Liquid Network hackers demand 10% bounty from Blockstream and threaten to release stolen private key data.
Security & Exploits ·
Threat actors have demanded a 10% bounty from Blockstream in connection with an alleged exploit of the Liquid Network, claiming to possess stolen private key data and threatening its release. The demand represents a variant of the extortion-style bounty in which bad actors extract payment by holding compromised information hostage, distinct from the traditional bug-bounty model where researchers are paid prospectively to uncover vulnerabilities.
Liquid Network is a sidechain connected to Bitcoin, operated by Blockstream. The nature and scope of the claimed breach remain unclear from available reports, as do details about which systems or user accounts were targeted. It is not yet confirmed whether the hackers have actually obtained private keys or whether such data would be recoverable or actionable by Blockstream.
The 10% figure appears calibrated as a negotiating position rather than a fixed demand, and it remains unknown whether Blockstream has engaged with the threat actors, acknowledged the breach publicly, or taken steps to mitigate exposure. No statement from Blockstream has been cited in coverage to date. The incident underscores a growing risk category in crypto infrastructure: the weaponization of data theft in extortion scenarios that exploit organizational incentives to contain reputational damage.