• Coins MarketCap
    • Coins MarketCap
    • Crypto Calculator
    • Top Gainers and Loser of the day
  • Crypto Exchanges
  • Bitcoin News
  • Crypto News
    • Cryptocurrency
    • Blockchain
    • Finance
    • Investing
    • View all latest Updates regarding crypto
Friday, October 3, 2025
WIREOPEDIA
No Result
View All Result
Contribute!
CONTACT US
  • Home
  • Breaking News
  • World
  • UK
  • US
  • Entertainment
  • Business
  • Technology
  • Defense
  • Health Care
  • Politics
  • Strange
  • Crypto News
WIREOPEDIA
  • Home
  • Breaking News
  • World
  • UK
  • US
  • Entertainment
  • Business
  • Technology
  • Defense
  • Health Care
  • Politics
  • Strange
  • Crypto News
No Result
View All Result
WIREOPEDIA
No Result
View All Result
Home Blockchain

Change Of Heart? Gaming Platform Security Breach Ends With $62M In Crypto Returned

by wireopedia memeber
March 28, 2024
in Blockchain, Crypto, Crypto Market, Cryptocurrency, Finance, Investing, Market
0
74
SHARES
1.2k
VIEWS
Share on FacebookShare on Twitter

In the late hours of Tuesday, the crypto community saw another exploit. Munchables, the Ethereum Layer-2 NFT gaming platform, reported being compromised on an X post.

You might also like

$231K Bitcoin? Citibank Issues Bold Short-Term Crypto Prediction

Samsung taps Coinbase to bring crypto to over 75M Galaxy users in US

Walmart-owned bank app OnePay to add Bitcoin, Ether trading this year

The crypto heist, which momentarily stole over $62 million, took a shocking turn of events after the attacker’s identity opened a Pandora’s box.

Crypto Developer Turns Hacker

Yesterday, Munchables, a gaming platform powered by Blast, suffered a security breach that resulted in the theft of 17,400 ETH, worth around $62.5 million. Immediately after the X announcement, crypto detective ZachXBT revealed the sum stolen and the address where the funds had been sent.

It was later informed that the crypto heist had been an inside job instead of an external one, as one of the project’s developers seemed to be responsible.

Solidity developer 0xQuit shared on X concerning information about Munchable. The developer pointed out that the smart contract was a “dangerously upgradeable proxy with an unverified implementation contract.”

the Munchables exploit has been planned since deploy.

Munchables is a dangerously upgradeable proxy, and it has been upgraded.

Instead of upgrading from a benign implementation to a malicious one, they did the reverse here

1/🧵

— quit.q00t.eth (👀,🦄) (@0xQuit) March 26, 2024

The exploit seemingly wasn’t “nothing complex” as it consisted of asking the contract for the stolen funds. However, it required the attacker to be an authorized party, confirming that the heist was a scheme carried out inside the project.

After a deep dive into the matter, 0xQuit concluded that the attack had been plotted since deployment. Munchable’s developer used the contract’s upgradable nature to “assign himself an enormous ether balance before changing the contract implementation to one that appeared legit.”

The developer “simply withdrew the balance” when the total value locked (TVL) was high enough. DeFiLlama data shows that, before the exploit, Munchables had a TLV of $96.16 million. At writing time, the TVL has plummeted to $34.05 million.

As reported by BlockSec, the funds were sent to a multi-sig wallet. The attacker eventually shared all private keys with the Munchables team. The keys gave access to $62.5 million in ETH, 73 WETH, and the owner key, which contained the rest of the project’s funds. According to Solidity developer’s calculations, the total amount neared $100 million.

The fund is currently in a multisig wallet 0x4D2F75F1cF76C8689b4FDdCF4744A22943c6048C, with the threshold 2/3. Owners are 0xFfE8d74881C29A9942C9D7f7F55aa0d8049C304A, 0xe0C5B8341A0453177F5b0Ec2fcEDc57f6E2112Bc, 0x94103f5554D15F95d9c3A8Fa05A9c79c62eDBD6f https://t.co/K1YDZo5uvK

— BlockSec (@BlockSecTeam) March 27, 2024

Change Of Heart Or Fear Of The Crypto Community?

Unfortunately, crypto exploits, hacks, and scams are common in the industry. Most play out similarly, with hackers taking massive sums and investors looking at their empty pockets.

This time, the incident turned out more thrilling than usual, as the identity of the developer-turned-hacker untangled a web of lies and deception. As ZachXBT suggested, Munchable’s rogue developer was North Korean, seemingly tied to the Lazarus group.

However, the movie doesn’t end there: the blockchain investigator revealed that four different developers hired by Munchables’ team were linked to the exploiter, and it seemed like they were all the same person.

the developers pic.twitter.com/AYMbwduiLS

— a1ex (@a1exxxxxxxxxxx) March 27, 2024

These developers recommended each other for the job and regularly transferred payments to the same two exchange deposit addresses, funding each other wallets. Journalist Laura Shin suggested the possibility of the developers not being the same person but different people working for the same entity, North Korea’s government.

Pixelcraft Studios CEO added that he had done a trial hire with this developer in 2022. During the month the ex-Munchables developer worked for them, he exhibited practices “sketchy af.”

The CEO believes that the North Korean link is possible. Additionally, he revealed that the MO was similar back then, as the developer tried to get “his friend” hired.

An X user highlighted that the developer’s GitHub name was “grudev325,” pointing out that “gru” could be related to Russia’s Federal Agency for Foreign Military Intelligence.

