We do the research, you get the alpha!
We’ve been hacked for about $160M in our defi operations. Cefi and OTC operations are not affected
— wishful cynic (@EvgenyGaevoy) September 20, 2022
$89,573.00
-2.62%$3,032.25
-3.99%$2.11
-6.60%$2.04
-2.17%$884.99
-1.84%$0.999694
-0.00%$133.42
-3.58%$0.286974
0.07%$3,033.85
-3.94%$0.139481
-4.99%$0.414502
-5.65%$1.038
2.40%$60.72
-2.20%$3,701.97
-4.03%$570.60
-0.58%$89,385.00
-2.50%$3,288.90
-4.02%$0.999067
-0.07%$13.61
-4.28%$0.999772
-0.04%$9.57
-2.08%$3,033.60
-4.08%$31.22
-6.63%$0.241125
-3.94%$3,282.49
-4.03%$389.11
-3.38%$0.998944
-0.16%$89,655.00
-2.58%$80.37
-3.46%$352.91
-8.76%$1.54
-5.73%$13.27
-7.87%$0.133409
-3.54%$0.00000835
-2.96%$1.086
0.59%$0.150281
-1.61%$0.999654
-0.06%$0.103923
-2.27%$1.59
0.36%$0.999801
-0.05%$1.21
-0.00%$1.076
1.75%$5.49
-7.16%$183.70
-3.54%$0.998956
-0.01%$277.14
-3.18%$3.47
-1.44%$1.33
2.38%$104.76
-3.54%$4,209.12
-0.23%$0.999182
-0.01%$0.060445
-13.32%$1.68
-6.01%$1.002
-3.11%$13.19
-3.84%$1.00
0.00%$0.260297
-7.58%$3.52
-2.32%$0.226805
-1.02%$166.33
-3.65%$0.00000436
-7.19%$3,031.98
-3.92%$0.00745725
-5.92%$0.00290947
-6.44%$133.47
-3.62%$4.65
-2.22%$0.00000167
-1.63%$1.14
0.04%$0.465458
-4.04%$4,210.17
-0.22%$0.053075
-3.58%$0.576235
-5.81%$0.999827
0.01%$0.02594439
0.06%$10.17
-3.52%$0.999275
-0.01%$90.62
-5.09%$1.11
0.00%$1.11
0.00%$0.999287
-0.03%$0.999679
-0.00%$3,487.14
-4.05%$0.120714
-2.72%$1.72
-9.53%$0.05286
-5.26%$10.21
-1.48%$884.85
-1.84%$0.132525
-3.69%$145.06
-3.43%$5.71
-3.82%$0.202482
-5.25%$3,211.28
-3.94%$0.01264666
-2.18%$1.48
-3.79%$2.20
-4.48%$89,592.00
-2.34%$0.999185
-0.09%$0.01304991
-2.49%$89,763.00
-2.49%$3,245.67
-4.18%$89,371.00
-2.54%$0.962114
-1.18%$0.04932589
-1.26%$31.40
-6.68%$0.997701
-0.02%$1.60
-4.55%$10.91
0.01%$0.126166
-5.62%$113.54
0.02%$1.016
-0.05%$2.26
-3.18%$0.00000904
-5.28%$3,232.22
-3.93%$2.21
-4.02%$89,399.00
-2.75%$3,276.08
-3.82%$0.228478
-5.20%$92,028.00
-0.56%$1.11
0.34%$1.27
-9.22%$0.01078983
-6.21%$0.999699
-0.01%$154.00
-3.60%$0.999893
0.00%$0.998826
-0.11%$0.23368
-5.04%$3,104.75
-4.05%$0.644614
-6.87%$0.084985
1.62%$3,032.94
-4.01%$0.654148
-5.20%$47.05
-6.59%$3.06
-8.46%$0.301347
-5.22%$0.387229
-4.48%$0.841209
-7.65%$89,289.00
-2.62%$5.49
-4.58%$0.99346
-0.46%$0.29352
-3.50%$3,031.20
-4.00%$0.00549812
-3.99%$0.108697
-8.54%$5,172.95
-3.62%$0.476489
-2.97%$0.57012
-8.41%$0.999966
-0.01%$0.997284
-0.06%$2,460.42
0.00%$179.30
-3.54%$0.569186
-7.77%$0.997618
0.07%$0.04533518
-4.84%$0.00531574
-0.16%$0.779402
-3.20%$3,033.94
-3.99%$3,262.82
-3.91%$1.22
-0.04%$0.076836
-4.00%$0.00004477
-5.08%$3,225.05
-3.30%$0.999824
0.06%$0.12363
-4.19%$11.16
-4.92%$1.007
-2.87%$0.09999
-0.78%$1.11
0.04%$0.0214944
2.12%$1.005
1.63%$20.41
-1.42%$0.04119166
3.53%$3,321.90
-4.24%$2.43
-4.82%$89,946.00
-2.69%$0.068348
-4.79%$0.0000004
-2.37%$90,454.00
0.00%$3,372.71
-3.91%$0.367322
-3.97%$0.257343
-11.48%$0.384304
4.40%$89,548.00
-2.55%$22.64
0.16%$0.370181
-2.93%$0.140683
-4.45%$0.070915
-4.28%$1.94
-0.84%$0.095379
-4.63%$0.139517
-4.86%$0.00000036
-3.70%$0.217832
-3.32%$3,032.03
-4.05%$0.00694021
0.21%$0.173307
