According to Cointelegraph, the decentralized anonymous lottery protocol Foom Cash lost approximately $2.26 million due to a security exploit, but a white-hat hacker intervened in time to recover $1.84 million ( 81% of the stolen funds). The security incident stemmed from a critical error during Foom Cash’s deployment, specifically involving a misconfiguration of the Groth16 verifier, which allowed attackers to submit forged proofs. The white-hat hacker, known as Duha, identified the vulnerability and swiftly secured the funds on the Base chain, while the security firm Decurity handled the rescue of funds on Ethereum. In return, Foom Cash paid the white-hat hacker a $320,000 bounty and Decurity a $100,000 security fee.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
