stolen funds

Radiant Capital published a review of the theft process, stating that they will identify the attackers and recover the stolen funds as soon as possible

ChainCatcher news, Radiant Capital's official social media post reviewed that the protocol experienced a highly complex security vulnerability on the 16th, resulting in a loss of $50 million. The attacker exploited multiple developers' hardware wallets through highly advanced malware injection.During the intrusion, the front end of Safe Wallet (also known as Gnosis Safe) displayed legitimate transaction data, while the poisoned transactions were signed and executed in the background. This vulnerability occurred during a routine multi-signature emission adjustment process, which is conducted regularly to adapt to market conditions and utilization rates. DAO contributors strictly adhered to many industry standard operating procedures throughout the process. Each transaction was simulated on Tenderly to ensure accuracy and was individually reviewed by multiple developers at each signature stage. During these reviews, neither Tenderly nor the front-end checks in Safe showed any anomalies. To emphasize the importance of this, it was completely undetectable during the manual review of the Gnosis Safe UI and the Tenderly simulation of regular transactions, as confirmed by external security teams.Radiant Capital stated that it has been working closely with Seal911 and Hypernative and has implemented more robust multi-signature controls. The FBI and zeroShadow are fully aware of the violations and are actively working to freeze all stolen assets. The DAO is deeply disturbed by this attack and will continue to work tirelessly with relevant agencies to identify the attackers and recover the stolen funds as soon as possible.

Alex Lab: A portion of the stolen funds has been recovered, and the treasury grant program is under evaluation

ChainCatcher news, Bitcoin decentralized finance tool Alex Lab has released an update on the attack incident, stating that the team is closely monitoring the attacker's wallet and has notified all relevant CEXs. All known CEX accounts associated with the attacker have been frozen. A portion of the stolen funds has been identified and is being recovered from a CEX. The team is actively collaborating with other CEXs through the necessary processes to facilitate the return of more funds. To further recover the stolen funds, we are prepared to file a police report, and if the attacker does not cooperate with us in a timely manner, we will seek police support to assist in the recovery of the funds.So far, all aBTC, sUSDT, xBTC, xUSD, ALEX, atALEX, LiSTX, LUNR, SKO, CHAX, $B20, ORDG, ORMM, ORNJ, TRIO, TX20, and STXS have been recovered. The smart contract code and infrastructure of ALEX have not been compromised.Alex Lab also stated that due to the uncertainty of recovering all stolen funds, they are evaluating the use of ALEX reserves held by the Alex Lab Foundation to fund a treasury grant program to support the community affected by this attack during this difficult time. Additionally, they are considering the possibility of proposing a SIP to the Stacks community to burn STX held in wallets that have not recovered stolen funds and to mint new STX for affected community members.Previous news, the Bitcoin DeFi platform Alex announced the discovery of a vulnerability in the XLink bridge and has actively collaborated with exchanges, partners, and ecosystem contributors to resolve the situation.
ChainCatcher Building the Web3 world with innovators