No Result
View All Result
  • Login
Thursday, December 18, 2025
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Cryptocurrency

Attacker Seizes Whale’s Multisig in Minutes, Starts Draining $40M in Stages

by FeeOnlyNews.com
2 hours ago
in Cryptocurrency
Reading Time: 3 mins read
A A
0
Attacker Seizes Whale’s Multisig in Minutes, Starts Draining M in Stages
Share on FacebookShare on TwitterShare on LInkedIn


A crypto attacker apparently took over a whale’s multisig wallet minutes after it was created 44 days ago, and has been draining and laundering funds in stages since.

In a Thursday post on X, blockchain security firm PeckShield reported that a whale’s multisig wallet had been drained of roughly $27.3 million due to a private key compromise. PeckShield noted that the attacker has laundered about $12.6 million, or 4,100 Ether (ETH), through Tornado Cash and retained around $2 million in liquid assets, while also controlling a leveraged long position on Aave (AAVE).

However, new findings from Yehor Rudytsia, head of forensic at Hacken Extractor, indicate the total losses may exceed $40 million and that the incident likely began much earlier, with first signs of theft dating back as far as Nov. 4.

Rudytsia told Cointelegraph that the multisig wallet labeled as “compromised” may never have been meaningfully controlled by the victim. Onchain data shows the multisig was created by the victim’s account on Nov. 4 at 7:46 am UTC, but ownership was transferred to the attacker just six minutes later. “Very likely the theft actor created this multisig and transferred funds there, then promptly swapped the owner to be himself,” Rudytsia said.

Attacker laundering funds in batches. Source: PeckShield

Related: Spear phishing is North Korean hackers’ top tactic: How to stay safe

Attacker plays the long game

Once in control, the attacker appears to have acted patiently. They made Tornado Cash deposits in batches over several weeks, starting with 1,000 ETH on Nov. 4 and continuing through mid-December in smaller, staggered transactions. Around $25 million in assets also remains on the multisig still controlled by the attacker, according to Rudytsia.

He also raised concerns about the wallet structure. The multisig was configured as a “1-of-1,” meaning only a single signature was required to approve transactions, “which is not a multisig conceptually,” Rudytsia added.

Abdelfattah Ibrahim, a decentralized application (DApp) auditor at Hacken, said several attack vectors remain possible. These include malware or infostealers on the signer’s device, phishing attacks that trick users into approving malicious transactions, or poor operational security practices such as storing keys in plaintext or using the same machine for multiple signers.

“Preventing this would involve isolating signing devices as cold devices and verifying transactions beyond the UI,” Ibrahim said.

Related: Balancer community proposes plan to distribute funds recovered from hack

AI models capable of smart contract exploits

As Cointelegraph reported, a recent research by Anthropic and the Machine Learning Alignment & Theory Scholars (MATS) group found that today’s leading AI models are already capable of developing real, profitable smart contract exploits.

In controlled tests, Anthropic’s Claude Opus 4.5, Claude Sonnet 4.5 and OpenAI’s GPT-5 collectively generated exploits worth $4.6 million, showing that autonomous exploitation is technically feasible using commercially available models.

In further testing, Sonnet 4.5 and GPT-5 were deployed against nearly 2,850 recently launched smart contracts with no known vulnerabilities. The models uncovered two previously unknown zero-day flaws and produced exploits worth $3,694, slightly more than the $3,476 API cost required to generate them.

Magazine: 2026 is the year of pragmatic privacy in crypto — Canton, Zcash and more



Source link

Tags: 40MAttackerdrainingMinutesmultisigSeizesStagesstartsWhales
ShareTweetShare
Previous Post

CellVoyant debuts AI platform that could slash the cost of CAR-T and other cell-based treatments

Next Post

‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

Related Posts

Fidelity Bitcoin ETF leads 7M in inflows on Dec 17

Fidelity Bitcoin ETF leads $457M in inflows on Dec 17

by FeeOnlyNews.com
December 18, 2025
0

Key Takeaways Spot Bitcoin ETFs in the US saw $457 million in net inflows on Wednesday. Fidelity's FBTC led inflows...

