CrediX hacker agrees to return $4.5m after successful negotiations

2025/08/05 23:26

The attacker behind the $4.5 million exploit on CrediX Finance has agreed to return the stolen funds following a settlement with the protocol.

Summary
  • CrediX Finance was exploited for $4.5 million via a multisig admin wallet attack.
  • The hacker agreed to return the full amount in exchange for a direct settlement funded by CrediX’s treasury.
  • July 2025 alone saw over $153 million lost to hacks, with this year’s losses now topping $3.1 billion.

In an update shared late Monday, CrediX revealed that it has successfully negotiated with the exploiter who drained $4.5 million from its protocol, and is now expecting the return of the stolen funds within 24 to 48 hours. 

The deal includes an undisclosed payout from CrediX’s treasury to the hacker in exchange for the safe return of assets, with no mention of legal action or additional terms.

Once received, the funds will be used to reimburse affected users. CrediX said it will airdrop each user’s share of the returned assets, ensuring full recovery of losses from the hack.

How the CrediX hack happened

The attack on CrediX came less than a month after the protocol launched as a real-world asset lending platform, allowing borrowers to receive loans backed by off-chain income and collateral from DeFi lenders.

According to security firm SlowMist, the exploit began nearly a week prior to the attack, when hackers gained unauthorized access to the protocol’s multisig admin and bridge wallets.

With full control over key infrastructure, the attackers minted collateral tokens, borrowed against the protocol, and quickly drained its liquidity. The stolen funds were then bridged from Sonic to Ethereum.

The CrediX hack is the latest in a growing list of DeFi protocols hit by major exploits this year. In July alone, more than $153 million was lost to crypto hacks and scams, pushing total industry losses for 2025 so far above $3.1 billion.

Meanwhile, another recent victim, GMX, which was hacked for $42 million on July 9, also managed to recover stolen funds last month after offering its attacker a 10% bounty.

But even with these successful recoveries, the consistent trend of attacks points to a deeper problem. Despite being labeled as decentralized, many DeFi protocols still rely on centralized controls, such as admin keys, upgradable contracts, and emergency pause functions. These features are now common entry points for attackers, underscoring the need for stronger security and better defense mechanisms.

As of now, CrediX has not confirmed receipt of the funds, and it remains to be seen whether the attacker follows through on the agreement.

Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

China Accuses Foreign Entity of Misusing Crypto for Surveillance Through Iris-Scanning

China Accuses Foreign Entity of Misusing Crypto for Surveillance Through Iris-Scanning

A China security ministry has warned that foreign agents are using crypto schemes to collect sensitive biometric data, including iris scans, posing a threat to both personal privacy and national security. Local outlet Global Times reported Wednesday that the ministry outlined the growing risks tied to biometric technologies. It said recent cases have shown foreign intelligence agencies illegally harvesting facial data from targeted individuals to carry out espionage activities inside China. The ministry did not identify specific firms, but the description of the scheme closely mirrors the model used by World, the crypto startup co-founded by OpenAI CEO Sam Altman. China's Ministry of State Security has publicly warned that a foreign company is using the issuance of cryptocurrency tokens as a gimmick to scan and collect user iris information worldwide and transfer the data source, posing a threat to personal information security and even… — Wu Blockchain (@WuBlockchain) August 6, 2025 Crypto Token Incentives Used to Collect Iris Data, China Ministry Says World, formerly known as Worldcoin , offers crypto tokens in exchange for users’ iris scans. The company claims the scans help verify a user’s unique identity and enable digital financial access, particularly in underserved markets. However, World was not explicitly named in the MSS advisory. Cryptonews has reached out to World for comment on the matter. The ministry described a case in which a foreign company allegedly used the issuance of cryptocurrency tokens as a pretext to scan and collect iris data from users around the world. This data was then transferred overseas, according to the statement, raising red flags for national and individual security. Officials Link Biometric Data Leaks to National Security Threats Biometric identification technologies, the ministry noted, have gained rapid traction in recent years. Used for their speed and accuracy, these systems collect and process facial features, fingerprints, irises and even body movements. While these tools offer convenience, the ministry warned that the risk of data leaks and misuse has also grown significantly. Officials cited cases in which foreign spies forged biometric information to gain access to classified materials or infiltrate sensitive workplaces. In another example, a fingerprint payment system linked to a corporate database was repeatedly breached due to lax cybersecurity, resulting in major data leaks. Further, the ministry said that iris patterns are especially sensitive. They are highly stable and nearly impossible to replicate, making them valuable for authentication in high-security environments. Their uniqueness, however, also makes them a prime target for malicious actors, the ministry said. China Warns Citizens to Scrutinize Biometric Data Practices The warning comes as biometric systems continue to expand across sectors ranging from finance to border control. In this context, the ministry urged the public to remain cautious when handing over biometric data, especially for services involving facial, fingerprint or iris recognition. Citizens, the statement said, have the right to ask data collectors to explain how personal information will be stored, processed and used. The ministry also advised individuals to review privacy policies carefully and to stay alert for signs of excessive data collection. Although the ministry refrained from proposing new regulations, its statements reflect growing unease within China’s security establishment regarding the convergence of digital identity technologies and cross-border data transfers.
Share
CryptoNews2025/08/06 13:02