Top

HTX Hacker Returns Funds

Policy & Regulation·October 10, 2023, 12:46 AM

The hacker responsible for the nearly 5,000 ETH exploit on the Seychelles-headquartered cryptocurrency exchange HTX (formerly known as Huobi) last month has decided to return the stolen funds.

Towards the end of last month, the exchange fell victim to a hack, resulting in a loss estimated at around $8 million. According to on-chain data, the hacker has repatriated the pilfered cryptocurrency, marking a significant development in the aftermath of the cyberattack.

Photo by Shubham Dhage on Unsplash

 

Hacker rewarded

The returned funds were sent back in two separate transactions, one consisting of approximately 4,000 ETH and the other totaling around 1,000 ETH. HTX advisor and Tron Founder, Justin Sun, took to X (formerly Twitter) to officially confirm the recovery. In his statement, Sun revealed that HTX had not only received all the stolen funds as promised by the hacker but had also extended a gesture of goodwill. HTX rewarded the responsible party with a “white hat bonus” amounting to 250 ETH, equivalent to a substantial $400,000.

Sun expressed his satisfaction with the hacker’s decision, stating:

“We have confirmed that the hacker has fully returned all funds, as promised, and we have also paid the hacker a white hat bonus of 250 ETH. The hacker made the right choice. We would like to express our gratitude to everyone in the industry for their help.”

 

Hacker advisory message

During the return of the funds, the hacker conveyed a message on-chain, shedding light on the reason behind this act of restitution. The message read:

“Received your message. White hat bonus to

0x1Fc8674A51D6b97C968BE384337519CE7003152B. Your system hot wallet private key leak, you should change system hot wallet address and reduce the system hot wallet rate.”

HTX, in response to the hacker’s decision to return the funds and in accordance with its commitment, promptly sent the white hat bonus to the specified address. The exchange also requested the hacker to provide a detailed security vulnerability analysis report to the email address htxsafe@htx-inc.com.

This request aims to prevent similar incidents in the future, with assurances that the hacker’s privacy will be safeguarded.

Justin Sun had confirmed the original hack in September, at the time reassuring the community that HTX had covered all losses arising from the attack and resolved associated issues satisfactorily.

While acknowledging the severity of the hack, Sun pointed out that the stolen amount represented a relatively small fraction of the $3 billion in assets held by HTX’s users. To incentivize the return of the funds, HTX had even offered a reward of 5%, which equated to $400,000.

However, Sun also emphasized that if the funds had not been returned within a seven-day window, the company would have been compelled to involve law enforcement authorities.

Thankfully, it did not come to that, and the cryptocurrency exchange can now move forward with the confidence that its users’ assets are secure. This incident highlights the importance of cooperation and ethical choices within the crypto community, as well as the potential for resolution even in the face of cyberattacks.

More to Read
View All
Web3 & Enterprise·

Aug 14, 2023

UAE Royal Office to Visit South Korea Next Month for Web3 Ventures

UAE Royal Office to Visit South Korea Next Month for Web3 VenturesAIITONE, an immersive tech company based in South Korea, said Monday that officials from the Royal Private Office of H.H Sheikh Ahmed Bin Faisal Al Qassimi in the United Arab Emirates (UAE) are set to visit South Korea next month. During the visit, the Royal Office will work with AIITONE to enhance collaboration with Korean enterprises leading the Web3 sector, including information technology (IT) and blockchain, and explore cooperative opportunities across different sectors such as energy and finance.The Royal Office will also engage in practical preparations for establishing the UAE banks’ Korean branches and meet with members of the Korean National Assembly and related business officials.Photo by Saj Shafique on UnsplashNurturing international relations“This visit will consist of meetings and discussions with Korean lawmakers, further strengthening political cooperation between our two countries and facilitating the exchange of opinions on crucial international matters,” a representative from the Royal Office commented.“During the visit, a South Korea-UAE Web3 forum will also be held, expediting discussions on fintech-related collaboration possibilities such as blockchain and STO,” the representative added.Transcontinental fintech growthAIITONE and the Royal Office had previously signed a memorandum of understanding (MOU) vowing to work together to expand their respective business operations into each other’s regions — East Asia and the Middle East — and subsequently bolster the fintech industries there.Under the partnership, AIITONE plans to convene with major Korean companies in order to analyze industry trends and explore potential areas for collaboration. The discussions are expected to cover various areas, including the establishment of Islamic banks in Korea, setting up offices for the investment of Arab capital in Asia, and strengthening cooperation in the field of security tokens.The company will also work with the Royal Office on security token projects and central bank digital currencies (CBDCs) — areas where Dubai leads innovation.“Through activities such as the UAE Web3 forum and blockchain-based security token ventures, we aim to pioneer new models of cooperation and achieve sustainable development,” said Bruce Jeong, Principal of Middle East Investment and AIITONE.

