【BitPush】A serious security incident is unfolding on the chain. The Pidun Security Team has detected that the whale user who was hacked on December 18th due to private key leakage, resulting in the theft of $27.3 million worth of assets, has now suffered a second “harvest”—the hacker just withdrew 1,000 ETH (approximately $3.24 million) from the Aave platform and sent it into the TornadoCash black hole.
What’s even more concerning is that this is not an isolated incident. Tracking data shows that since the incident occurred, the hacker has transferred a total of 6,300 ETH to TornadoCash, equivalent to nearly $19.4 million RMB. Such large-scale money laundering operations reveal a current reality: even though on-chain transactions are transparent, there are still sufficiently mature mixing toolchains that allow malicious actors to exploit. For users holding large assets, private key management and wallet security have clearly become matters of life and death.
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
25 Likes
Reward
25
10
Repost
Share
Comment
0/400
fren.eth
· 01-09 02:17
This guy must be really ruthless, one time isn't enough, he has to harvest a second time. Tornado is probably almost full now, haha.
View OriginalReply0
ShortingEnthusiast
· 01-08 22:46
Private key leakage is really a nightmare, how uncomfortable must this guy be... Tornado is still freeloading on mixing, what's the use of on-chain transparency
View OriginalReply0
GasGasGasBro
· 01-08 07:27
I can't understand why this guy still hasn't used a hardware wallet. Has he already been re-rolled twice?
View OriginalReply0
MonkeySeeMonkeyDo
· 01-06 10:16
Got sniped twice again, this guy is really unlucky. Has Tornado truly become a money laundering paradise?
View OriginalReply0
AirdropSweaterFan
· 01-06 10:12
Oh my god, this guy is so unlucky. Losing the private key is one thing, but being re-affected by a second harvest? That's what you call adding insult to injury.
View OriginalReply0
SmartContractPhobia
· 01-06 10:02
Private keys are really the critical point; once leaked, it's game over... This guy probably regrets it to the point of tears now.
View OriginalReply0
ApyWhisperer
· 01-06 09:59
Oh my god, here we go again. This guy is really something... Once the private key leaks, it's like turning on a faucet, and hackers start to exploit it aggressively. Tornado has long become a money laundering factory. What's the use of on-chain transparency? Should I run or stay? Such a big whale must feel so frustrated.
View OriginalReply0
LiquidatedDreams
· 01-06 09:59
Oh no, it's another private key issue... This guy is really too unlucky, can he be exploited again?
View OriginalReply0
GateUser-a5fa8bd0
· 01-06 09:52
This guy is really unlucky. His private key was leaked twice, and he got wiped out both times. Tornado.cash has even become a hacker's ATM...
View OriginalReply0
RugResistant
· 01-06 09:48
Oh my goodness, this guy is really unlucky. Losing the private key is one thing, but getting exploited twice? Tornado is used so skillfully, it's truly amazing.
Whale 27.3 million USD theft case tracking: hackers move an additional 1,000 ETH and engage in疯狂洗钱
【BitPush】A serious security incident is unfolding on the chain. The Pidun Security Team has detected that the whale user who was hacked on December 18th due to private key leakage, resulting in the theft of $27.3 million worth of assets, has now suffered a second “harvest”—the hacker just withdrew 1,000 ETH (approximately $3.24 million) from the Aave platform and sent it into the TornadoCash black hole.
What’s even more concerning is that this is not an isolated incident. Tracking data shows that since the incident occurred, the hacker has transferred a total of 6,300 ETH to TornadoCash, equivalent to nearly $19.4 million RMB. Such large-scale money laundering operations reveal a current reality: even though on-chain transactions are transparent, there are still sufficiently mature mixing toolchains that allow malicious actors to exploit. For users holding large assets, private key management and wallet security have clearly become matters of life and death.