-5.99%$19.97
-8.33%$1.16
-0.11%$16.35
-8.07%$0.332023
-1.98%$125.84
-2.97%$0.00709303
-5.05%$31.20
-6.67%$0.999781
-0.01%$135.09
-0.13%$3,279.18
-3.98%$0.091237
-4.67%$1.001
0.02%$0.00005632
70.71%$0.265885
3.05%$0.02970052
-1.55%$31.13
-8.69%$1.11
-4.14%$0.303378
-2.76%$26.91
-3.39%$1.088
0.01%$2,993.40
-4.02%$0.02720618
0.48%$0.153103
-0.50%$89,646.00
-2.61%$3,278.57
-3.83%$0.180459
-3.72%$4.10
-1.42%$1.001
0.00%$0.03330291
-11.74%$3,035.31
-3.95%$1.39
0.16%$0.993436
-0.09%$937.84
-1.81%$0.00000134
-9.49%$0.998583
-0.13%$0.617476
-7.27%$0.114054
-2.73%$0.0027822
-1.60%$1.00
0.00%$3.98
-4.35%$0.00000125
12.10%$0.18095
-3.52%$3,029.39
-3.86%$13.27
-7.93%$0.264711
-7.67%$0.505883
-8.62%$0.159375
1.54%$3.15
-6.99%$0.237538
-4.31%$8.14
8.68%$0.078056
-1.72%$0.525574
-7.46%$0.288481
-3.52%$0.999571
0.17%
Algorithmic market maker service Wintermute suffered a security breach on Tuesday, with hackers making off with around $160 million across 90 assets within the platform's portfolio.
In a brief statement published on Twitter, Wintermute founder and CEO Evgeny Gaevoy stated that “we’ve been hacked for about $160M in our defi operations. Cefi and OTC operations are not affected.”
While around $160 million has been appropriated by the hacker, Gaevoy noted that “out of 90 assets that has been hacked only two have been for notional over $1 million (and none more than $2.5M),” and that as a result there shouldn’t be a “major selloff” of assets.
We’ve been hacked for about $160M in our defi operations. Cefi and OTC operations are not affected
— wishful cynic (@EvgenyGaevoy) September 20, 2022
Gaevoy assured users, lenders and partners of the platform that they are “solvent with twice over that amount in equity left”, so all associated entities should expect a full restoration of operations within the coming days.
Gaevoy added that Wintermute remains open to treating the hack as a “white hat” scenario, in which the hacker returns the funds and receives a reward for identifying a vulnerability.
While Gaevoy’s tweet was published around 8am UTC, a number of Twitter users seemingly uncovered suspicious activity affecting Wintermute as early as 6am UTC, engaging in a debate on the ins and outs of wash trading after discovering that large amounts had been transferred from Wintermute into exchange liquidity pool 3pool.
Following Gaevoy’s announcement, self-proclaimed on-chain sleuth and 2D detective ZachXBT claimed to have identified the hacker’s wallet address, which contains $47.8 million in its wallet, with the remaining $114.3 million in the decentralized stablecoin exchange Curve Protocol.
Further investigation on blockchain exploration platform EtherScan reveals that the wallet in question has made 45 transactions over the past 5 hours, and holds a plethora of 80 tokens in their wallet including $12.9 million of Wrapped Bitcoin (WBTC), $3.9 million of Pax Dollar (USDP), and $2.3 million in Somnium Space CUBE tokens, among others.
Decrypt has reached out to Wintermute for comment and will update this story should the company respond.




