headphones
Phantom and OKX face lawsuit over $500K crypto theft and Wiener Doge collapse
币圈狂人
币圈狂人
authIcon
趋势观察者
04-15 16:30
Follow
Focus
Phantom and OKX face a lawsuit after a $500K crypto theft linked to security flaws in Phantom’s wallet caused the collapse of the Wiener Doge.
Helpful
Not Helpful
Play

Phantom Technologies and crypto exchange OKX are being sued over security breaches that resulted in the loss of more than $500,000 in digital assets. The lawsuit that was filed in the Southern District of New York, states that the design of the Phantom wallet exposed users to cyber attacks.

Liam Murphy, the claimant’s attorney, stated that Phantom’s browser extension had exploitable holes through which hackers drained his crypto, leading to the failure of his Solana-based project known as Wiener Doge. After the attack, the token’s value plummeted to nearly 99% of its initial value, which was over $3 million.

According to the complaints filed to the court, Phantom allegedly misconstrued its wallet security. The company reportedly stored users’ decrypted private keys in the browser memory, making it possible to violate most conventional secure practices such as two-factor authentication.

Allegations suggest that the attacker managed to use Phantom’s built-in Swapper functionality to exchange Wiener Doge tokens for Solana (SOL), which led to the project’s failure. Because of this event, Wiener Doge which was priced at $3.1 per token, subsequently fell below $0.01.

Allegations extend to Phantom’s partner OKX

The lawsuit also goes further to accuse OKX of actively participating in the illegal liquidation of Murphy’s account. In that filing, OKX stated that the trading infrastructure that the hacker deployed allowed the movement of assets from Phantom using the wallet integration.

The plaintiffs argue that OKX could have reasonably known that Phantom’s Swapper tool was functioning as an unregistered intermediary with the CFTC. The complaint also states that the stolen tokens were converted to SOL through OKX’s routing and pricing structures. In their lawsuit, the plaintiffs said that the defendant could not have liquidated the stolen assets without the participation of OKX.

Murphy and thirteen other individuals who invested in Wiener Doge through friends and family are suing for damages based on the token’s value during its peak. They also allege that there is a lack of primary protocols like velocity checks and geolocation anomaly detections that should otherwise be observed in similar exchanges to Coinbase.

OKX’s prior legal issues are also featured in the case. The lawsuit cites the exchange’s guilty plea in a federal case over $5 billion in money laundering as an example of the exchange consistently disregarding compliance rules.

The plaintiff stated that Phantom knew the danger arising from the storage of keys on the browser cache. They state that the company was fully aware that new users became common targets of phishing attacks and malware and yet did not act appropriately.

Security experts challenge Phantom’s response

Security researcher Cloakd recently claimed that Phantom never engaged with him to address the problem despite informing them of an application flaw. He said that he went for more than 28 days without any reply, though there could be a risk with users. In response, Phantom dismissed Cloakd’s allegations of endangering users’ funds.

“I’ve been waiting for over 28 days for a large vulnerability to be fixed in one of the largest apps on SOL,” Cloakd said.

Another developer from Taptrade named Andy supported Cloakd’s statements, citing that after he had submitted several reports on vulnerabilities in Phantom, he had never received any reply. Both analysts criticized Phantom for being laid-back regarding security matters.

We just mass left a bunch of group DMs where we had been sharing exploits and bugs to teams across the ecosystem.

The lack of response from most of them was staggering.

— Andy | (!FF) (@AndyRewNFT) January 21, 2025

Cryptopolitan Academy: Coming Soon - A New Way to Earn Passive Income with DeFi in 2025. Learn More

Open the app to read the full article
DisclaimerAll content on this website, hyperlinks, related applications, forums, blog media accounts, and other platforms published by users are sourced from third-party platforms and platform users. BiJieWang makes no warranties of any kind regarding the website and its content. All blockchain-related data and other content on the website are for user learning and research purposes only, and do not constitute investment, legal, or any other professional advice. Any content published by BiJieWang users or other third-party platforms is the sole responsibility of the individual, and has nothing to do with BiJieWang. BiJieWang is not responsible for any losses arising from the use of information on this website. You should use the related data and content with caution and bear all risks associated with it. We strongly recommend that you independently research, review, analyze, and verify the content.
Comments(0)

No comments yet

edit
comment
collection
like
share