A compromised third-party vendor gave hackers a way in, and around $3M was stolen from Polymarket users.
The vulnerability has been patched, and every affected user will be made whole.
The platform for predicting market users impacted by a website exploit that led to the theft of about $3 million in cryptocurrency assets will receive full reimbursement from Polymarket. The claim is that, instead of an issue with the underlying architecture of the platform, the incident was due to malware that was added to the front end of the platform by a compromised third-party vendor.
The malicious script was distributed to only a few selected individuals. It helped the attacker drain funds from the users’ wallets while interacting with the affected front-end. Then Polymarket declared that they were able to identify the cause of the issue, isolate the dependence and begin contacting the affected users.
“Our team discovered that a third-party vendor had been compromised, injecting
We współpracy z: https://thenewscrypto.com/3m-exploit-hits-polymarket-users-to-receive-full-refunds-after-third-party-breach/