KyberSwap says it will pay 15% bounty if attacker returns $265K in stolen crypto

KyberSwap, a multichain DEX aggregator, disclosed Thursday that a frontend exploit resulted in the theft of $265,000 in user funds.

KyberSwap told victims of the hack it will compensate any funds lost and offered a 15% bounty for the hacker if all the funds are returned.

The code exploit was initially flagged at approximately 2:30 a.m. EST. KyberSwap gave more details about the exploit in its official notice writing: “We identified a malicious code in our Google Tag Manager (GTM) which inserted a false approval, allowing a hacker to transfer a user’s funds to his address.”

“The script had been discreetly injected and specifically targeting whale wallets with large amounts.” the post further explained.

The exploit was neutralized two hours after the team began investigations, and the team urged users to proceed using its platform with caution.

The 15% bug bounty is contingent on all the funds being returned and the hacker speaking directly with the KyberSwap team.

© 2022 The Block Crypto, Inc. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

About Author

Mike is a reporter covering blockchain ecosystems, who specializes in zero-knowledge proofs, privacy, and self-sovereign digital identification. Prior to joining The Block, Mike worked with Circle, Blocknative, and various DeFi protocols on growth and strategy.

Source: https://www.theblock.co/post/167308/kyberswap-says-it-will-pay-15-bounty-if-attacker-returns-265k-in-stolen-crypto?utm_source=rss&utm_medium=rss