
In late September, the exchange HTX (Huobi) was hacked and 4,999 ETH were hacked. Sun Yuchen stated that he accepted the "small loss" of nearly 8 million Mg and was willing to compensate in full. Today (10/7), data analysis account Lookonchain observed that the hacker has returned 4,999 ETH and is willing to accept the vulnerability bounty.
HTX Global Hacker just returned the stolen funds of 4,999 $ETH ($8.2M). @justinsuntronhttps://t.co/fIxrm01a4zhttps://t.co/gHM0Yjqlqs pic.twitter.com/zX1mdDsRpi
— Lookonchain (@lookonchain) October 7, 2023
The hacker left a reply in broken English and got the bug bounty
This hacking incident was full of doubts from the beginning. HTX received the warning very early, but did not announce the news to users immediately. Just use the block message to shout to the hacker and say that you can fully bear the loss.
At that time, HTX left a message: "We have confirmed your true identity. Please return the funds to 0x18709E89BD403F470088aBDAcEbE86CC60dda12e. We will provide you with a 5% white hat bonus. This offer is valid for 7 days and ends on October 2, 2023. date. If you do not return the funds before the deadline, we will request the judicial authorities to intervene." (Block Message)
After the deadline for HTX’s designation, HTX did not announce any information on the involvement of relevant judicial authorities; however, the hacker obediently paid back the money and did not even take the 5% white hat bonus in advance.
The hacker only left a message in English to ask for the reward:
「Received your message.white hat bonus to 0x1Fc8674A51D6b97C968BE384337519CE7003152B .your system hot wallet private key leak, you should change system hot wallet address and reduce the system hot wallet rate.」
Among them, "your system hot wallet private key leak", "system hot wallet address", and "system hot wallet rate" all use multiple nouns to express them, and lack an article to make the semantic meaning natural. They are not natural English usage. I don’t know if it’s because I’m being cryptic or because I’m a non-native English speaker.
This article HTX hacker paid back the money! Reply in English and get the bug bounty first appeared on Lian News ABMedia.
