Exploit victim posts on-chain message naming attacker addresses and offering 90% fund recovery within 72 hours, citing German law enforcement seizure of funding source exchange.
Security & Exploits ·
A victim of a smart contract exploit posted an on-chain message naming addresses associated with the attack and offering the attacker a settlement. The message, posted to Ethereum mainnet, claims the attacker exploited a contract on March 11, 2026, and identifies four wallet addresses allegedly linked to the scheme, including the primary EOA, orchestrator, scaffold contract, and funding source.
The victim cited German law enforcement action as leverage, stating that the BKA seized an exchange on April 30, 2025, and holds 8TB of transaction data connecting the funding wallet to a real identity. The message indicates the victim has reported all identified addresses to multiple protocols and exchanges, asserting that cashing out is no longer possible. The settlement offer proposes returning 90 percent of the stolen funds to a specified address in exchange for keeping 10 percent as a bounty, with a 72-hour deadline before the victim pursues recovery through law enforcement alone.
What remains unclear is whether the attacker has responded, whether the claimed seizure of exchange data has materialized in any legal proceeding, and whether the victim's assertion about exchange lockdowns reflects actual coordination or is a bluff. The authenticity of the German law enforcement claim and the viability of the settlement proposal are not independently verified.