A Structural Shift in Bitcoin: BTC’s Network Activity Tells a New Story

A Structural Shift in Bitcoin: BTC’s Network Activity Tells a New Story

by FeeOnlyNews.com
December 17, 2025
0

Trusted Editorial content, reviewed by leading industry experts and seasoned editors. Ad Disclosure Bitcoin is struggling to break away from...

Bitcoin just flashed a rare capitulation signal that historically triggers a violent rally

Bitcoin just flashed a rare capitulation signal that historically triggers a violent rally

by FeeOnlyNews.com
December 17, 2025
0

Bitcoin trades near $89,000 today after its 14-day relative strength index fell below 30 in mid-November, a threshold traders track...

Bipartisan Crypto Bill Talks Progress Despite Markup Delay

Bipartisan Crypto Bill Talks Progress Despite Markup Delay

by FeeOnlyNews.com
December 17, 2025
0

Discussions about the U.S. crypto bill continued among congress members even though there will be no markup hearings this week....

Kraken Taps Alpaca for xStocks After Backed Finance Acquisition

Kraken Taps Alpaca for xStocks After Backed Finance Acquisition

by FeeOnlyNews.com
December 17, 2025
0

Kraken’s xStocks, which tokenizes real-world equities, is expanding its partnership with Alpaca. The acquisition follows recent announcement by the crypto...

Russia Draws Firm Line on Digital Assets, Keeping Crypto Out of Domestic Payments

Russia Draws Firm Line on Digital Assets, Keeping Crypto Out of Domestic Payments

by FeeOnlyNews.com
December 17, 2025
0

Russia has reiterated its firm stance on crypto, drawing a clear distinction between digital assets and traditional currency. While global...

Next Post
‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

  • Trending
  • Comments
  • Latest
Newsom, DeSantis join forces to blast ‘idiotic’ push to allow oil drilling off coasts of California, Florida

Newsom, DeSantis join forces to blast ‘idiotic’ push to allow oil drilling off coasts of California, Florida

November 23, 2025
What is a credit card spending limit — and what to know

What is a credit card spending limit — and what to know

August 4, 2025
Links 12/10/2025 | naked capitalism

Links 12/10/2025 | naked capitalism

December 10, 2025
5 Senior Discounts Being Eliminated by National Retailers

5 Senior Discounts Being Eliminated by National Retailers

December 7, 2025
AT&T promised the government it won’t pursue DEI

AT&T promised the government it won’t pursue DEI

December 4, 2025
Trump Insider Deals Nosediving Alongside His Polling Numbers

Trump Insider Deals Nosediving Alongside His Polling Numbers

December 3, 2025
‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

0
Pain Power

Pain Power

0
Tesla: Bullenfalle oder perfekte Einstiegschance?

Tesla: Bullenfalle oder perfekte Einstiegschance?

0
India valuations fair, earnings key to upside over next 12 months: Mark Matthews

India valuations fair, earnings key to upside over next 12 months: Mark Matthews

0
Links 12/18/2025 | naked capitalism

Links 12/18/2025 | naked capitalism

0
Attacker Seizes Whale’s Multisig in Minutes, Starts Draining M in Stages

Attacker Seizes Whale’s Multisig in Minutes, Starts Draining $40M in Stages

0
‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?

December 18, 2025
Attacker Seizes Whale’s Multisig in Minutes, Starts Draining M in Stages

Attacker Seizes Whale’s Multisig in Minutes, Starts Draining $40M in Stages

December 18, 2025
CellVoyant debuts AI platform that could slash the cost of CAR-T and other cell-based treatments

CellVoyant debuts AI platform that could slash the cost of CAR-T and other cell-based treatments

December 18, 2025
Links 12/18/2025 | naked capitalism

Links 12/18/2025 | naked capitalism

December 18, 2025
Tesla: Bullenfalle oder perfekte Einstiegschance?

Tesla: Bullenfalle oder perfekte Einstiegschance?

December 18, 2025
Visa’s AI agents automating hundreds of purchases for customers

Visa’s AI agents automating hundreds of purchases for customers

December 18, 2025
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • ‘Tis the Season to Be in Debt: Are You Among the 70% of Credit Card Users Planning to Carry a Balance Into 2026?
  • Attacker Seizes Whale’s Multisig in Minutes, Starts Draining $40M in Stages
  • CellVoyant debuts AI platform that could slash the cost of CAR-T and other cell-based treatments
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.