COINPURO - Crypto Currency Latest News logo COINPURO - Crypto Currency Latest News logo
Cryptopolitan 2025-08-12 15:29:05

Radiant Capital hacker sells 3,091 ETH for 13.26 million DAI

Radiant Capital hacker offloaded 3,091 Ethereum tokens worth $13.26 million in DAI stablecoins. The exploiter sold ETH at $4,291 per token before transferring DAI to another wallet. This latest movement follows the October 17, 2024, hack that drained $53 million from the cross-chain lending protocol. Hacker liquidates stolen ETH holdings for stablecoin conversion The Radiant Capital exploiter converted 3,091 ETH tokens into 13.26 million DAI stablecoins during recent on-chain activity. Onchain Lens tracked the transaction, showing the hacker received $4,291 per Ethereum during the conversion process. Radiant Capital ( @RDNTCapital ) Exploiter sold 3,091 $ETH for 13.26M $DAI at a price of $4,291 and transferred the $DAI to another wallet. The platform was hacked for $53M on October 17, 2024. https://t.co/Hp8rEBFegT https://t.co/5OOIlwix59 pic.twitter.com/OW8EwNDVFO — Onchain Lens (@OnchainLens) August 12, 2025 The exploiter immediately transferred the entire DAI amount to a different wallet address after completing the conversion. This wallet transfer suggests the hacker continues moving stolen funds to avoid detection and tracking efforts. The transaction is a portion of the total $53 million stolen during the October 17 attack, as previously reported by Cryptopolitan . The hacker appears to be liquidating different cryptocurrency holdings from the original theft. October 2024 attack timeline reveals planning phase The Radiant Capital hack took place in carefully orchestrated stages over a month of preparation. Bad smart contracts were deployed on October 2, 2024, on multiple blockchain networks like Arbitrum, Base, BSC, and Ethereum. The deployment was 14 days before the actual exploit on October 16. The final attack targeted Radiant’s 3-of-11 multisig security mechanism in what appeared to be typical emissions adjustments. The attack infrastructure had previously been set up weeks prior by hackers following initial access. The North Korean threat actors coordinated the attack using INLETDRIFT malware customized for macOS platforms. The malware provided attackers with backdoor privileges under which they performed man-in-the-middle attacks on transaction signing processes. Developers could see legitimate transaction data on their screens while malicious commands were running on hardware wallets. The attack witnessed $53 million stolen from the treasury and user balances of the cross-chain lending protocol. Multiple blockchain networks were hit simultaneously during the concurrent attack on Radiant’s security systems. The attack started on 11th September 2024 when one of their Radiant Capital developers received a spoofed Telegram message. The attacker impersonated a reputable former contractor requesting feedback regarding a Penpie Hack Analysis Report. The attacker had emailed a ZIP file with what appeared to be a valid PDF document to open. The file contained INLETDRIFT malware within, yet appeared normal as a PDF with correctly formatted content. The hosting site for the file appeared almost identical to the legitimate contractor’s site to make it appear legitimate. If opened, the file appeared to contain normal analysis data, secretly installing backdoor access. The developer unknowingly executed an .app file that established communication with command and control servers. Get seen where it counts. Advertise in Cryptopolitan Research and reach crypto’s sharpest investors and builders.

가장 많이 읽은 뉴스

coinpuro_earn
면책 조항 읽기 : 본 웹 사이트, 하이퍼 링크 사이트, 관련 응용 프로그램, 포럼, 블로그, 소셜 미디어 계정 및 기타 플랫폼 (이하 "사이트")에 제공된 모든 콘텐츠는 제 3 자 출처에서 구입 한 일반적인 정보 용입니다. 우리는 정확성과 업데이트 성을 포함하여 우리의 콘텐츠와 관련하여 어떠한 종류의 보증도하지 않습니다. 우리가 제공하는 컨텐츠의 어떤 부분도 금융 조언, 법률 자문 또는 기타 용도에 대한 귀하의 특정 신뢰를위한 다른 형태의 조언을 구성하지 않습니다. 당사 콘텐츠의 사용 또는 의존은 전적으로 귀하의 책임과 재량에 달려 있습니다. 당신은 그들에게 의존하기 전에 우리 자신의 연구를 수행하고, 검토하고, 분석하고, 검증해야합니다. 거래는 큰 손실로 이어질 수있는 매우 위험한 활동이므로 결정을 내리기 전에 재무 고문에게 문의하십시오. 본 사이트의 어떠한 콘텐츠도 모집 또는 제공을 목적으로하지 않습니다.