• Home
  • Podcast
  • For Beginners
    • Beginner’s Guide
    • Cryptocurrency Scam
  • Latest Current Affairs
    • Product Technologies
    • Applications
    • Policies
    • Opinions
    • Events
    • CBDC
  • Featured Topics
  • Investment Finance
    • Bitcoin
    • Ethereum
    • Trading Market
    • NFT
    • DeFi
    • GameFi
    • CeFi
  • All Posts
Hot News

Meta Labels Cryptocurrency Content as “Fraud,” Resulting in Account Suspensions for Several Crypto KOLs

Jun. 18, 2025

ZachXBT: Politicians Leading the Pinnacle of Crypto Crime, Where Hacking is More Profitable than Serious Development

Jun. 18, 2025

Iran’s Banking System and Cryptocurrency Exchanges Completely Paralyzed! Can Holding Bitcoin Serve as a Hedge in the Event of an Information War in the Taiwan Strait?

Jun. 18, 2025
Facebook X (Twitter) Instagram
DecentronistDecentronist
  • Home
  • Podcast
  • For Beginners
    • Beginner’s Guide
    • Cryptocurrency Scam
  • Latest Current Affairs
    • Product Technologies
    • Applications
    • Policies
    • Opinions
    • Events
    • CBDC
  • Featured Topics
  • Investment Finance
    • Bitcoin
    • Ethereum
    • Trading Market
    • NFT
    • DeFi
    • GameFi
    • CeFi
  • All Posts
Facebook X (Twitter) Instagram
DecentronistDecentronist
Home » Kraken Exposes Vulnerability Resulting in 3 Million USD Ransom by White Hat Hackers Certik Faces Krakens Menace
Investment Finance

Kraken Exposes Vulnerability Resulting in 3 Million USD Ransom by White Hat Hackers Certik Faces Krakens Menace

Jun. 19, 2024No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
Kraken Exposes Vulnerability Resulting in 3 Million USD Ransom by White Hat Hackers Certik Faces Krakens Menace
Kraken Exposes Vulnerability Resulting in 3 Million USD Ransom by White Hat Hackers Certik Faces Krakens Menace
Share
Facebook Twitter LinkedIn Pinterest Email

The well-known US cryptocurrency exchange Kraken recently experienced a major security vulnerability, resulting in the theft of at least $3 million worth of digital assets. However, Kraken emphasizes that user funds were not compromised.

Contents:
Toggle
A research team holds $3 million in Kraken assets
Exploited vulnerability leads to $3 million in funds being stolen
User funds remain unaffected
Kraken’s response: This is not white-hat hacking behavior
Security team Certik counterattacks: Facing threats from Kraken
Kraken’s major security vulnerability
Forgery of transactions and unauthorized withdrawals
Kraken’s response and subsequent actions

Kraken announced that a research team discovered a major security vulnerability in the exchange, resulting in the team holding $3 million worth of digital assets. This vulnerability was initially discovered on June 9th by an anonymous self-proclaimed “security researcher” who then notified Kraken.

However, Kraken’s Chief Security Officer, Nick Percoco, stated that the two accounts associated with the researcher exploited this vulnerability and withdrew over $3 million in digital assets. Percoco said, “They requested a call with our business team and refused to return any funds until we provided an estimate of the potential loss caused by the vulnerability. This is not white-hat hacking behavior; it’s extortion!”

Kraken emphasizes that the stolen cryptocurrencies were taken from Kraken’s own treasury and that user funds were not compromised.

In this incident, one of the three Kraken accounts related to the vulnerability had undergone Know Your Customer (KYC) verification. The owner of this account claimed to be a security researcher, but their identity has not been disclosed. The researcher initially demonstrated the vulnerability by making a $4 cryptocurrency transfer, which was sufficient to qualify for a “substantial reward” from Kraken’s bug bounty program.

However, this researcher disclosed the vulnerability to the other two accounts, which wrongfully withdrew nearly $3 million. Nick Percoco, Kraken’s Chief Security Officer, stated, “To be transparent, we’re disclosing this vulnerability to the industry today. We asked these ‘white-hat hackers’ to return what they stole from us and were accused of being unreasonable and unprofessional. Unbelievable.”

The security team CertiK appears to be at the center of this dispute and has also accused Kraken of threatening them.

According to CertiK, the investigation began with a significant discovery regarding Kraken’s deposit system. CertiK’s team found that the system could not differentiate between different internal transfer statuses. This prompted a comprehensive examination of three key questions: Can malicious actors forge a deposit transaction to a Kraken account? Can malicious actors withdraw forged funds? What risk controls and asset protection measures could be triggered by large withdrawal requests?

