Gate News: On March 16, white hat hacker f4lc0n disclosed on the X platform that he discovered a critical security vulnerability in the Injective protocol, which could lead to the direct withdrawal of over $500 million in on-chain assets. f4lc0n stated that this vulnerability allows any user to empty any account on the chain without special permissions. After submitting the report through Immunefi, the Injective team initiated a mainnet upgrade vote the next day to fix the issue. However, the project only offered him a $50,000 reward, far below the $500,000 maximum standard for critical vulnerabilities in their bounty program. f4lc0n said that within three months of submitting the report, the Injective team was unresponsive, and the $50,000 reward has not yet been paid. Currently, f4lc0n has challenged the reward amount and announced that he will allocate 10% of future bug bounty income to continue publicizing this matter until Injective pays according to the standard.
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Related Articles
Balancer Hacker Converts 7,000 ETH to 204.7 BTC via THORChain Today
Gate News message, April 24 — The hacker who stole approximately $98 million in assets from Balancer in November 2025 has begun converting ETH to BTC through the cross-chain protocol THORChain. Today, the attacker exchanged 7,000 ETH for 204.7 BTC, valued at approximately $15.88 million, with
GateNews42m ago
Lido Proposes Allocating 2,500 Staked ETH to Close Kelp Exploit Shortfall
Gate News message, April 24 — Lido Labs is seeking DAO approval to allocate up to 2,500 staked Ethereum (approximately $5.8 million) to reduce the rsETH deficit caused by the recent Kelp exploit, according to a proposal posted Thursday. Kelp DAO's rsETH bridge suffered a LayerZero-based attack last
GateNews2h ago
Slow Mist Warns of MioLab, Malware-as-a-Service Platform Targeting Crypto Assets and Hardware Wallets on macOS
Gate News message, April 24 — Slow Mist Chief Information Security Officer 23pds disclosed on X that MioLab is a highly commercialized macOS malware-as-a-service (MaaS) platform actively promoted on Russian underground forums, offering C2 control, API integration, and customized attack
GateNews2h ago
U.S. Special Operations Forces Chief Warrant Officer Arrested: Used Classified Intelligence to Bet on Maduro on Polymarket, Profited $400k
The U.S. Department of Justice in the Southern District of New York has indicted U.S. Army Special Forces officer chief Gannon Ken Van Dyke, alleging that he used classified information to bet on Polymarket on the outcome of Maduro’s arrest, earning approximately $409,881 (13 transactions, 2025-12-27 to 2026-1-26). The charges include illegal use of confidential information, theft of nonpublic information, commodity transaction fraud, wire fraud, and illegal money transactions, among others. It is described as the first federal prosecution centered on insider trading and arbitrage with a prediction market, which may affect future regulatory directions.
ChainNewsAbmedia3h ago
Spanish Police Seize €400K in Crypto from Illegal Manga Piracy Platform, 3 Arrested
Gate News message, April 24 — Spanish police in Almería seized two cryptocurrency cold wallets containing approximately €400,000 during a raid on the country's largest illegal manga distribution platform. Three individuals were arrested in connection with the operation, which was initiated
GateNews4h ago