Bullish

SecondFi Recovery Offer Expires With No Response From Second Attacker

2026-07-23 17:12:54

SecondFi's white-hat proposal for the second exploit yielded no reply by the July 11 deadline. The project retains rights to pursue legal action and further investigation into the theft.

Woofun AI reports that SecondFi disclosed details regarding a second security incident where an unrelated third party exploited a vulnerability to steal approximately 4 million ADA and various Cardano native tokens. The project team contacted the attacker via on-chain messages, proposing a white-hat resolution that required returning 90% of the stolen assets—roughly 3.618 million ADA and related tokens—to a recovery address, allowing the attacker to retain 10% as a reward. This offer expired at 7:59 on July 11, 2026, without any response from the recipient. SecondFi emphasized that the lapse of this deadline does not preclude them from continuing investigations, coordinating with third parties, or seeking legal and law enforcement assistance.

WOOFUN AI

Impact Assessment · Quick Read

The failure of the white-hat negotiation suggests the second attacker may be unwilling to cooperate or is operating under constraints that prevent asset return. With the deadline passed, the focus likely shifts toward forensic analysis and potential legal recourse, which could prolong the uncertainty surrounding the recovered funds. This incident highlights the challenges in resolving exploits involving multiple independent actors exploiting the same vulnerability.
Generated by WOOFUN AI · For reference only, not investment advice

Comments

Me
Replying to @User
0/800

No comments yet.

Notifications

Sign in to view messages
View all messagesManage subscriptions