BTC Loading.. Loading..
ETH Loading.. Loading..
SOL Loading.. Loading..
PEPE Loading.. Loading..
SHIB Loading.. Loading..
DOGE Loading.. Loading..
XRP Loading.. Loading..
LTC Loading.. Loading..
ADA Loading.. Loading..
DOT Loading.. Loading..
MATIC Loading.. Loading..
LINK Loading.. Loading..
BNB Loading.. Loading..
BTC Loading.. Loading..
ETH Loading.. Loading..
SOL Loading.. Loading..
PEPE Loading.. Loading..
SHIB Loading.. Loading..
DOGE Loading.. Loading..
XRP Loading.. Loading..
LTC Loading.. Loading..
ADA Loading.. Loading..
DOT Loading.. Loading..
MATIC Loading.. Loading..
LINK Loading.. Loading..
BNB Loading.. Loading..
BTC Loading.. Loading..
ETH Loading.. Loading..
SOL Loading.. Loading..
PEPE Loading.. Loading..
SHIB Loading.. Loading..
DOGE Loading.. Loading..
XRP Loading.. Loading..
LTC Loading.. Loading..
ADA Loading.. Loading..
DOT Loading.. Loading..
MATIC Loading.. Loading..
LINK Loading.. Loading..
BNB Loading.. Loading..

Rogue Developer Drains $50 Million From Infini

By Philip Maina

15 hours agoTue Feb 25 2025 11:40:51

Rogue Developer Allegedly Drains $50 Million From Infini

Reading Time: 2 minutes

  • A rogue developer is suspected of being behind Infini’s $50 million hack
  • The developer previously worked on the project’s smart contracts but secretly retained access to the platform
  • The attacker retained access since November 2024

A rogue blockchain developer is suspected of siphoning $50 million from stablecoin payment firm Infini. The developer was contracted to create smart contracts but retained admin access to the protocol even after delivering his work. According to an analysis by blockchain security firm Cyvers, the developer waited for over three months before exploiting the payment platform, indicating that he may be a malicious actor masquerading as a genuine smart contract developer.

The Attacker Used Tornado Cash

Cyvers disclosed that the developer started by depositing funds into his address using crypto-mixing service Tornado Cash. The developer then “sent a small ETH transaction for gas, and exploited the contract.”

Infini sent the attacker an on-chain message offering him a 20% bug bounty. According to the message, the payment platform has “gathered critical IP and device information” regarding the hacker with the help of exchange s, partners, security agencies, and the community.

The platform said it’ll involve law enforcement agencies if the attacker fails to return 80% of the funds within 48 hours. Infini also said that it has a “solid runway to operate” hence no need to suspend deposits, withdrawals, and other services.

Infini’s founder Christian Li said the platform will compensate affected users if the hacker chooses to keep the funds, adding that users have withdrawn roughly $500,000 since the hack. 

Insiders Not Uncommon

The Infini hack by a rogue developer comes less than a week after a former Bybit accountant was jailed for close to 10 years for embezzling funds. 

It also comes a few days after the Bybit exchange lost $1.5 billion to hackers. The exchange has since restored its balances to pre-hack levels as it continues to pursue the hacker.

With Infini offering a 20% bounty, it remains unclear whether there was some bad blood between the developer and the payment platform.

25.02.2025
views: 1012

You may have missed