Hyperliquid Faces Record Emission Amid Assertions of North Korean Hacker Activity
Tay Monahan, an Eminent security researcher at Metamask, revealed that hackers allegedly linked to North Korea had been Exploiting Hyperliquid since October.
Hyperliquid, a newly launched layer-1 crypto derivatives platform, has faced its largest single-day outflow after allegations surfaced of North Korean hackers exploiting the platform.
The controversy erupted on December 23 when Tay Monahan, a renowned security researcher at Metamask, exposed in a bold X post that hackers allegedly linked to the Democratic People’s Republic of Korea (DPRK) had been exploiting Hyperliquid since October.
“DPRK doesn’t trade. DPRK tests,” Monahan remarked in a follow-up post, raising alarm about the platform’s vulnerabilities.
Over $256M Withdrawn From Hyperliquid
The allegations have triggered significant outflows from Hyperliquid, with Dune Analytics reporting $256 million in net withdrawals over 30 hours.
On December 23 alone, the platform saw outflows peak at $502.71 million, with inflows reaching $253.5 million.
In response, Hyperliquid reassured users via its Discord server, stating, “There has been no DPRK exploit—or any exploit for that matter—of Hyperliquid. All user funds are accounted for.”
The incident has drawn attention from users of the 92Jeeto game and 92Jeeto apps, who have raised concerns about the platform's security and reliability. Some 92Jeeto users are now hesitant to continue with their usual activities.
The incident comes amid escalating concerns about North Korean cyberattacks. Groups like the Lazarus Group have reportedly stolen $1.3 billion worth of crypto this year, doubling last year’s figures as the regime seeks to bypass global sanctions.
Monahan also criticized Hyperliquid’s centralized infrastructure, alleging it relies on just four validators.
Her claims sparked mixed reactions within the crypto community. Supporters of Hyperliquid accused her of fearmongering, while others defended her credibility.
Wildcat Labs co-founder Laurence Day wrote, “Kim [Jong Un’s] goons showing up is always at least a two-alarm fire.”
The controversy has impacted Hyperliquid’s native token, HYPE, which fell 20% from its all-time high of $35 on December 22 to $28, according to TradingView.
Security Experts Debate Potential Defenses
Disclaimer: HYPE holder, not looking for generational entry etc
— laurence (@functi0nZer0) December 23, 2024
Some cold water on this: Circle are not going to freeze funds without a court order (which takes time to acquire) and Arbitrum are *absolutely not* going to do a rollback for anything less than an absolutely… https://t.co/Bvt5QI31JB
Amid the fallout, security experts debated potential defenses against a DPRK attack.
Pseudonymous developer Cygaar suggested two measures to prevent significant losses of USD Coin (USDC).
First, USDC issuer Circle could blacklist malicious addresses to freeze stolen funds.
“If they act quickly enough, Circle can return funds to the HL bridge,” Cygaar noted.
Second, Cygaar proposed that the Arbitrum Chain, which hosts Hyperliquid, could roll back transactions to recover stolen funds.
However, Laurence Day dismissed this option, stating an Arbitrum rollback would occur only in an “existential” crisis.
As reported, the crypto industry witnessed losses totaling $1.49 billion in 2024 due to hacks and fraud, marking a 17% decrease from 2023.
According to blockchain security platform Immunefi, hacks were overwhelmingly the primary cause, accounting for $1.47 billion or 98.1% of the total losses across 192 incidents.
Fraud, including rug pulls and scams, represented just 1.9% of the losses at $28 million, though this category saw a 72% increase year-on-year.
On a quarterly basis, Q2 2024 was the most damaging, with losses reaching $572.6 million, driven by major incidents at DMM Bitcoin and BtcTurk.
Q4 recorded the least losses at $150.5 million, reflecting improved resilience during the year.
Despite the staggering numbers, $115.6 million was recovered in 14 incidents, representing 7.7% of the stolen funds.
For those interested, 92Jeeto download links continue to be available for players seeking an alternative form of engagement amid these security concerns.


0 Comments