Harmony Villains

@Pioneer

I don’t know any information about this address

I known it, this address is erc1155 manager on eth, Used for locking and holding erc1155 on eth.
Its Own should be a multi-signature wallet

Yes

I have no information on all of these transactions

2 Likes

thank you so much for the response! I think that it is pretty clear how this happened now and it’s really great that you were able to help us to clear this up. Hopefully the network can stabilize and we can grow strong together once more :slight_smile:

3 Likes

Sorry, do you mind elaborate when you said “it is pretty clear how this happened now…”? Lutty’s involvement? Thank you so much :pray:

I trust no one when it comes to 100M so the team and authorities need to look very carefully the facts. I trust their professionalism and I believe all will come into place. If the thief is here - the best you can do is surrender as you will get caught and you already know it.

Mate just do it! Even if you will not receive the grant, we will donate to keep this project running. I think it’s more than valuable in current situation.

2 Likes

Hey!

For now, there is no identity to place blame on that we know of. The ms keys (2/4) appear to have been used from the ETH side in order to unlock the assets (without burning them on the Harmony chain), which is why there is no blockchain evidence on the Harmony explorer. This is not my skillset, as I typically rely on what the blockchain has to tell me and I cannot read solidity/ smart contracts at this time, although I do plan to learn, so that I can become a more valuable resource to the community.

I truly hope that the core team can lead the way to recovery SOON. There are a few large projects that have decided to leave due to this hack (Evoverses, Cosmic Universe, possibly DFK, Roy, CGD (along with it’s leader and long-time contributor Crypto Clay, etc…) and the community will crumble without the support and direction of its leadership.

All that we can do is what is best for ourselves as individuals and then what is left we can use to support the chain.

2 Likes

Thank you so much for your explanation. I appreciate :pray: :sparkling_heart:

1 Like

Roy is not decided to leave harmony afaik. Only thing that royalty said was it’s one of the options.

You’re correct, I took this message to read that they were leaving and it does not explicitly say that- thank you for the correction! I did some more digging and found that you asked this very question in their discord only minutes ago, so thank you for the due diligence :slight_smile:
image

1 Like

Since my skillset is limited and I don’t know how to track a traditional hacker, I decided to take a step back and to think more on the big picture. I love information and while sifting through the Harmony Notion site I found that Yuriy was in charge of “better security validations” in Q1 2022. Again, I don’t know Yuriy, I don’t aim to contribute to the blame game, but this struck me as odd. I’m using this bounty forum as a repository at this point to share potentially useful information with the community.

3 Likes

Hey. so we don’t know how the keys leaked?

I think if its not an inside job, either the private keys were stored in a .env variable somewhere and the hacker stole it via supply chain attack or maybe it’s related to that mysterious chrome extension harmony wallet hack and the hacker stole the private keys like that.

good job btw

1 Like

Not to send you on a goose chase here, but do you mind looking up into Kenny? Could be a wild hunch but :

  • Their Reddit karma is low & were offering Harmony gift cards as a project. (last seen 8 days ago)
  • Their Twitter handle & prime website is dead.
  • Might have participated as a contributor for a Harmony hackathon, or for bounties.
  • The GitHub repository work is not very broad.
  • Did visit the talk.harmony.one forum in the past 24 hours.
  • Has participated in talk.harmony.one forum, wanted to run for governor but rescinded candidacy.

Could be an honest contributor, but the breadth of input/lack of identifiable body of work doesn’t say much.

Shit, my website is down. lol

1 Like

Lol. Mate, fix those online credentials. Look scammy as hell. :slight_smile:

2 Likes

He did express lacking in funds just prior to the hack. Hasn’t mentioned it since…

1 Like

As of this moment there are over 11M us dollars worth of funds that have been tornado cash’d and withdrawn to numerous wallets, ready to exchange to fiat… I have submitted updated copies of my work every hour to the harmony team via the email that they provided and will continue to update the community with anything that I find

9 Likes

Love the work you did and have done. Thank you so much :pray: :sparkling_heart:

If your work leads to catching the hacker(s), you have my vote to get the $1M.

4 Likes

About 235k has been removed, mostly from Fixed Float:

Removed Balance
0x82405d67eef3d5608D6b6F691517B57083d39b08 $20,761.00 RenBTC
0x8C1F4fB4B708bFbE62a07379f3a73533ed577F6c $23,822.15 Fixed Float
0x33807fce9cba084181f0c1fd63ab79f8fd6a7377 $11,910.32 Fixed Float
0xC51cC6f941307451448E01F4CEa42dFFfA9aC991 $11,941.02 Fixed Float
0xe34e49e265906B8E31bD13190Dd59052713C0eCa $35,914.64 Fixed Float
0x7Fa5b4EE26B54d5D06B1bB7c0580b91ad371Dc54 $35,948.34 Fixed Float
0xe2Ec1F927Ed4747B18bA712b13ADB6Ad5B26416E $29,952.67 Fixed Float
0xd0fd7722387d21Ddc437d4BA9001672D30076CA3 $29,946.24 Fixed Float
0x5e02Db7613cF7af7D52e8Fa976a1290b88df0Ae6 $35,563.79 Fixed Float
3 Likes

You might already know this, but it looks like they sent the renBTC to 31viNVP258JMGbMVGXJxwnHfhnRFn4MuSr
If you go on etherscan and look at the burn transaction: Ethereum Transaction Hash (Txhash) Details | Etherscan change the view input as to UTF-8, you get the btc address that the renBTC is sent to.

It looks like that address only has two transactions though. They received 1 btc and sent .01

2 Likes

thank you for this information! I did not know this! I am unfamiliar with the app and didn’t have time to read the WP in the midst of this!

1 Like