financetom
Cryptocurrency
financetom
/
Cryptocurrency
/
CZ Criticizes Safe Wallet’s Post
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
CZ Criticizes Safe Wallet’s Post
Feb 27, 2025 12:20 PM

Former Binance CEO Changpeng Zhao (CZ) has criticized Safe Wallet’s post-mortem update on the Bybit hack, calling it “not that great” and raising concerns about how attackers tricked multiple signers.

His comments follow an audit report stating that the breach resulted from a compromise of Safe’s infrastructure rather than the exchange’s systems.

Safe’s Response

Forensic investigations found that compromised Safe Wallet credentials led to the nearly $1.5 billion Bybit exploit. In a statement on X on Wednesday, the crypto wallet provider confirmed the findings, stating that the hack stemmed from a “compromised Safe Wallet developer machine.”

The company highlighted that the reports did not identify vulnerabilities in its smart contracts or front-end source code. It also announced that it had fully rebuilt and reconfigured its infrastructure and changed all credentials, ensuring the attack vector was “fully eliminated.”

However, CZ criticized the statement, saying:

“This update from Safe is not that great. It uses vague language to brush over the issues. I have more questions than answers after reading it.”

He questioned what compromising a Safe {Wallet} developer machine meant and how the attack happened, asking whether social engineering or a virus was involved. He also inquired how the developer machine had access to an account operated by Bybit and whether the code was deployed directly to production.

Further concerns were raised about how the attackers bypassed Ledger verification, whether blind signing was involved, or if signers failed to verify properly.

The Report and Updates

On February 26, Bybit released a forensic audit conducted by Sygnia and Verichains about the attack. The audit revealed that Safe developer’s credentials had been compromised, giving hackers access to the wallet’s infrastructure, which led to signers being deceived into approving a malicious transaction.

According to the report, the exploit was carried out using “malicious JavaScript code” that had been injected into Safe’s Amazon Web Services system two days earlier. The script activated only when transactions came from specific contract addresses, including Bybit’s multi-sig contract and another address suspected to belong to the criminal.

Just two minutes after the hack, the attackers removed the malicious code from Safe’s system and disappeared. Forensic experts and the company have also confirmed that Bybit’s infrastructure was not compromised.

Since the incident, Bybit has borrowed 40,000 ETH from Bitget to meet withdrawal demands, which have since been repaid. The firm has also restored its reserves through loans, asset purchases, and whale deposits, securing 446,870 ETH valued at $1.23 billion. CEO Ben Zhou confirmed that the exchange now has 100% backing for client assets.

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
CryptoQuant CEO Highlights Similarities Between Meme Coins and Art Markets
CryptoQuant CEO Highlights Similarities Between Meme Coins and Art Markets
Jan 27, 2025
Meme coins are considered inherently worthless and possibly without a future, but Ki Young Ju, the founder and CEO of the crypto analytics platform CryptoQuant, thinks otherwise. In fact, he has likened the fun sector to the art market, insisting that they have some similarities and could be viewed from the same lens. According to a tweet, Ju believes value...
Solana to Rip? Elon Musk Reportedly Planning a Blockchain Revolution for US Government
Solana to Rip? Elon Musk Reportedly Planning a Blockchain Revolution for US Government
Jan 27, 2025
Musk has begun to discuss using blockchain technology to streamline the governments IT systems and cut unnecessary costs, according to recent reports. To wit, Musk is the new presidents official advisor on matters pertaining to government efficiency. President Donald Trump appointed him to head the DOGE: a White House office named the Department of Government Efficiency. Sources: Musk to Move...
Roger Ver Seeks Donald Trump’s Help Amid Potential US Extradition
Roger Ver Seeks Donald Trump’s Help Amid Potential US Extradition
Jan 27, 2025
Roger Ver has publicly pleaded for assistance from U.S. President Donald Trump, expressing fears that he could soon face extradition from Spain to the United States. In a video posted on X, he stated that he could be sentenced to up to 109 years in prison for what he described as “activism within cryptocurrency.” The Plea Ver described himself as...
Russian Power Giant Rosseti Embraces Bitcoin Mining to Monetize Excess Capacity
Russian Power Giant Rosseti Embraces Bitcoin Mining to Monetize Excess Capacity
Jan 27, 2025
Rosseti Group Russias leading electric grid operator has announced its interest in becoming an operator for hosting mining infrastructure. The company told TASS that this initiative focuses on utilizing underloaded power supply centers, improving capacity utilization, and fostering economic growth. Rosseti Targets Crypto Mining to Use Idle Power According to the report, Rossetis position as the largest grid company in...
Copyright 2023-2025 - www.financetom.com All Rights Reserved