zkLend Hack: Genuine Apology or Orchestrated Drama? HasBeen90チZkLend hack was also stolen, is the on-chain apology a sincere repentance or a self-directed performance?

By: blockbeats|2025/04/01 02:45:03
分享
copy

The April Fools' Day joke for this year came out early: a hacker got hacked, and the stolen ETH got phished. After the zkLend hacker stole 2930 ETH, they fell victim to a phishing website, causing a complete loss of funds. Now, the hacker has publicly apologized to the zkLend team through an on-chain message, claiming to have "broken down," and pleading with the team to investigate the phishing website operator to recover the losses. Is this a case of poetic justice or just another one of the hacker's tricks? Let's find out.

zkLend Hack: Genuine Apology or Orchestrated Drama?

HasBeen90チZkLend hack was also stolen, is the on-chain apology a sincere repentance or a self-directed performance?

From Hacker to "Victim"

In February of this year, zkLend—a decentralized lending protocol based on the Starknet network—was hit by a devastating attack. The hacker exploited a "rounding error" bug in the smart contract, making off with 3600 ETH. The zkLend team had previously reached out to the hacker, offering to let them keep 10% as a "white hat bounty" if they returned 90% (3300 ETH) and absolved them of legal consequences. However, the hacker did not respond, swiftly moving the funds to the Ethereum network and attempting to launder the stolen ETH using the privacy protocol Railgun. While Railgun managed to force the funds back, thwarting the hacker's laundering attempt, the trail briefly went cold.

Related Read: "$5 Million Stolen Funds Rejected, Mixer Railgun Turns Into DeFi Protocol "Debt Collection Tool"?"

Just when everyone thought the stolen funds had disappeared without a trace, on April 1st, SlowMist's founder, 余弦 (Yu Xian), revealed a dramatic twist: the hacker switched to Tornado Cash to further obfuscate the fund flow but mistakenly clicked on a phishing website disguised as Tornado Cash, leading to the vanishing of 2930 ETH.

What's even more surprising is that the hacker then proactively contacted zkLend through an on-chain message, expressing deep remorse: "Hello, I intended to transfer the funds to Tornado Cash, but mistakenly used a phishing site, resulting in the complete loss of all funds. I am devastated. I apologize deeply for the confusion and losses caused by this. All 2930 ETH has been taken by the operator of that website, and I no longer have any coins in my possession. Please focus your efforts on those website operators to see if you can recover some of the funds. This is my final message, and perhaps ending it all is the best choice. Sorry again."

This "Confession Letter" quickly exploded in the crypto community. In the message, the hacker not only admitted their mistakes but also expressed remorse, even hinting at a possible "retirement" from the scene. However, this "sincere confession" inevitably raised doubts about its authenticity.

How Does the Community See It?

After the incident was exposed, some jokingly referred to it as the "hacker version of an April Fools' joke," lamenting that "if you live by the sword, you die by the sword"; while others quipped, "It's like a scammer from Myanmar getting scammed by a psoriasis ad on a street lamp post."

Aside from just spectating, some community members pointed out that the hacker might be orchestrating a drama, using the guise of a "victim" to divert attention, or even colluding with the phishing site operator to whitewash their identity or obfuscate the fund's destination. However, based on cosine tracing, this phishing site has been undercover for 5 years. If this hacker drama is indeed self-directed, it seems a bit too "patient." Currently, although the hacker's wallet has indeed been emptied, the possibility of hidden accounts behind the scenes cannot be ruled out.

As of the time of writing, zkLend has not yet issued a formal response to the hacker's message. Previously, on March 5th, the project team launched a "Recovery Portal," offering partial compensation to affected users and promising to strengthen security measures. Now, the zkLend theft incident seems to have staged a "black-on-black" drama in the crypto world. Will the hacker's proactive plea lead zkLend to collaborate with law enforcement to trace the phishing site? Or is this just a distraction for the hacker to "whitewash" themselves? Is the hacker's "confession letter" a genuine repentance or a carefully crafted "April Fools' humor"? BlockBeats will continue to track and report on the progress of the event.

猜你喜欢

CEX与Wallet之后,OKX入局支付

「Road to the Next Billion Users」。——OKX CEO Star

Sentient深度研报:获8500万美元融资,构建去中心化AGI新范式

Sentient是一个致力于构建去中心化人工智能经济体的开源协议平台,其核心目标是为AI模型建立所有权结构、提供链上调用机制,并构建可组合、可分润的AI Agent网络。

第16周链上数据:结构性供需失衡加剧,数据揭⽰下⼀轮上涨的坚实蓝图?

短期预期市场有很⼤可能在当前价位震荡后继续轧空,当前⾯临回调的⻛险较低。

Sui Q1进阶报告:BTCfi基建崛起、借贷协议爆发与执行分片未来

Sui的扩展路线图也随着Pilotfish执行分片的推进而不断改进,以实现真正的水平可扩展性和弹性验证器配置。

加密新庄家:特朗普家族的发币盖楼生意经

政治影响力带来的大甜头,让埃里克·特朗普欲罢不能

Gate.io MemeBox正式接入Solana生态,链上资产交易快人一步

1. MemeBox 加速拓展多链生态版图,宣布正式支持 Solana 生态,为平台引入更多优质资产,增强在 Meme 资产交易领域的影响力。 2. Solana 生态因其高性能和低成本成为 Meme 项目的黄金磁场,吸引了多个现象级 Meme 项目的涌现,如 BONK、WIF 和 BOME 等。 3. MemeBox 接入 Solana 生态是其多链战略中的重要一环,旨在打通核心链之间的生态壁垒,快速纳入 Solana 链上的优质资产,满足用户多样化的投资需求。 4. MemeBox 融合 AI 技术,实时扫描区块链网络和链上动态,精准捕捉市场热点,并实现项目的快速自动化上线,为用户提供一站式链上热门资产交易体验。 5. MemeBox 将持续发掘具备成长潜力的优质项目与生态网络,在产品性能、服务体验、交易效率等多个维度精进优化,力争成为全球链上热门资产的首发阵地与价值高地。

热门币种

最新加密货币要闻

阅读更多