{"id":134784,"date":"2020-12-16T14:59:47","date_gmt":"2020-12-16T11:59:47","guid":{"rendered":"https:\/\/en.buradabiliyorum.com\/the-nexus-mutual-hacker-is-now-asking-for-a-2-6m-ransom\/"},"modified":"2020-12-16T14:59:47","modified_gmt":"2020-12-16T11:59:47","slug":"the-nexus-mutual-hacker-is-now-asking-for-a-2-6m-ransom","status":"publish","type":"post","link":"https:\/\/buradabiliyorum.com\/en\/the-nexus-mutual-hacker-is-now-asking-for-a-2-6m-ransom\/","title":{"rendered":"# The Nexus Mutual hacker is now asking for a $2.6M ransom"},"content":{"rendered":"<p>&#8220;<strong># The Nexus Mutual hacker is now asking for a $2.6M ransom<br \/>\n<\/strong>&#8221;<br \/>\n<img decoding=\"async\" src=\"https:\/\/images.cointelegraph.com\/images\/840_aHR0cHM6Ly9zMy5jb2ludGVsZWdyYXBoLmNvbS91cGxvYWRzLzIwMjAtMTIvMmFlMGU3YmQtYTljYS00ZTkwLTk2MmUtNDI4ZDQ3YjQ5YzhjLmpwZw==.jpg\" \/><\/p>\n<div class=\"post-content\" data-v-5a136f3a>\nA hacker, who on Monday stole $8.3 million from the private wallet of Nexus Mutual CEO Hugh Karp, has sent a ransom demand for $2.66 million in Ether (ETH) embedded in the input data of an Ethereum <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/etherscan.io\/tx\/0xcc931f47a1849d060f1e9ac38a4fe16aec728c968a75dd9115852c6db3568985\">transaction<\/a>.<\/p>\n<p>In the poorly-worded Dec. 16 message, the attacker addresses Karp directly, and seems to suggest that they will cease selling off the stolen <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/coinmarketcap.com\/currencies\/nxm\/\">NXM<\/a> until the price recovers or Karp sends 4,500 ETH.<\/p>\n<blockquote><p>\u201cHello Hugh. I will not sell wNXM any more until wNXM recovers his value or you send me 4.5k ETH. If you need any negotiation with me, send msg to my eth address.\u00a0Following are your addresses. You are rich, Hugh [&#8230;]\u201d<\/p><\/blockquote>\n<p>It is unclear if the hacker offered to return the remainder of the stolen NXM in the latter scenario, though this would likely be a prerequisite condition for Karp if he decided to send the ransom.<\/p>\n<p>Any negotiation is requested to be directed via the attacker\u2019s Ethereum address, and the message concludes by listing three wallet addresses claimed to belong to Karp, along with the assertion that he is \u201crich\u201d.<\/p>\n<p>As Cointelegraph reported, the hacker\u00a0supposedly managed to install a compromised version of Metamask\u00a0that tricked Karp into signing a transaction transferring all his 370,000 NXM to the attacker\u2019s wallet.<\/p>\n<p>In a <a rel=\"nofollow noopener\" target=\"_blank\" href=\"https:\/\/twitter.com\/HughKarp\/status\/1338452087374553091?s=20\">tweet<\/a>, Karp complemented the attacker on some \u201cnext level stuff\u201d, while noting that it would be difficult to cash out so much NXM, and offering a $300,000 bounty if the tokens were returned in full.<\/p>\n<p>However, undeterred, the attacker has reportedly already laundered up to $2.7 million worth of the stolen NXM, and is now demanding a similar amount to not sell off the rest.\n<\/p><\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><\/p>\n<blockquote><p><strong><span style=\"color: #ff6600;\">If you liked the article, do not forget to share it with your friends. Follow us on\u00a0<span style=\"color: #ff0000;\"><a style=\"color: #ff0000;\" href=\"https:\/\/news.google.com\/publications\/CAAqBwgKMLG0nwswvr63Aw\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">Google News<\/a><\/span>\u00a0too, click on the star and choose us from your favorites.<\/span><\/strong><\/p><\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\">For forums sites go to <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/forum.buradabiliyorum.com\/\" target=\"_blank\" rel=\"noopener\">Forum.BuradaBiliyorum.Com<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<blockquote>\n<p style=\"text-align: center;\"><strong>If you want to read more <a href=\"https:\/\/buradabiliyorum.com\/en\/category\/news\/\" data-internallinksmanager029f6b8e52c=\"2\" title=\"News\" target=\"_blank\" rel=\"noopener\">News<\/a> articles, you can visit our <span style=\"color: #ff9900;\"><a style=\"color: #ff9900;\" href=\"https:\/\/en.buradabiliyorum.com\/general\/\" target=\"_blank\" rel=\"noopener\">General category.<\/a><\/span><\/strong><\/p>\n<\/blockquote>\n<p><span style=\"color: black;\"><a style=\"color: #ff9900;\" href=\"https:\/\/cointelegraph.com\/news\/the-nexus-mutual-hacker-is-now-asking-for-a-2-6m-ransom\" target=\"_blank\" rel=\"noopener\">Source<\/a><\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>&#8220;# The Nexus Mutual hacker is now asking for a $2.6M ransom &#8221; A hacker, who on Monday stole $8.3 million from the private wallet of Nexus Mutual CEO Hugh Karp, has sent a ransom demand for $2.66 million in Ether (ETH) embedded in the input data of an Ethereum transaction. In the poorly-worded Dec&#8230;.<\/p>\n","protected":false},"author":1,"featured_media":134785,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"fifu_image_url":"https:\/\/s3.cointelegraph.com\/uploads\/2020-12\/2ae0e7bd-a9ca-4e90-962e-428d47b49c8c.jpg","fifu_image_alt":"","footnotes":""},"categories":[1],"tags":[74868,74882,4965],"class_list":["post-134784","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-general","tag-defi","tag-hacks","tag-technology"],"_links":{"self":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/134784","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/comments?post=134784"}],"version-history":[{"count":0,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/posts\/134784\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media\/134785"}],"wp:attachment":[{"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/media?parent=134784"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/categories?post=134784"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/buradabiliyorum.com\/en\/wp-json\/wp\/v2\/tags?post=134784"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}