Oasis Exploits Its Own Wallet Software to Seize Crypto Stolen in Wormhole Hack

The High Court of England and Wales ordered the crypto platform to reclaim the stolen funds.

AccessTimeIconFeb 24, 2023 at 11:26 p.m. UTC
Updated May 9, 2023 at 4:08 a.m. UTC

Decentralized Finance (DeFi) platform Oasis said Friday it seized assets tied to last year’s $140 million exploit of the Wormhole bridge and returned them to an “authorized third party” after being ordered to do so by a British court.

In a blog post, Oasis, which develops multi-signature wallet software into which the hacker deposited funds, said whitehats recently notified it of “a previously unknown vulnerability in the design of the admin multisig access.” Following a Feb. 21 order from the High Court of England and Wales, it exploited that vulnerability to take back the funds.

  • Over $67M in Crypto Lost to Hacks and Exploits in February: Immunefi Report
    00:56
    Over $67M in Crypto Lost to Hacks and Exploits in February: Immunefi Report
  • Running With Crypto: 5 Questions With TRM Labs' Ari Redbord
    00:59
    Running With Crypto: 5 Questions With TRM Labs' Ari Redbord
  • Hacks Involving North Korea Are 'Even Greater Problem': Legal Experts
    09:43
    Hacks Involving North Korea Are 'Even Greater Problem': Legal Experts
  • Breaking Down the State of Hacking in 2024
    02:01
    Breaking Down the State of Hacking in 2024
  • “We stress that this access was there with the sole intention to protect user assets in the event of any potential attack, and would have allowed us to move quickly to patch any vulnerability disclosed to us,” Oasis said.

    It said it returned the funds to an “authorized third party.” A Blockworks article that preceded Oasis’ blog post identified Jump Crypto – developer of Wormhole – as the owner of the wallets that received the seized funds.

    Jump Crypto did not immediately comment.

    Disclosure

    Please note that our privacy policy, terms of use, cookies, and do not sell my personal information has been updated.

    CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. In November 2023, CoinDesk was acquired by the Bullish group, owner of Bullish, a regulated, digital assets exchange. The Bullish group is majority-owned by Block.one; both companies have interests in a variety of blockchain and digital asset businesses and significant holdings of digital assets, including bitcoin. CoinDesk operates as an independent subsidiary with an editorial committee to protect journalistic independence. CoinDesk employees, including journalists, may receive options in the Bullish group as part of their compensation.

    Elizabeth Napolitano

    Elizabeth Napolitano was a news reporter at CoinDesk.

    Danny Nelson

    Danny is CoinDesk's Managing Editor for Data & Tokens. He owns BTC, ETH and SOL.