DeFi lending protocol Sturdy Finance offers $100,000 bounty to its attacker

Quick Take

  • Sturdy Finance offered a $100,000 bounty to the attacker who drained 442 ether from the platform.
  • The team sent an on-chain message to the attacker’s address that offered the bounty.

Decentralized lending protocol Sturdy Finance offered a $100,000 bounty to the attacker who siphoned 442 ether ($800,000) from the platform on Monday.

Sam Forman, the project’s founder, confirmed in a tweet published earlier today that his team had sent an on-chain message to the unknown attacker’s address. This message offers the perpetrator a bounty of $100,000 to return the stolen funds to a specified address owned by Sturdy, adding that the team will “advocate for no criminal charges” if the funds are returned.

“We are willing to offer you $100k as a bounty, and will not pursue you further if you send the remaining funds to 0x4e...89F5,” read Forman's tweet, suggesting a potential reprieve for the attacker if they choose to comply.

THE SCOOP

Keep up with the latest news, trends, charts and views on crypto and DeFi with a new biweekly newsletter from The Block's Frank Chaparro

By signing-up you agree to our Terms of Service and Privacy Policy
By signing-up you agree to our Terms of Service and Privacy Policy

This offer follows a security incident in which an attacker exploited a reentrancy vulnerability in one of Sturdy Finance’s liquidity pools. The vulnerability allowed the hacker to manipulate a price oracle and eventually siphon off funds.

In response to the attack, Sturdy Finance promptly suspended all of its markets to prevent further potential losses. The team reassured users that no other funds were at risk and that the platform’s security would be thoroughly investigated.


© 2023 The Block. All Rights Reserved. This article is provided for informational purposes only. It is not offered or intended to be used as legal, tax, investment, financial, or other advice.

About Author

Vishal Chawla is The Block’s crypto ecosystems editor and has spent over six years covering tech protocols, cybersecurity, artificial intelligence and cloud computing. Vishal likes to delve deep into blockchain intricacies to ensure readers are well-informed about the continuously evolving crypto landscape. He is also a staunch advocate for rigorous security practices in the space. Before joining The Block, Vishal held positions at IDG ComputerWorld, CIO, and Crypto Briefing. He can be reached on Twitter at @vishal4c and via email at [email protected]

Editor

To contact the editor of this story:
Tim Copeland at
[email protected]