@ImnotleavingE@benbybit@elliptic@THORChain I could be wrong, but if majority of thorchain validators agree on stoping bridging for the hackers, shouldn't they have the ability to do that?
@safe I'm kinda suprised that bybit didn't develop a frontend of safe wallet of their own, tailored for their internal use. given the amount of resources they have.
@vaibhavgeek@safe Even if the hackers hacked the browsers bybit signers are using, ledger should still show what the transaction is about. There's probably some negligence from bybit.
@safe I guess the reason they did it this way is that, changing the mastercopy doesn't involve moving funds, which would not raise any immediate red flags for the signers
@safe Just checked the Bybit cold wallet at 0x1Db92e2EeBC8E0c075a02BeA49a2935BcD2dFCF4. I noticed 2 things.
1, the hackers somhow managed to send a transaction to update the mastercopy of the safe proxy to an unverified smart contract 0xbdd077f651ebe7f7b3ce16fe5f2b025be2969516