financetom
Cryptocurrency
financetom
/
Cryptocurrency
/
zkLend Exploited for $4.9M in ETH, Team Appeals to Hacker with 10% Offer
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
zkLend Exploited for $4.9M in ETH, Team Appeals to Hacker with 10% Offer
Feb 12, 2025 12:13 PM

zkLend, a decentralized finance lending protocol on Starknet, has suffered a major security breach. As a result, it lost approximately 3,700 ETH, worth around $4.9 million.

The exploit has forced the platform to pause withdrawals while investigations continue.

Response to the Exploit

zkLend confirmed the incident in a series of X posts on February 11, stating that millions worth of cryptocurrency had been drained from its smart contracts.

We are aware of the ongoing security incident on zkLend. The team is now investigating and will provide an update when possible, the protocol stated. Hours later, they advised users to refrain from depositing or repaying funds while they worked to determine the root cause. They also halted all withdrawals to prevent further losses.

Following the attack, zkLend sought the services of several organizations, including StarkWare, ZeroShadow, Binance Security, and Hypernative Labs, to help track the hacker and recover the stolen funds. It also promised to share a more detailed analysis as soon as a post-mortem was completed.

The exploit affected several DeFi strategies linked to zkLend, including STRKFarm’s STRK, USDC, and ETH Sensei strategies, putting withdrawals on ice until the situation gets resolved.

According to blockchain security firm QuillAudits, the perpetrator, identified by the address 0x64…9109, first targeted a specific contract, 0x04…3b26, before siphoning the funds. They then moved the stolen assets to Ethereum, funneling it through the Railgun crypto mixer, a privacy-focused tool often used to obscure transaction trails.

On-chain data shared by the security platform showed several transactions leading to laundering activity, with 706 ETH, valued at about $1.8 million, already sent through the mixer.

Whitehat Bounty Offer

In a last-ditch effort to recover the funds, zkLend issued a direct message to the hacker, offering a 10% whitehat bounty. This would mean that the attacker would keep nearly 400 ETH worth more than one million dollars if the remaining 3,300 ETH were returned by 00:00 UTC on Valentine’s Day. The team also stressed that the offer is legally binding and releases the exploiter “from any and all liability” regarding the heist.

It isn’t the first time protocols on the wrong end of exploits have tried negotiating with bad actors to have funds returned. In March last year, WOOFI lost $8.5 million in a flash loan attack, and subsequently offered a percentage of the loot as a whitehat bounty.

Similarly, almost half a year before that, North Korean hackers stole more than $70 million from the CoinEx crypto exchanges hot wallets, leading the platform to offer them what it termed a “generous bug bounty.”

Sadly, in both cases, no funds were ever returned despite the bounty pleas.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Ripple (XRP) Price Predictions, Cardano (ADA) Targets, and More: Bits Recap Feb 18
Ripple (XRP) Price Predictions, Cardano (ADA) Targets, and More: Bits Recap Feb 18
Feb 18, 2025
TL;DR XRP’s potential spot ETF approval has sparked hope, with analysts highlighting optimistic signals that could drive the price above $3. ADA’s recent gains, supported by Grayscale’s ETF application, have fueled bold predictions of a $10 price by 2025 despite challenges. BTC is in the red today (February 18), but some industry leaders think its future looks promising as growing...
Pump.fun Co
Pump.fun Co
Feb 18, 2025
Alon Cohen, co-founder of popular meme coin creation platform Pump.fun, has condemned the controversy surrounding the Javier Milei-endorsed LIBRA token and called for reforms. The situation escalated as the Argentine President denied promoting the meme coin, despite his now-deleted post triggering its meteoric rise, while trader Hayden Davis admitted to holding $100 million from the token’s launch. A Call for...
Binance Listing PI Token Soon? Community Has the Final Say
Binance Listing PI Token Soon? Community Has the Final Say
Feb 18, 2025
TL;DR Pi Network’s upcoming Open Network launch has sparked speculation, with major exchanges preparing to embrace the token and Binance considering a listing through a community vote. While some predict Pi could reach $314, its large supply makes such valuations unlikely, as it would require a market capitalization nearly ten times the entire crypto market’s current value. Will Binance Join...
These Altcoins Extend Steep Corrections as Bitcoin Slips Toward $95K (Market Watch)
These Altcoins Extend Steep Corrections as Bitcoin Slips Toward $95K (Market Watch)
Feb 18, 2025
Bitcoins underwhelming price performance continues as the asset dropped to a 6-day low of just over $95,000 earlier today. At the same time, many altcoins have continued to chart substantial losses, led by Solana, Chainlink, Avalanche, HBAR, and SUI. BTCs Losses The primary cryptocurrency slumped hard last Wednesday after the release of the US CPI numbers for January and dumped...
Copyright 2023-2025 - www.financetom.com All Rights Reserved