Data leak [loss] $980,000

"Crypto lender Shezmu recovers hacked funds through negotiation"

2024-09-20 [vendor] Shezmu
Primary Source ↗
Financial Loss $980,000 (980,000 USD)
Recovered $3.9M

Incident Details

A crypto yield platform called Shezmu suffered a loss of around $4.9 million in $ShezUSD after an attacker exploited a flaw that allowed anyone to mint collateral, which they could then use to borrow ShezUSD. These tokens were relatively illiquid, however, so the total amount the attacker could have obtained was likely considerably less.Shortly after the attack, Shezmu offered a 10% “bounty” for the return of the funds. The attacker responded that they would only consider a 20% bounty. Shezmu agreed to the terms, and announced to their followers that they had achieved a recovery from the “white hat” hacker.

Total loss estimated at $980,000.

Technical Details

Initial Attack Vector
Smart contract exploit / hack
Vendor / Product
Shezmu

Timeline

  1. 2024-09-20 Breach occurred
  2. 2024-09-20 Publicly disclosed