Exploit victim agrees to 10% bounty for return of 5.9 WETH stolen via Payment Processor vulnerability.
Security & Exploits ·
An exploit victim holding 5.935826 WETH has agreed to a 10% bounty for the return of funds stolen through a Payment Processor vulnerability. The victim, communicating from the drained wallet 0xd05EA473eaC0f92c539aF245B4f093f972949EbE, confirmed ownership and stated willingness to accept the recovery terms, having already revoked the malicious approvals to secure the address.
The compromise originated from a single drain transaction, with the victim identifying themselves as one of multiple affected parties. The message indicates coordination may occur through 0xQuit, though the mechanics of that intermediary remain unspecified. The victim's tone suggests acceptance of the recovery process despite the partial loss represented by the bounty structure.
No public details have emerged regarding the broader scope of the exploit—how many wallets were affected, total value at risk, or whether other victims have initiated similar recovery negotiations. The timeline for fund return and the identity of the entity holding or recovering the stolen WETH remain unclear.