Cryptocurrency [loss] $48,630

Tweet by br1an.eth

2024-06-05 [vendor] br1an.eth private key compromise [chain] cosmos
Primary Source ↗
Financial Loss $48,630 (48,630 USD)
Blockchain(s) Cosmos

Incident Details

A blockchain developer posted on Twitter that he had lost almost $50,000 after his cryptocurrency wallet was drained. He explained that he had been working on a software project on Github in a private repository that contained his wallet’s private key. In order to apply for a funding grant from the Optimism project, he had to make the repository public. However, he forgot that the secret key was in the repository.Generally, it is very bad practice to store sensitive secrets in Github, even when projects are set to private.“Got drained of everything,” he wrote on Twitter. A commenter asked how long it took for the attacker to steal the money after the private key became publicly visible. “2 min”, he replied.

Total loss estimated at $48,630.

Technical Details

Initial Attack Vector
Smart contract exploit / hack
Vendor / Product
br1an.eth private key compromise

Timeline

  1. 2024-06-05 Breach occurred
  2. 2024-06-05 Publicly disclosed