGo: Find out who’s behind the move

April 24, 2026
Most Popular

Polygon Cryptocurrency: Key signals show that another MATIC sell-off is imminent.

June 27, 2024

Distributed OORT AI data ranks the highest in Google Kaggle.

May 14, 2025

Bitcoin $500K Prediction, Spot Ether ETF ‘Staking Issue’ — Thomas Fahrer, X Hall of Flame

July 3, 2024
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2026 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.