Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • ADOPTION
  • TRADING
  • HACKING
  • SLOT
  • TRADE
Crypto Flexs
  • DIRECTORY
  • CRYPTO
    • ETHEREUM
    • BITCOIN
    • ALTCOIN
  • BLOCKCHAIN
  • EXCHANGE
  • ADOPTION
  • TRADING
  • HACKING
  • SLOT
  • TRADE
Crypto Flexs
Home»ADOPTION NEWS»Kraken says it exploited a bug that has now been fixed, worth about $3 million.
ADOPTION NEWS

Kraken says it exploited a bug that has now been fixed, worth about $3 million.

By Crypto FlexsJune 19, 20243 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Kraken says it exploited a bug that has now been fixed, worth about  million.
Share
Facebook Twitter LinkedIn Pinterest Email

Kraken said about $3 million was taken from its wallets due to an attack related to a bug that has since been fixed.

According to Nick Percoco, Kraken’s chief security officer, the cryptocurrency exchange received a bug bounty program alert on June 9. The alert warned of a “very serious” bug that could allow attackers to artificially inflate balances on the platform.

Percoco was short on specifics in its submission, but said it had investigated the issue and discovered an isolated bug that could have allowed malicious attackers to initiate deposits on the platform and receive funds into accounts without fully completing the deposit. He pointed out that this only happens under certain circumstances.

He said the bug, derived from a flaw in a recent UX change that credited clients’ accounts before their asset deposits were fully liquidated, despite there being no client assets at risk, allowed malicious attackers to “print assets” from their Kraken accounts. “I insisted I could do it. said Percoco.

Exploited before submitting a bounty

According to Percoco, the bug was fully fixed within a few hours. However, subsequent investigation revealed that it had already been exploited on three accounts within days of each other.

Percoco claimed that one of its accounts discovered a bug and that KYC was applied to an individual who claimed to be a “security researcher.” The individual reportedly took advantage of the bug to credit $4 to his account. This is enough to prove a defect, file a bug bounty report, and demand a hefty reward, Percoco said.

However, Kraken’s CSO claimed that the researcher disclosed the bug to two other people he was working with, who subsequently withdrew much larger amounts of money from Kraken accounts, totaling $3 million. “This came from Kraken’s treasury and not from other customer assets,” Percoco said.

Percoco said Kraken had requested a full accounting of their activities and the return of the funds. However, the researchers reportedly refused to return the funds until Kraken disclosed the potential scale of the exploit if it had not disclosed the bug. “This is not white hacking, this is extortion!” Percoco said.

Percoco said the researchers criticized the cryptocurrency exchange’s request as “unreasonable” and “unprofessional” and added that Kraken would not disclose the research company involved but would consider it a bug bounty violation and handle it as a criminal case. hatchet.

“We will not disclose this research company. Because they don’t deserve recognition for their actions. We are treating this as a criminal case and coordinating with law enforcement accordingly,” Percoco said.


Disclaimer: The Block is an independent media outlet delivering news, research and data. As of November 2023, Foresight Ventures is a majority investor in The Block. Foresight Ventures invests in other companies in the cryptocurrency space. Cryptocurrency exchange Bitget is an anchor LP of Foresight Ventures. The Block continues to operate independently to provide objective, impactful and timely information about the cryptocurrency industry. Below are our current financial disclosures.

© 2023 The Block. All rights reserved. This article is provided for informational purposes only. It is not provided or intended to be used as legal, tax, investment, financial or other advice.

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Gala Games improves leader board rewards and introduces preference systems.

June 20, 2025

Ether Leeum Whale starts a $ 11 million leverage betting in the 30% increase in ETH prices.

June 12, 2025

AI starts a cost -effective batch API for LLM request.

June 12, 2025
Add A Comment

Comments are closed.

Recent Posts

No Altcoin Season 2025 ? Why Bitcoin Dominance Is Holding Strong In The Crypto Market

June 28, 2025

Why It Matters For Every Crypto Investor

June 27, 2025

Why It Matters For Every Crypto Investor

June 27, 2025

Safe smart account audit summary

June 27, 2025

CARV’s New Roadmap Signals Next Wave Of Web3 AI

June 27, 2025

CARV’s New Roadmap Signals Next Wave Of Web3 AI

June 27, 2025

Bybit Expands Global Reach With Credit Card Crypto Purchases In 25+ Currencies And Cashback Rewards

June 27, 2025

BYDFi Joins Seoul Meta Week 2025, Advancing Web3 Vision And South Korea Strategy

June 27, 2025

Earns $9,800 Per Day With BTC Breaks Through $107,000, GoldenMining Global Market.

June 27, 2025

Why Bakkt Holdings can buy Bitcoin with a $ 1 billion increase

June 27, 2025

NVIDIA RTX strengthens FITY’s AI -centered innovation in Cooler Design.

June 27, 2025

Crypto Flexs is a Professional Cryptocurrency News Platform. Here we will provide you only interesting content, which you will like very much. We’re dedicated to providing you the best of Cryptocurrency. We hope you enjoy our Cryptocurrency News as much as we enjoy offering them to you.

Contact Us : Partner(@)Cryptoflexs.com

Top Insights

No Altcoin Season 2025 ? Why Bitcoin Dominance Is Holding Strong In The Crypto Market

June 28, 2025

Why It Matters For Every Crypto Investor

June 27, 2025

Why It Matters For Every Crypto Investor

June 27, 2025
Most Popular

Here’s how Solana outperforms BNB and USDT: Franklin Templeton

May 7, 2024

Can I recover my password from bitcoin.core other than guessing?

March 13, 2024

Pudgy Penguins and OverpassIP Unveil Parent Company Igloo

June 24, 2024
  • Home
  • About Us
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Terms and Conditions
© 2025 Crypto Flexs

Type above and press Enter to search. Press Esc to cancel.