Altcoins News

Story: White-Hat Hacker Pulls $2 Million from a Forgotten 1016 ICO Smart Contract

By Evie Vavasseur

1 / 15

How the Recovery Actually Worked. Instead of draining the funds for personal gain — which, let's be honest, would've been the easier…

2 / 15

The Bigger Problem With Old Smart Contracts. The Hong Coin case is probably not a one-off. The early ICO wave, roughly 2016 through 2018,…

3 / 15

What Hong Coin Said — and Didn't Say. The creators haven't released a formal statement about future security measures.

4 / 15

A white-hat hacker just did something most crypto old-timers thought was basically impossible.

5 / 15

The flaw had been sitting there the whole time. The contract's admin function was misconfigured, probably from the day it launched, and nobody caught it.

6 / 15

The hacker didn't just exploit the bug and disappear.

7 / 15

Instead of draining the funds for personal gain — which, let's be honest, would've been the easier path — the hacker guided Hong Coin's creators through the process of exploiting…

8 / 15

No further details about the hacker's identity have come out. The creators of Hong Coin didn't name them.

9 / 15

The recovery let the project reimburse affected investors. That's rare. Genuinely rare. Most ICO-era losses are permanent.

10 / 15

The Hong Coin case is probably not a one-off. The early ICO wave, roughly 2016 through 2018, produced hundreds of smart contracts written before Solidity best practices were well…

11 / 15

See also: Gravity Bridge Down After $5.4 Million Signing Key Breach

12 / 15

It's a strange corner of crypto history. The code is immutable — it can't be patched. If a flaw exists, it exists forever, or until someone does exactly what this hacker did:…

13 / 15

Security audits have gotten significantly more rigorous since then. Firms dedicated entirely to smart contract review now run through codebases line by line before anything goes…

14 / 15

The Hong Coin situation drew attention to exactly that problem. And it probably won't be the last time something like this surfaces.

15 / 15

The creators haven't released a formal statement about future security measures. They haven't said whether they plan to revisit other parts of their infrastructure, bring in an…

The Currency Analytics

Want the full story?