Oasis Exploits Its Own Wallet Software to Seize Crypto Stolen in Wormhole Hack

The High Court of England and Wales ordered the crypto platform to reclaim the stolen funds.

AccessTimeIconFeb 24, 2023 at 11:26 p.m. UTC
Updated May 9, 2023 at 4:08 a.m. UTC
10 Years of Decentralizing the Future
May 29-31, 2024 - Austin, TexasThe biggest and most established global hub for everything crypto, blockchain and Web3.Register Now

Decentralized Finance (DeFi) platform Oasis said Friday it seized assets tied to last year’s $140 million exploit of the Wormhole bridge and returned them to an “authorized third party” after being ordered to do so by a British court.

In a blog post, Oasis, which develops multi-signature wallet software into which the hacker deposited funds, said whitehats recently notified it of “a previously unknown vulnerability in the design of the admin multisig access.” Following a Feb. 21 order from the High Court of England and Wales, it exploited that vulnerability to take back the funds.

  • Running With Crypto: 5 Questions With TRM Labs' Ari Redbord
    00:59
    Running With Crypto: 5 Questions With TRM Labs' Ari Redbord
  • Hacks Involving North Korea Are 'Even Greater Problem': Legal Experts
    09:43
    Hacks Involving North Korea Are 'Even Greater Problem': Legal Experts
  • Breaking Down the State of Hacking in 2024
    02:01
    Breaking Down the State of Hacking in 2024
  • Crypto Hack Volumes Fell by More Than 50% in 2023: TRM Labs
    00:59
    Crypto Hack Volumes Fell by More Than 50% in 2023: TRM Labs
  • “We stress that this access was there with the sole intention to protect user assets in the event of any potential attack, and would have allowed us to move quickly to patch any vulnerability disclosed to us,” Oasis said.

    It said it returned the funds to an “authorized third party.” A Blockworks article that preceded Oasis’ blog post identified Jump Crypto – developer of Wormhole – as the owner of the wallets that received the seized funds.

    Jump Crypto did not immediately comment.

    Disclosure

    Please note that our privacy policy, terms of use, cookies, and do not sell my personal information has been updated.

    CoinDesk is an award-winning media outlet that covers the cryptocurrency industry. Its journalists abide by a strict set of editorial policies. In November 2023, CoinDesk was acquired by the Bullish group, owner of Bullish, a regulated, digital assets exchange. The Bullish group is majority-owned by Block.one; both companies have interests in a variety of blockchain and digital asset businesses and significant holdings of digital assets, including bitcoin. CoinDesk operates as an independent subsidiary with an editorial committee to protect journalistic independence. CoinDesk employees, including journalists, may receive options in the Bullish group as part of their compensation.

    Elizabeth Napolitano

    Elizabeth Napolitano was a news reporter at CoinDesk.

    Danny Nelson

    Danny is CoinDesk's Managing Editor for Data & Tokens. He owns BTC, ETH and SOL.


    Learn more about Consensus 2024, CoinDesk's longest-running and most influential event that brings together all sides of crypto, blockchain and Web3. Head to consensus.coindesk.com to register and buy your pass now.