Press Enter to search · ESC to close

Crypto

Liquid Hacker Returns 3,400 BTC, Keeps 598: A Calculated Partial Restitution

The Liquid exchange hacker has returned 3,400 BTC of the stolen funds but kept 598 BTC, in an unconfirmed transaction flagged as replaceable. This partial restitution raises questions about the attacker's motives and the future of asset recovery, while highlighting ongoing security challenges for centralized exchanges.

Liquid Hacker Returns 3,400 BTC, Keeps 598: A Calculated Partial Restitution

In a surprising turn of events, the hacker behind the August 2021 exploit of the Liquid exchange has broadcast a transaction returning 3,400 BTC to the platform’s federation wallet, while retaining 598.50 BTC in their own address. The transaction, currently unconfirmed and flagged as replaceable (RBF), has neither been acknowledged nor explained by either party, leaving the crypto community speculating about the motives behind this partial repayment.

Brief News Summary

The on-chain movement was first spotted by blockchain analysts, showing a single transaction that splits the stolen funds: 3,400 BTC sent back to the Liquid federation wallet and 598.50 BTC moved to the attacker’s address. The transaction remains unconfirmed, and the use of RBF suggests the attacker may adjust fees or even cancel the transaction if conditions change. Neither Liquid nor the attacker has issued a public statement, adding to the uncertainty.

Industry Analysis and Implications

This partial return raises several critical questions for the crypto industry. First, it highlights the evolving tactics of hackers, who may use partial restitution as a negotiation tool or to reduce legal pressure. By returning a significant portion of the stolen assets, the attacker could be attempting to appear more lenient in potential plea deals, or to test the response of Liquid and law enforcement.

Second, the use of RBF indicates a level of technical sophistication and caution. The attacker retains control over the transaction’s fate, which could be a strategic move to ensure they receive something in return, such as a reduced bounty or legal immunity. This cat-and-mouse game underscores the complexities of on-chain asset recovery.

Third, the incident reignites debates about security in centralized exchanges. Liquid’s breach, which resulted in losses exceeding $90 million at the time, was a stark reminder of the risks associated with custodial platforms. The partial return does little to restore trust, as 598 BTC remains outstanding, and the attacker’s ultimate intentions are unclear.

Forward-Looking Perspective

As the transaction remains unconfirmed, the immediate focus is on whether it will be mined and whether Liquid will accept the returned funds. The exchange may face a dilemma: accepting the BTC could be seen as legitimizing a partial hack, while rejecting it could prolong the recovery process. Meanwhile, the attacker’s next move is unpredictable—they may return the remaining BTC, negotiate further, or vanish again.

This event may prompt exchanges to enhance their security protocols and develop clearer strategies for handling partial returns. It also highlights the need for better on-chain surveillance and cooperation between exchanges and law enforcement. For the broader crypto market, the incident serves as a reminder that while blockchain offers transparency, the human element of cybercrime remains unpredictable.

View original

Share
Risk notice This site provides news and information on the crypto, blockchain and Web3 industry for reference only and does not constitute investment advice or any promise of returns. Virtual currency-related activities are illegal financial activities in mainland China; digital asset prices are highly volatile; use at your own risk. This site does not provide trading, token issuance or related referral services.

Related Reading

Latest News

TREE NEWS share card
Long-press image above → Save to Photos / Share
Pitch us Feedback