Close Menu
FintechFetch
    FintechFetch
    • Home
    • Fintech
    • Financial Technology
    • Credit Cards
    • Finance
    • Stock Market
    • More
      • Business Startups
      • Blockchain
      • Bitcoin News
      • Cryptocurrency
    FintechFetch
    Home»Cryptocurrency»zkLend Exploited for $4.9M in ETH, Team Appeals to Hacker with 10% Offer
    Cryptocurrency

    zkLend Exploited for $4.9M in ETH, Team Appeals to Hacker with 10% Offer

    FintechFetchBy FintechFetchFebruary 12, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Share
    Facebook Twitter LinkedIn Pinterest Email

    zkLend, a decentralized finance lending protocol on Starknet, has suffered a major security breach. As a result, it lost approximately 3,700 ETH, worth around $4.9 million.

    The exploit has forced the platform to pause withdrawals while investigations continue.

    Response to the Exploit

    zkLend confirmed the incident in a series of X posts on February 11, stating that millions worth of cryptocurrency had been drained from its smart contracts.

    “We are aware of the ongoing security incident on zkLend. The team is now investigating and will provide an update when possible,” the protocol stated. Hours later, they advised users to refrain from depositing or repaying funds while they worked to determine the root cause. They also halted all withdrawals to prevent further losses.

    Following the attack, zkLend sought the services of several organizations, including StarkWare, ZeroShadow, Binance Security, and Hypernative Labs, to help track the hacker and recover the stolen funds. It also promised to share a more detailed analysis as soon as a post-mortem was completed.

    The exploit affected several DeFi strategies linked to zkLend, including STRKFarm’s STRK, USDC, and ETH Sensei strategies, putting withdrawals on ice until the situation gets resolved.

    According to blockchain security firm QuillAudits, the perpetrator, identified by the address 0x64…9109, first targeted a specific contract, 0x04…3b26, before siphoning the funds. They then moved the stolen assets to Ethereum, funneling it through the Railgun crypto mixer, a privacy-focused tool often used to obscure transaction trails.

    On-chain data shared by the security platform showed several transactions leading to laundering activity, with 706 ETH, valued at about $1.8 million, already sent through the mixer.

    Whitehat Bounty Offer

    In a last-ditch effort to recover the funds, zkLend issued a direct message to the hacker, offering a 10% whitehat bounty. This would mean that the attacker would keep nearly 400 ETH worth more than one million dollars if the remaining 3,300 ETH were returned by 00:00 UTC on Valentine’s Day. The team also stressed that the offer is legally binding and releases the exploiter “from any and all liability” regarding the heist.

    It isn’t the first time protocols on the wrong end of exploits have tried negotiating with bad actors to have funds returned. In March last year, WOOFI lost $8.5 million in a flash loan attack, and subsequently offered a percentage of the loot as a whitehat bounty.

    Similarly, almost half a year before that, North Korean hackers stole more than $70 million from the CoinEx crypto exchange’s hot wallets, leading the platform to offer them what it termed a “generous bug bounty.”

    Sadly, in both cases, no funds were ever returned despite the bounty pleas.

    SPECIAL OFFER (Sponsored)

    Binance Free $600 (CryptoPotato Exclusive): Use this link to register a new account and receive $600 exclusive welcome offer on Binance (full details).

    LIMITED OFFER for CryptoPotato readers at Bybit: Use this link to register and open a $500 FREE position on any coin!



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous Article31% revenue growth! This top growth stock just keeps powering on
    Next Article The Messy World of Meme Coins Like TRUMP May Not Be Regulated Says SEC Commissioner
    FintechFetch
    • Website

    Related Posts

    Cryptocurrency

    Insider Selloff? Trump Wallets Offload TRUMP Tokens Hours Before US-Iran Clash

    June 22, 2025
    Cryptocurrency

    Trump announces US airstrikes on Iran’s nuclear sites, Bitcoin dumps, then pumps

    June 22, 2025
    Cryptocurrency

    Despite Stablecoin Boom, PayPal’s PYUSD and SocGen’s EURCV Struggle to Gain Traction

    June 22, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Here’s why the Standard Chartered share price jumped 5% on FY results

    February 22, 2025

    Apple Pay Now Available in Vietnam

    April 16, 2025

    MetaWealth Secures European VASP Licence and Shifts Focus to MiCA Approval

    April 29, 2025

    Technical Pathways to Breaking the $3 Barrier

    May 11, 2025

    The Future of UK Payments: A Vision for a Seamless, Secure, and Inclusive National Payments System: By Elias Thomaidis

    March 10, 2025
    Categories
    • Bitcoin News
    • Blockchain
    • Business Startups
    • Credit Cards
    • Cryptocurrency
    • Finance
    • Financial Technology
    • Fintech
    • Stock Market
    Most Popular

    MrBeast Is Raising Money Valuing His Business at $5 Billion

    February 28, 2025

    Bivial AG Expands Global Payment Capabilities with Dedicated CZK & SGD Accounts

    April 9, 2025

    PayU GPO Urges Merchants to Adopt Data-Driven Approach to Payments as E-Commerce Surges

    March 25, 2025
    Our Picks

    Bitcoin Closes Daily Price Below 50MA

    June 22, 2025

    Etraveli Group Selects Mastercard to Improve Its Fintech Arm’s Product, PRECISION

    June 22, 2025

    Using AI in Customer Service? Don’t Make These 4 Mistakes

    June 22, 2025
    Categories
    • Bitcoin News
    • Blockchain
    • Business Startups
    • Credit Cards
    • Cryptocurrency
    • Finance
    • Financial Technology
    • Fintech
    • Stock Market
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us
    Copyright © 2024 Fintechfetch.comAll Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.