{"id":24234,"date":"2025-05-23T14:33:14","date_gmt":"2025-05-23T11:33:14","guid":{"rendered":"https:\/\/forklog.com\/en\/cetus-offers-hacker-6-million-for-return-of-20920-eth\/"},"modified":"2025-05-23T14:33:14","modified_gmt":"2025-05-23T11:33:14","slug":"cetus-offers-hacker-6-million-for-return-of-20920-eth","status":"publish","type":"post","link":"https:\/\/forklog.com\/en\/cetus-offers-hacker-6-million-for-return-of-20920-eth\/","title":{"rendered":"Cetus Offers Hacker $6 Million for Return of 20,920 ETH"},"content":{"rendered":"<p>The team behind the decentralized exchange Cetus has proposed a $6 million reward to a hacker for the return of 20,920 ETH (approximately $55.3 million at the current rate), stolen in a <a href=\"https:\/\/forklog.com\/en\/news\/hackers-drain-11m-from-cetus-pool-on-sui\">breach<\/a>.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">? Dear Sui community, thank you for your patience while our team works on the incident investigation and resolution. <\/p>\n<p>Since taking the actions indicated in our previous announcement, we have also done the following:<\/p>\n<p>1. We engaged the broader ecosystem, Sui team, and related\u2026 <a href=\"https:\/\/t.co\/Gs1EWXZ6AD\">https:\/\/t.co\/Gs1EWXZ6AD<\/a><\/p>\n<p>\u2014 Cetus? (@CetusProtocol) <a href=\"https:\/\/twitter.com\/CetusProtocol\/status\/1925653859143172608?ref_src=twsrc%5Etfw\">May 22, 2025<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>On May 22, the perpetrator exploited a vulnerability in the platform&#8217;s liquidity pool smart contracts. Part of the stolen assets was converted into USDC and then into Ethereum.  <\/p>\n<p>Cetus and the analytics firm Inca Digital have offered the hacker to keep 2,324 ETH ($6 million at the current rate) as a reward, provided the remaining funds are returned. If the hacker agrees, the project promised not to involve law enforcement or disclose the hacker&#8217;s identity.  <\/p>\n<p>Sui validators have blocked transactions from wallets associated with the breach. Cetus stated that $162 million of the compromised funds have been temporarily frozen to protect the ecosystem, and the vulnerability has been addressed.  <\/p>\n<p>The actions of Sui validators have sparked criticism within the community. Cyber Capital founder Justin Bons remarked that the transaction blocking confirms the network&#8217;s centralization: 114 validators are controlled by the founders, who own the majority of SUI tokens.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"en\" dir=\"ltr\">SUI&#8217;s validators are colluding to CENSOR the hacker&#8217;s TXs right now!<\/p>\n<p>Does that make SUI centralized? The short answer is YES; what matters more is why?<\/p>\n<p>The &#8220;founders&#8221; own the majority of supply &#038; there are only 114 validators!<\/p>\n<p>Change only happens when we all understand the why<\/p>\n<p>\u2014 Justin Bons (@Justin_Bons) <a href=\"https:\/\/twitter.com\/Justin_Bons\/status\/1925737883777773913?ref_src=twsrc%5Etfw\">May 23, 2025<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>According to a user known as 0xTodd, Sui developers have implemented a &#8220;whitelist&#8221; feature that allows certain wallets to bypass blocks.<\/p>\n<blockquote class=\"twitter-tweet\">\n<p lang=\"zh\" dir=\"ltr\">\u5173\u4e8e SUI \u8fd9\u4e00\u624b\u51bb\u7ed3\u7684\u64cd\u4f5c\uff0c\u6211\u597d\u5947\u7814\u7a76\u4e86\u9ed1\u540d\u5355\u5177\u4f53\u662f\u600e\u4e48\u5b9e\u73b0\u7684\uff0c\u4ee5\u53ca\u6628\u5929\u66f4\u65b0\u7684\u767d\u540d\u5355\u8865\u4e01\u53c8\u8981\u5e72\u561b\uff1f<\/p>\n<p>1. \u51bb\u7ed3\u5982\u4f55\u5b9e\u73b0\uff1f<\/p>\n<p>\u9996\u5148\u662f SUI \u8fd9\u6761\u94fe\u4e00\u76f4\u5c31\u6709\u4e2a\u529f\u80fd\uff0c\u53eb\u505a Deny List (\u62d2\u7edd\u670d\u52a1\u7684\u9ed1\u540d\u5355)\uff0c\u51e1\u662f\u8fdb\u4e86\u9ed1\u540d\u5355\u7684\u5730\u5740\uff0c\u8282\u70b9\u90fd\u4e0d\u6267\u884c\u76f8\u5173\u7684\u4ea4\u6613\u3002\u2026 <a href=\"https:\/\/t.co\/DuzoVYzRqT\">https:\/\/t.co\/DuzoVYzRqT<\/a> <a href=\"https:\/\/t.co\/cg7hTQ4fXS\">pic.twitter.com\/cg7hTQ4fXS<\/a><\/p>\n<p>\u2014 0xTodd??? (@0x_Todd) <a href=\"https:\/\/twitter.com\/0x_Todd\/status\/1925819908434059659?ref_src=twsrc%5Etfw\">May 23, 2025<\/a><\/p><\/blockquote>\n<p> <script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<p>He suggests this will simplify the return of funds if the hacker agrees to the deal. At the time of writing, the hacker has not responded to the offer.<\/p>\n<p>Back in May 22, online sleuth ZachXBT <a href=\"https:\/\/forklog.com\/en\/news\/hacker-linked-to-300-million-coinbase-theft-swaps-45-million-via-thorchain\">reported<\/a> that an unknown individual involved in the <a href=\"https:\/\/forklog.com\/en\/news\/fraudsters-steal-45-million-from-coinbase-clients-in-a-week\">theft of $300 million<\/a> from Coinbase users exchanged $42.5 million in Bitcoin for Ethereum via Thorchain.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>The team behind the decentralized exchange Cetus has proposed a $6 million reward to a hacker for the return of 20,920 ETH (approximately $55.3 million at the current rate), stolen in a breach. ? Dear Sui community, thank you for your patience while our team works on the incident investigation and resolution. Since taking the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":24233,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"select":"","news_style_id":"","cryptorium_level":"","_short_excerpt_text":"","creation_source":"","_metatest_mainpost_news_update":false,"footnotes":""},"categories":[3],"tags":[44,787,1651],"class_list":["post-24234","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-news-and-analysis","tag-cybercrime","tag-dex","tag-sui-sui"],"aioseo_notices":[],"amp_enabled":true,"views":"30","promo_type":"","layout_type":"","short_excerpt":"","is_update":"","_links":{"self":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/24234","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/comments?post=24234"}],"version-history":[{"count":0,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/posts\/24234\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media\/24233"}],"wp:attachment":[{"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/media?parent=24234"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/categories?post=24234"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/forklog.com\/en\/wp-json\/wp\/v2\/tags?post=24234"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}