Rogue Developer Suspected in $50M USDC Theft from Crypto Payments Firm Infini

Infini Loses $50M in USDC Through Administrative Exploit by Former Developer

  • Cryptocurrency payment firm Infini lost $50 million in USDC through an administrative exploit.
  • A former contract developer is suspected of maintaining hidden admin privileges after completing project work.
  • The attack was initiated using funds from Tornado Cash mixing service.
  • The exploit involved a contract created in November 2024 to facilitate the unauthorized transfer.
  • The incident highlights the importance of proper access control management in crypto projects.

A former contract developer allegedly exploited administrative privileges to steal $50 million in USD Coin (USDC) from cryptocurrency payment firm Infini, according to security investigators. The incident underscores growing concerns about insider threats in blockchain projects.

- Advertisement -

Blockchain security firm Cyvers reported that the suspect had worked on Infini’s contract development before apparently concealing maintained administrative access after project completion. The attack demonstrates the critical importance of thorough security audits and access management in cryptocurrency projects.

The perpetrator initiated the attack by funding their wallet with 1 Ether from Tornado Cash, a cryptocurrency mixing service known for obscuring transaction origins. They subsequently executed the unauthorized transfer of $49.52 million through a smart contract deployed in November 2024.

This incident follows a pattern of similar insider-related cryptocurrency exploits in recent years. Cryptocurrency mixing services like Tornado Cash have frequently been used in such attacks to obscure the flow of stolen funds, making it challenging for investigators to trace the assets’ movement.

The exploitation method highlights vulnerabilities in project handover procedures within the cryptocurrency industry, where proper revocation of administrative privileges is crucial for security. Security experts recommend implementing multi-signature wallets and regular security audits to prevent such incidents.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Hackers Exploit Apache Flaw to Drop Linuxsys Cryptominer Payload

Researchers uncovered a new attack exploiting a known vulnerability in Apache HTTP Server to...

Trump Tariff Threat Derails BRICS Push for Common Currency

BRICS alliance slowed its efforts to challenge the U.S. dollar following tariff threats from...

Lithuania’s Axiology Gains DLT License for Digital Bond Trading

Axiology received a DLT Pilot Regime license to run a combined digital trading and...

BlackRock Invests $916M in Bitcoin, Ethereum as Crypto Holdings Surge

BlackRock raised its Bitcoin holdings by $416 million, now controlling $85.47 billion in Bitcoin...

Bitcoin Hits $123K as Trump Task Force Report Sparks Market Buzz

Bitcoin set a record price of $123,000, with markets watching for further movement. The digital...

Must Read

Top Best Metaverse Worlds To Buy Land

The metaverse has grown in our everyday conversation since Facebook announced its rebranding in October 2021 to META. The metaverse is a virtual world,...