The investigation revealed shocking results. Several million dollars could be fraudulently deposited into any Kraken account. More concerning is that over $1 million worth of forged cryptocurrencies could be withdrawn from the account and converted into legitimate digital assets. No alarms were triggered during multiple days of testing. Kraken only took action and locked the testing accounts several days after CertiK formally reported the incident.

Upon receiving CertiK’s report, Kraken’s security team classified the issue as “critical,” the highest severity level. While the initial discussions regarding identifying and fixing the vulnerability appeared successful, the situation quickly deteriorated. Kraken’s Security Operations team threatened individual CertiK employees, demanding the return of an incorrect amount of cryptocurrency within an unreasonable timeframe and without providing any repayment address.

CertiK urges Kraken to cease its intimidation of white-hat hackers and emphasizes the importance of collaboration in addressing security risks and protecting the future of decentralized finance.

(
Cybersecurity company Certik blackmails and steals coins? Kraken is furious, online comments: Already notorious
)
Kraken

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

In 2025, the Korean Won Ranks Second in Cryptocurrency Trading After the US Dollar: One-Third of South Korean Adults Hold Cryptocurrency, with Legalization of ETFs Further Supporting Growth

Jun. 18, 2025

Coinbase Plans to Launch Tokenized Stocks, Emerging as the Blockchain Version of Robinhood

Jun. 18, 2025

Financial Secretary Paul Chan: Hong Kong’s Stock Market Recovers, Positioning the City to Become the World’s Largest Cross-Border Asset Management Hub

Jun. 17, 2025

Coinbase Sponsors Trump’s Parade, Investors Withdraw Funds, and Netizens Express Outrage: Violating Political Neutrality

Jun. 17, 2025

Presidential Endorsements from Various Countries? Concerns Raised Over Binance Alpha as the “Next Collapse Coin” in the 99% Dominated AB Blockchain

Jun. 16, 2025

Stablecoin Adoption Benefits Mastercard and Visa, Analysts Suggest Now is a Good Time to Buy the Dip

Jun. 15, 2025

Leave A Reply Cancel Reply

Top Posts

Decoding Cryptography: It’s Actually Easier to Grasp Than You Think!

Aug. 3, 2021

Insider’s Guide to CoinMarketCap: What Veteran Cryptocurrency Enthusiasts Don’t Know

Sep. 25, 2021

NFT Unveiled: A Comprehensive Guide to 6 Prominent Categories of NFTs

Oct. 26, 2022
Don't Miss

Meta Labels Cryptocurrency Content as “Fraud,” Resulting in Account Suspensions for Several Crypto KOLs

Jun. 18, 2025

《Fraud Crime Prevention Regulations》, also known as the “Anti-Fraud Special Law”, was implemente…

ZachXBT: Politicians Leading the Pinnacle of Crypto Crime, Where Hacking is More Profitable than Serious Development

Jun. 18, 2025

Iran’s Banking System and Cryptocurrency Exchanges Completely Paralyzed! Can Holding Bitcoin Serve as a Hedge in the Event of an Information War in the Taiwan Strait?

Jun. 18, 2025

Can AI-Generated Fake Videos Teach You Wealth Freedom? Japanese Company Unveils Latest Technology to Identify Fake Animations Created by AI

Jun. 18, 2025
Stay In Touch
  • Facebook
  • YouTube
  • TikTok
  • WhatsApp
  • Twitter
  • Instagram
Latest Reviews
Popular

Decoding Cryptography: It’s Actually Easier to Grasp Than You Think!

Aug. 3, 2021

Insider’s Guide to CoinMarketCap: What Veteran Cryptocurrency Enthusiasts Don’t Know

Sep. 25, 2021

NFT Unveiled: A Comprehensive Guide to 6 Prominent Categories of NFTs

Oct. 26, 2022
Our selection

Meta Labels Cryptocurrency Content as “Fraud,” Resulting in Account Suspensions for Several Crypto KOLs

Jun. 18, 2025

ZachXBT: Politicians Leading the Pinnacle of Crypto Crime, Where Hacking is More Profitable than Serious Development

Jun. 18, 2025

Iran’s Banking System and Cryptocurrency Exchanges Completely Paralyzed! Can Holding Bitcoin Serve as a Hedge in the Event of an Information War in the Taiwan Strait?

Jun. 18, 2025
Copyright © 2025 Decentronist. All Rights Reserved.
  • Home
  • Podcast
  • For Beginners
    • Beginner’s Guide
    • Cryptocurrency Scam
  • Latest Current Affairs
    • Product Technologies
    • Applications
    • Policies
    • Opinions
    • Events
    • CBDC
  • Featured Topics
  • Investment Finance
    • Bitcoin
    • Ethereum
    • Trading Market
    • NFT
    • DeFi
    • GameFi
    • CeFi
  • All Posts

Type above and press Enter to search. Press Esc to cancel.