79th Vault: Operator's private key compromised by attacker, approximately $12.5 million lost, white-hat settlement under negotiation
Odaily reports that 79th Vault has officially announced that its token 79AU was attacked on October 7 due to account permission management vulnerabilities. After obtaining the operator's private key, the attacker exploited the relevant permissions to extract tokens from the contract, causing a short-term abnormal price increase, and subsequently converted the assets into USDT and BNB.
The team stated that emergency fixes and security reviews of the relevant permissions and contract operations have been completed, and the attacker's addresses have been identified, with ongoing efforts to track the stolen assets. The team has proposed a white-hat settlement offer to the attacker under its bug bounty framework. The attacker has responded, and both parties are still in negotiations.
