iwildcasino Kraken’s $3 million bug exploit leads to criminal investigation
Crypto exchange Kraken reported that a rogue security research company has unilaterally held on to $3 million in digital assets they exploited from a bug on its platform.iwildcasino
Kraken’s Chief Security Officer Nick Percoco detailed the incident on X, revealing that on June 9, the company received an anonymous tip from a “security researcher” about a critical bug affecting its funding system.
The bugAccording to Percoco, the flaw, stemming from the exchange’s recent UX change, would allow a malicious actor to inflate their account balances artificially. He explained:
“Our team identified a flaw from a UX change that credited accounts prematurely, allowing users to trade in real time before asset clearance. This change was not adequately tested against this specific vulnerability… [So,] a malicious attacker could effectively print assets in their Kraken account.”
After fixing the bug, Kraken found that three accounts had exploited this flaw within a few days. Percoco disclosed that the security researcher had shared the information with two associates, who subsequently withdrew nearly $3 million from Kraken’s treasury.
Extortion?Percoco stated that Kraken contacted these individuals for a full report and to return the withdrawn funds.
However, these requests were ignored. Instead, the researchers demanded a speculative sum for the potential damages the bug could have caused if undisclosed.
Percoco condemned these actions as unethical and criminal, stating:
“As a security researcher, your license to ‘hack’ a company is enabled by following the simple rules of the bug bounty program you are participating in. Ignoring those rules and extorting the company revokes your ‘license to hack.’ It makes you, and your company, criminals.”
Consequently, Kraken is now treating this incident as criminal and is working with law enforcement authorities.
Kraken has yet to respond to CryptoSlate’s request for additional commentary as of press time.iwildcasino
Mentioned in this article " data-src="https://cryptoslate.com/wp-content/themes/cryptoslate-2020/imgresize/timthumb.php?src=https://cryptoslate.com/wp-content/uploads/2018/10/kraken-logo-1.jpg&w=16&h=16&q=75" data-srcset="https://cryptoslate.com/wp-content/themes/cryptoslate-2020/imgresize/timthumb.php?src=https://cryptoslate.com/wp-content/uploads/2018/10/kraken-logo-1.jpg&w=24&h=24&q=75 1.5x, https://cryptoslate.com/wp-content/themes/cryptoslate-2020/imgresize/timthumb.php?src=https://cryptoslate.com/wp-content/uploads/2018/10/kraken-logo-1.jpg&w=32&h=32&q=75 2x"> KrakenHot News
- bspin Can I Ask Straight Women
- bigjackpot88 For The Beauty In
- game ape Miss Asia Pacific Int
- ubet63 Why Are Thousands Of Ho
- tayabet IND Vs BAN: R Ashwin R
- astigbet IND Vs BAN, 1st T20I
- iwildcasino Kraken’s
- game ape Instagram Introduces
- gppbet Himachal Pradesh Vs Man
- ubet63 India Vs Ireland Live S
Recommend News
- cloudbet Fed escalates Operati
- satta9 Democrats Seek Another
- tayabet US Paralympians Lamber
- ubet63 Rain expected in southe
- lucky rainbow What Will We Do
- ubet63 Why Are Thousands Of Ho
- fortunejack OKX CEO warns user
- legendplay Artists and Activis
- lucky block Judge John Hodgman
- legendplay Nigerian court drop