news
Web3 & Enterprise·

Sep 14, 2023

Sony Network Communications and Startale Labs to Launch Joint Blockchain Venture

Sony Network Communications and Startale Labs to Launch Joint Blockchain VentureProminent Japanese internet service provider Sony Network Communications and Singapore-based Web3 company Startale Labs are undertaking a new joint venture to develop a blockchain network for facilitating the worldwide adoption of Web3.Photo by CHUTTERSNAP on UnsplashCultivating an innovative Web3 ecosystemThis comes after Sony Network Communications’ initial $3.5 million investment in Startale Labs back in June. Both companies expressed their commitment to paving the way for revolutionary Web3 applications through the development of a solid blockchain infrastructure. To do so, they said that they would leverage Sony Group’s knowledge and expertise in various sectors, such as gaming, music, entertainment, and financial services, to apply a multifaceted approach to the joint venture.“By combining Sony Network Communications’ experience in communication, the Internet of Things (IoT), artificial intelligence (AI), and solution services with Startale Labs’ insights and technical prowess in Web3, we aspire to create a global infrastructure that underpins the Web3 era, driving innovation across existing industries,” said Jun Watanabe, President and Representative Director of Sony Network Communications.The new business will be established this month under the name Sony Network Communications Labs.“This joint venture is founded on the synergy created by our respective assets and knowledge, and it is aimed at collectively developing a leading blockchain ecosystem. We are determined to discern Web3 trends and drive them globally,” said Sota Watanabe, CEO of Startale Labs.Governmental supportSony Group, Sony Network Communications’ parent company, has consistently been making strides in the Web3 realm. Sony Bank, another affiliate of the group, joined hands with Mitsui & Co. Digital Asset Management (MDM) a few months ago to establish MDM’s security token service Alterna.These efforts have been encouraged by a backdrop of active support for Web3 and crypto businesses from the Japanese government. The Japanese National Tax Agency recently announced the revised corporate taxation rules for crypto assets, which renders companies exempt from taxes on unrealized gains from cryptocurrencies if the virtual assets were issued by the company and have been continuously held since issuance, or if they have remained subject to certain transfer restrictions since issuance.Startale Labs’ popular smart contract platform Astar Network also recently launched an Ethereum layer 2 scaling solution dubbed Astar zkEVM: Supernova with Polygon Labs in a strategic move to expand Web3 adoption in Japan and onboard more enterprise partners.

news
Policy & Regulation·

Nov 08, 2023

Seoul police arrest 24 in $11.6M crypto investment scam

Seoul police arrest 24 in $11.6M crypto investment scamForty-nine individuals involved with six investment fraud rings, which ran fraudulent cryptocurrency investment websites promising returns of 500% on the day of the investment, have been referred to South Korean prosecutors, according to a report by local news outlet Edaily. Korean police have arrested and detained 24 members of these syndicates and issued Interpol red notices for nine individuals, including two leaders based abroad.The Cyber Investigation Unit of the Seoul Metropolitan Police Agency (SMPA) announced on Tuesday (local time) that they have handed over a total of 49 individuals involved in the fraudulent scheme to the prosecution. These individuals collectively defrauded 253 victims out of KRW 15.1 billion ($11.6 million) by masquerading as investment advisors and luring the victims into chat rooms designed to offer fake investment opportunities. The police have charged them with fraud and violating the law against hiding illegal earnings, confiscating KRW 1.6 billion of the illicit funds.Photo by Bermix Studio on UnsplashOverseas leadershipTwo South Korean leaders are alleged to have orchestrated a crypto scam from the Philippines and other locations. Between September 2020 and April of last year, they recruited teams to work through Telegram, a messaging app, to execute various tasks, including withdrawing and laundering victims’ funds, managing bank accounts, running websites and enticing and defrauding victims. They imitated a legitimate investment firm to create a bogus cryptocurrency investment website and also operated chat rooms on Korean mobile messaging platforms to facilitate their scam.The fraudsters involved in this cryptocurrency scam operated by employing a database containing 1.62 million pieces of personal information illegally obtained through Telegram. Using this information, they randomly invited potential victims into chat rooms.Luring victims with promises of 500% returnsParticipants in the scheme took on multiple roles to share fabricated success stories about investments to lure individuals to their fraudulent site. They enticed victims with promises of a 500% return on the day of investment.Once lured to the site, victims were presented with manipulated images that showed fictitious investment returns, persuading them to invest money. The scammers would then entice victims to pay even more, citing taxes and extra fees. Eventually, the fraudsters would cut off the victims’ access to their accounts. The stolen funds, ranging from KRW 2 million to KRW 430 million per victim, were laundered through currency exchanges or by buying gift certificates.After 253 similar complaints were filed nationwide, police consolidated these reports and initiated an investigation in January of last year. During the investigation, they uncovered the participation of several local teams in the fraudulent operation. From March 2022 to last month, all Korean members involved were apprehended, except for nine individuals now on Interpol’s wanted list. Police are working on extraditing one of the two masterminds orchestrating the scheme from abroad after the person voluntarily surrendered. The other ringleader remains at large, flagged as a fugitive by Interpol, and authorities are pursuing their extradition.Oh Kyu-sik, who leads Cybercrime Investigation Unit 2 at the SMPA, has warned that chat rooms promising high returns on investments in virtual assets, stocks and futures should be approached with caution due to the high risk of fraud. He recommends that investors should verify the legitimacy of cryptocurrency investment sites by checking for any fraud reports listed on the Financial Intelligence Unit (FIU) website. Additionally, he suggests confirming the authenticity of investment companies through the FINE portal, which is operated by the Financial Supervisory Service (FSS).

news
Loading