Rogue Developer Suspected in $50M USDC Theft from Crypto Payments Firm Infini

Infini Loses $50M in USDC Through Administrative Exploit by Former Developer

  • Cryptocurrency payment firm Infini lost $50 million in USDC through an administrative exploit.
  • A former contract developer is suspected of maintaining hidden admin privileges after completing project work.
  • The attack was initiated using funds from Tornado Cash mixing service.
  • The exploit involved a contract created in November 2024 to facilitate the unauthorized transfer.
  • The incident highlights the importance of proper access control management in crypto projects.

A former contract developer allegedly exploited administrative privileges to steal $50 million in USD Coin (USDC) from cryptocurrency payment firm Infini, according to security investigators. The incident underscores growing concerns about insider threats in blockchain projects.

- Advertisement -

Blockchain security firm Cyvers reported that the suspect had worked on Infini’s contract development before apparently concealing maintained administrative access after project completion. The attack demonstrates the critical importance of thorough security audits and access management in cryptocurrency projects.

The perpetrator initiated the attack by funding their wallet with 1 Ether from Tornado Cash, a cryptocurrency mixing service known for obscuring transaction origins. They subsequently executed the unauthorized transfer of $49.52 million through a smart contract deployed in November 2024.

This incident follows a pattern of similar insider-related cryptocurrency exploits in recent years. Cryptocurrency mixing services like Tornado Cash have frequently been used in such attacks to obscure the flow of stolen funds, making it challenging for investigators to trace the assets’ movement.

The exploitation method highlights vulnerabilities in project handover procedures within the cryptocurrency industry, where proper revocation of administrative privileges is crucial for security. Security experts recommend implementing multi-signature wallets and regular security audits to prevent such incidents.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Malicious Rust Crates Steal Ethereum, Solana Wallet Keys

Researchers found two malicious Rust packages disguised as a popular library targeting crypto wallet...

BRICS Russia Startups Gain Access to Chinese Investment at Summit

More than 600 investors will attend the upcoming BRICS startup summit in Moscow on...

UAE’s M2 Capital Invests $20M in Ethena’s ENA Token Expansion

M2 Capital Limited, part of UAE-based M2 Holdings, invested $20 million in Ethena’s ENA...

Ethereum Whales Accumulate $862M: Is a Major Price Surge Ahead?

Large Ethereum holders, known as whales, purchased $862 million in ETH within six hours. Ten...

Ohio Approves Crypto Payments for State Fees, Eyes Bitcoin Reserve

Ohio will allow cryptocurrency payments for state fees and services following a unanimous board...
- Advertisement -

Must Read

8 Best Crypto Debit Cards For Spending Your Digital Tokens

What are | How we chose | Best crypto debit cards | Binance Card? | FAQ | Final WordsCrypto debit cards have transformed how...