Pixelcrafts’s CEO commented that, at the time, the developer explained that the nickname was born after his love for the character Gru from the Despicable Me movies. Ironically, the character in question is a supervillain who spends most of the movie trying to steal the moon.

didn't even know that was a thing lmeow, this is how he explained it @zachxbt pic.twitter.com/jTMj62GGb2

— coderdan.eth | aavegotchi 👻💊 (@coderdannn) March 27, 2024

Whether he was trying to steal the moon and failed like Gru, the developer ultimately returned the funds without asking for “compensation.” Many users believe that the suspicious “change of heart” results from ZackXBT’s deep dive into the attacker’s web of lies and the threats made.

This thriller ends with the crypto investigator’s reply to a now-deleted post. In his reply, the detective threatened to destroy the developer and all his “other North Korean devs hard on-chain your country has another blackout.”

Ethereum, ETH, ETHUSDT, Crypto

Read Entire Article
Tags: BitcoinistBlockchainCoin SurgesCryptocurrenciesMarket StoriesTrading
Share30Tweet19

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Related News

Bitcoin Price To $122K Next Month? Research Predicts Big Move

January 23, 2025

Bitcoin Price Alert: Bitfinex Forecasts 20% Crash Post Rate Cut Decision

September 3, 2024
The Rise of Appchains? Dapps Are Flipping Blockchains in Revenue

The Rise of Appchains? Dapps Are Flipping Blockchains in Revenue

April 16, 2025

Browse by Category

  • Blockchain
  • Breaking News
  • Business
  • Crypto
  • Crypto Market
  • Cryptocurrency
  • Defense
  • Entertainment
  • Finance
  • Health Care
  • Investing
  • Market
  • Politics
  • Strange
  • Technology
  • UK News
  • US News
  • World
WIREOPEDIA

Wireopedia is an automated news feed. The Wireopedia AI pulls from sources with different views so you can see the various sides of different arguments and make a decision for yourself. Wireopedia will be firmly committed to the public interest and democratic values.

Privacy Policy     Terms and Conditions

CATEGORIES

  • Blockchain
  • Breaking News
  • Business
  • Crypto
  • Crypto Market
  • Cryptocurrency
  • Defense
  • Entertainment
  • Finance
  • Health Care
  • Investing
  • Market
  • Politics
  • Strange
  • Technology
  • UK News
  • US News
  • World

BROWSE BY TAG

Bitcoin Bitcoinist Bitcoinmagazine Blockchain Breaking News Business BuzzFeed Celebrity News Coin Surges Cointelegraph Cryptocurrencies Cryptoslate Defense Entertainment Health Care insidebitcoins Market Stories newsbtc Politico Skynews Strange Technology Trading UK US World

RECENT POSTS

  • Cori Bush launches comeback bid for Missouri seat
  • Will Trump-style billionaire return to power? What the Czech election means for Ukraine
  • Germany should ‘get power to shoot down drones’ after Munich incident, official says
  • Former minister’s father-in-law present at ‘chilling’ Manchester synagogue attack
  • $231K Bitcoin? Citibank Issues Bold Short-Term Crypto Prediction

© 2024 WIREOPEDIA - All right reserved.

No Result
View All Result
  • Home
  • Breaking News
  • World
  • UK
  • US
  • Entertainment
  • Business
  • Technology
  • Defense
  • Health Care
  • Politics
  • Strange
  • Crypto News
  • Contribute!

© 2024 WIREOPEDIA - All right reserved.

  • bitcoinBitcoin(BTC)$120,276.000.57%
  • ethereumEthereum(ETH)$4,461.760.98%
  • rippleXRP(XRP)$3.031.24%
  • tetherTether(USDT)$1.000.01%
  • binancecoinBNB(BNB)$1,134.007.41%
  • solanaSolana(SOL)$229.421.25%
  • usd-coinUSDC(USDC)$1.000.00%
  • dogecoinDogecoin(DOGE)$0.2559510.33%
  • staked-etherLido Staked Ether(STETH)$4,463.691.11%
  • tronTRON(TRX)$0.3425880.20%
  • cardanoCardano(ADA)$0.860.29%
  • wrapped-bitcoinWrapped Bitcoin(WBTC)$120,213.000.58%
  • chainlinkChainlink(LINK)$22.26-0.57%
  • stellarStellar(XLM)$0.402804-0.11%
  • avalanche-2Avalanche(AVAX)$30.31-0.11%
  • bitcoin-cashBitcoin Cash(BCH)$600.161.53%
  • litecoinLitecoin(LTC)$118.06-0.61%
  • crypto-com-chainCronos(CRO)$0.211287-3.57%
  • shiba-inuShiba Inu(SHIB)$0.000012-0.85%
  • polkadotPolkadot(DOT)$4.26-0.68%
  • uniswapUniswap(UNI)$8.230.47%
  • daiDai(DAI)$1.000.02%
  • okbOKB(OKB)$192.28-0.30%
  • nearNEAR Protocol(NEAR)$2.941.85%
  • vechainVeChain(VET)$0.023396-0.48%
  • cosmosCosmos Hub(ATOM)$4.23-0.84%
  • algorandAlgorand(ALGO)$0.222792-0.67%
  • filecoinFilecoin(FIL)$2.34-0.45%
  • elrond-erd-2MultiversX(EGLD)$14.051.00%
  • axie-infinityAxie Infinity(AXS)$2.260.80%