Cryptocurrency [loss] $250,000

Thread by CertiK Alert

2022-06-04 [vendor] Bored Apes Discord compromise [chain] ethereum
Primary Source ↗
Financial Loss $250,000 (250,000 USD)
Blockchain(s) Ethereum

Incident Details

Scammers were able to compromise the Discord account of a Bored Apes community manager, then use it to post an announcement of an “exclusive giveaway” to anyone who held a Bored Ape, Mutant Ape, or Otherside NFT. When users went to mint their free NFT, the scammers were able to steal their pricey NFTs. The scammer quickly flipped the stolen NFTs for a total of around 200 ETH (about $360,000), then began transferring funds to Tornado Cash.The Bored Apes Discord was also compromised on April 1, along with those of several other big-name NFT projects.

Total loss estimated at $250,000.

Technical Details

Initial Attack Vector
Smart contract exploit / hack
Vendor / Product
Bored Apes Discord compromise

Timeline

  1. 2022-06-04 Breach occurred
  2. 2022-06-04 Publicly disclosed