Beautiful Virgin Islands

Wednesday, May 13, 2026

‘White hat’ hacker behind $610m crypto heist returns most of money

‘White hat’ hacker behind $610m crypto heist returns most of money

Still-unidentified hacker claims attack was carried out ‘for fun’ to ‘expose the vulnerability’ of platform

The hacker responsible for one of the world’s largest digital coin heists has returned nearly all of their more than $610m (£440m) haul, reportedly saying they did it “for fun” and to expose a vulnerability.

The victim, Poly Network, which until Tuesday’s heist was a little known peer-to-peer cryptocurrency platform, said all of the funds except for $33m-worth of the digital coin Tether, which were frozen earlier in the week, had been transferred to a wallet controlled by both the platform and the hacker.

The hacker, they said, was a so-called “white hat”, a term used to refer to ethical hackers who deploy their skills to expose cyber vulnerabilities that could be exploited by malicious actors.

“The repayment process has not yet been completed,” Poly Network said in a statement on Thursday. “To ensure the safe recovery of user asset, we hope to maintain communication with Mr White Hat and convey accurate information to the public.”

According to messages from a person claiming to be the hacker posted on Twitter by Tom Robinson, the chief scientist and co-founder of the cryto tracking firm Elliptic, Poly Network offered a $500,000 “bug bounty” to return the stolen assets and promised “you will not be held accountable for this incident”.

Robinson said the purported hacker told him they would not be claiming the money but that they would be using donations they had received in recent days to compensate “unexpected victims” of the hack.


Poly Network first alerted the world to the hack on Tuesday when the company, which allows users to transfer or swap tokens across different blockchains, said it had fallen victim to a cyberheist and called on the people behind it to return the stolen funds.

The blockchain forensics company Chainalysis said the hacker or hackers, whose identity is not yet known, appear to have exploited a vulnerability in the platform’s digital contracts to move assets between blockchains.

The hackers started returning the funds on Wednesday, a day after the attack, prompting analysts to speculate that they might have struggled to launder the stolen cryptocurrency on such a vast scale.

But later a person claiming to be the hacker claimed in a Q&A shared by Robinson that they did it “for fun” after spotting a bug and wanted to “expose the vulnerability before any insiders hiding and exploiting it.” The purported hacker also claimed that they had always planned to return the tokens.

According to CipherTrace, the crypto intelligence company, the decentralised finance sector registered $474m in criminal losses between January and July.

Experts say that the high level of theft demonstrates the risks of the largely unregulated sector, which allows users to carry out transactions, usually in cryptocurrency, without any of the traditional safeguards such as banks or exchanges.

Newsletter

Related Articles

Beautiful Virgin Islands
0:00
0:00
Close
The Great Western Exit: Why Best Citizens Are Fleeing the Rich World [PODCAST]
The New Robber Barons of Intelligence: Are AI Bosses More Powerful Than Rockefeller?
The End of the Old Order [Podcast]
Britain’s Democracy Is Now a Costume
The AI Gold Rush Is Coming for America’s Last Open Spaces [Podcast]
The Pentagon’s AI Squeeze: Eight Tech Giants Get In, Anthropic Gets Shut Out [Podcast]
The War Map: Professor Jiang’s Dark Theory of Iran, Trump, China, Russia, Israel, and the Coming Global Shock [Podcast]
Labour Is No Longer a National Party [Podcast]
AI Isn’t Stealing Your Job. It’s Dismantling It Piece by Piece.
Lawyers vs Engineers: Why China Builds While America Litigates [Podcast]
Churchill’s Glass: The Drunk, the Doctor, and the Myth Britain Refuses to Sober Up From
Apple issues an unusual warning: this is how your iPhone can be hacked without you doing anything
The Met Gala Meets the Age of Billionaire Backlash
Russian Oligarch’s Superyacht Crosses Hormuz via Iran-Controlled Route
Gunfire Disrupts White House Correspondents’ Dinner as Trump Is Evacuated
A Leak, a King, and a Fracturing Alliance
Inside the Gates Foundation Turmoil: Layoffs, Scrutiny, and the Cost of Reputational Risk
UK Biobank Breach Exposes Health Data of 500,000, Listed for Sale on Chinese Platform
KPMG Cuts Around 10% of US Audit Partners After Failed Exit Push
French Police Probe Suspected Weather-Data Tampering After Unusual Polymarket Bets on Paris Temperatures
News Roundup
Microsoft lost 2.5 millions users (French government) to Linux
Privacy Problems in Microsoft Windows OS
News roundup
Péter András Magyar and the Strategic Reset of Hungary
Hungary After the Landslide — A Strategic Reset in Europe
×