Jill Gunter, a cryptocurrency industry veteran, said more than $30k in USDC stablecoin was stolen from her wallet... while she was preparing a presentation on cyberJill Gunter, a cryptocurrency industry veteran, said more than $30k in USDC stablecoin was stolen from her wallet... while she was preparing a presentation on cyber

Espresso co-founder reports $30k crypto theft through ThirdWeb contract vulnerability

2025/12/13 08:52

Jill Gunter, co-founder of Espresso, reported Thursday that her crypto wallet was drained due to a vulnerability in a Thirdweb contract, according to statements posted on social media.

Summary
  • Crypto veteran Jill Gunter reported the theft of over $30,000 in USDC from her wallet, which was drained on Dec. 9 and routed through Railgun.
  • The vulnerability stemmed from a legacy Thirdweb contract that allowed access to funds with unlimited token approvals.
  • The incident followed a separate 2023 open-source library flaw that affected more than 500 token contracts and was exploited at least 25 times, according to ScamSniffer.

Gunter, described as a 10-year veteran of the cryptocurrency industry, said more than $30,000 in USDC stablecoin was stolen from her wallet. The funds were transferred to the privacy protocol Railgun while she was preparing a presentation on cryptocurrency privacy for an event in Washington, D.C., according to her account.

In a follow-up post, Gunter detailed the investigation into the theft. The transaction that drained her jrg.eth address occurred on December 9, with the tokens having been moved into the address the day before in anticipation of funding an angel investment planned for that week, she stated.

Although the tokens were transferred from jrg.eth to another address identified as 0xF215, the transaction showed a contract interaction with 0x81d5, according to Gunter’s analysis. She identified the vulnerable contract as a Thirdweb bridge contract she had previously used for a $5 transfer.

Thirdweb informed Gunter that a vulnerability had been discovered in the bridge contract in April, she reported. The vulnerability allowed anyone to access funds from users who had approved unlimited token permissions. The contract has since been labeled as compromised on Etherscan, a blockchain explorer.

Gunter stated she did not know whether she would receive reimbursement and characterized such risks as an occupational hazard in the cryptocurrency industry. She pledged to donate any recovered funds to the SEAL Security Alliance and encouraged others to consider donations as well.

Thirdweb published a blog post stating the theft resulted from a legacy contract not being properly decommissioned during its April 2025 vulnerability response. The company said it has permanently disabled the legacy contract and that no user wallets or funds remain at risk.

In addition to the vulnerable bridge contract, Thirdweb disclosed a wide-reaching vulnerability in late 2023 in a commonly used open-source library. Security researcher Pascal Caversaccio of SEAL criticized Thirdweb’s disclosure approach, stating that providing a list of vulnerable contracts gave malicious actors advance warning.

According to analysis by ScamSniffer, a blockchain security firm, over 500 token contracts were affected by the 2023 vulnerability and at least 25 were exploited.

Sorumluluk Reddi: Bu sitede yeniden yayınlanan makaleler, halka açık platformlardan alınmıştır ve yalnızca bilgilendirme amaçlıdır. MEXC'nin görüşlerini yansıtmayabilir. Tüm hakları telif sahiplerine aittir. Herhangi bir içeriğin üçüncü taraf haklarını ihlal ettiğini düşünüyorsanız, kaldırılması için lütfen [email protected] ile iletişime geçin. MEXC, içeriğin doğruluğu, eksiksizliği veya güncelliği konusunda hiçbir garanti vermez ve sağlanan bilgilere dayalı olarak alınan herhangi bir eylemden sorumlu değildir. İçerik, finansal, yasal veya diğer profesyonel tavsiye niteliğinde değildir ve MEXC tarafından bir tavsiye veya onay olarak değerlendirilmemelidir.

Ayrıca Şunları da Beğenebilirsiniz

Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut

Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut

The post Big U.S. banks cut prime rate to 7.25% after Fed’s interest rate cut appeared on BitcoinEthereumNews.com. Big U.S. banks have lowered their prime lending rate to 7.25%, down from 7.50%, after the Federal Reserve announced a 25 basis point rate cut on Wednesday, the first adjustment since December. The change directly affects consumer and business loans across the country. According to Reuters, JPMorgan Chase, Citigroup, Wells Fargo, and Bank of America all implemented the new rate immediately following the Fed’s announcement. The prime rate is what banks charge their most trusted borrowers, usually large companies. But it’s also the base for what everyone else pays; mortgages, small business loans, credit cards, and personal loans. With this cut, borrowing gets slightly cheaper across the board. Inflation still isn’t under control. It’s above the 2% goal, and the impact of President Donald Trump’s tariffs remains uncertain. Fed reacts to rising unemployment concerns Richard Flynn, managing director at Charles Schwab UK, said jobless claims are at their highest in almost four years, despite the Fed originally planning to keep rates unchanged through the summer. “Although the summer began with expectations of holding rates steady, the labor market has shown more signs of weakness than anticipated,” Flynn said. Hiring has slowed because of uncertainty around Trump’s trade policy. Companies are hesitating to add staff, which is why job growth has nearly stalled. As fewer people are hired, spending starts to shrink. And that’s when things start to unravel. That’s what the Fed is trying to get ahead of with this rate cut. The cut also helps banks directly. Lower rates mean more people may qualify for loans again. During the previous rate hikes, lending standards got tighter. Now, with cheaper credit, smaller businesses could get approved again. If well-funded businesses feel confident, they may hire again. That could eventually help the consumer side of the economy bounce back, but that’s…
Paylaş
BitcoinEthereumNews2025/09/18 16:32