The post US Charges Hacker Behind $53 Million Uranium Finance Exploit appeared on BitcoinEthereumNews.com. In brief U.S. authorities have charged Jonathan SpallettaThe post US Charges Hacker Behind $53 Million Uranium Finance Exploit appeared on BitcoinEthereumNews.com. In brief U.S. authorities have charged Jonathan Spalletta

US Charges Hacker Behind $53 Million Uranium Finance Exploit

For feedback or concerns regarding this content, please contact us at crypto.news@mexc.com

In brief

  • U.S. authorities have charged Jonathan Spalletta with exploiting Uranium Finance, draining tens of millions of dollars from the company that led to its collapse.
  • Prosecutors say he allegedly abused smart contract flaws, later moving funds through mixers and buying high-value collectibles.
  • About $31 million in crypto linked to the case was seized last year.

An alleged crypto hacker who once described digital assets as “fake internet money” is now in U.S. custody, accused of carrying out a $53 million exploit that helped bring down a decentralized exchange, in a case an expert says shows courts are taking a harder look at whether smart contract exploits can be treated as lawful.

U.S. authorities on Monday unsealed an indictment charging Jonathan Spalletta, also known as “Cthulhon” and “Jspalletta,” with computer fraud and money laundering in connection with two 2021 attacks on Uranium Finance, a decentralized exchange. 

Spalletta surrendered to authorities on Monday following the charges, now facing a maximum of 10 years on the computer fraud count and 20 years on the money laundering charge.

“Stealing from a crypto exchange is stealing—the claim that ‘crypto is different’ does not change that.”U.S. Attorney Jay Clayton said in a statement

The case fits into a wider effort to address DeFi exploits that combine technical loopholes with misuse of funds.

“The idea that ‘code is law’ is increasingly being tested in court,”  Angela Ang, head of policy and strategic partnerships for Asia Pacific at TRM Labs, told Decrypt

“Exploiting smart contract vulnerabilities may be technically possible, but that doesn’t mean that courts will view it as legally permissible—especially when paired with laundering and concealment,” she added.

The indictment alleges Spalletta carried out a first attack on April 8, 2021, exploiting a rewards-tracking bug in Uranium’s smart contracts to repeatedly drain a liquidity pool of approximately $1.4 million. 

Roughly two weeks later, he wrote to another individual, “I did a crypto heist of $1.5MM… There was a bug in a smart contract, and I exploited it… Crypto is all fake internet money anyway.”

Authorities say he later returned most of the stolen funds after negotiating with the platform, but kept about $386,000 under what prosecutors describe as a sham “bug bounty” arrangement.

On April 28, he allegedly exploited another flaw across 26 liquidity pools, obtaining about $53.3 million in crypto and leaving Uranium Finance unable to continue operating.

Between April 2021 and November 2023, Spalletta allegedly funneled around $26 million through Tornado Cash, moving funds across multiple blockchains and wallets to obscure their origin. 

Onchain sleuth ZachXBT had previously traced the laundering trail in a December 2023 report, identifying how stolen ETH was withdrawn from the mixer and routed through brokers to purchase high-value collectibles.

The collectibles included rare Magic and Pokémon cards, a Julius Caesar-era coin, and a Wright brothers artifact later carried to the moon by Neil Armstrong, according to the indictment.

Last February, law enforcement also seized crypto worth about $31 million that authorities say was tied to the alleged scheme.

When asked whether stricter auditing or insurance could have prevented the platform’s collapse, Ang said that “Stronger auditing and insurance mechanisms can reduce the likelihood and impact of exploits, but they’re not a silver bullet.” 

Organizations need a “multi-layered defense,” including “regular security audits, secure coding practices, multi-signature controls, and a strong security culture, rather than relying on any single safeguard,” she added.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.

Source: https://decrypt.co/362836/us-charges-hacker-53-million-uranium-finance-exploit

Market Opportunity
Smart Blockchain Logo
Smart Blockchain Price(SMART)
$0.005123
$0.005123$0.005123
-1.63%
USD
Smart Blockchain (SMART) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact crypto.news@mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.
Tags:

You May Also Like

The Role of Reference Points in Achieving Equilibrium Efficiency in Fair and Socially Just Economies

The Role of Reference Points in Achieving Equilibrium Efficiency in Fair and Socially Just Economies

This article explores how a simple change in the reference point can achieve a Pareto-efficient equilibrium in both free and fair economies and those with social justice.
Share
Hackernoon2025/09/17 22:30
Cryptos Signal Divergence Ahead of Fed Rate Decision

Cryptos Signal Divergence Ahead of Fed Rate Decision

The post Cryptos Signal Divergence Ahead of Fed Rate Decision appeared on BitcoinEthereumNews.com. Crypto assets send conflicting signals ahead of the Federal Reserve’s September rate decision. On-chain data reveals a clear decrease in Bitcoin and Ethereum flowing into centralized exchanges, but a sharp increase in altcoin inflows. The findings come from a Tuesday report by CryptoQuant, an on-chain data platform. The firm’s data shows a stark divergence in coin volume, which has been observed in movements onto centralized exchanges over the past few weeks. Bitcoin and Ethereum Inflows Drop to Multi-Month Lows Sponsored Sponsored Bitcoin has seen a dramatic drop in exchange inflows, with the 7-day moving average plummeting to 25,000 BTC, its lowest level in over a year. The average deposit per transaction has fallen to 0.57 BTC as of September. This suggests that smaller retail investors, rather than large-scale whales, are responsible for the recent cash-outs. Ethereum is showing a similar trend, with its daily exchange inflows decreasing to a two-month low. CryptoQuant reported that the 7-day moving average for ETH deposits on exchanges is around 783,000 ETH, the lowest in two months. Other Altcoins See Renewed Selling Pressure In contrast, other altcoin deposit activity on exchanges has surged. The number of altcoin deposit transactions on centralized exchanges was quite steady in May and June of this year, maintaining a 7-day moving average of about 20,000 to 30,000. Recently, however, that figure has jumped to 55,000 transactions. Altcoins: Exchange Inflow Transaction Count. Source: CryptoQuant CryptoQuant projects that altcoins, given their increased inflow activity, could face relatively higher selling pressure compared to BTC and ETH. Meanwhile, the balance of stablecoins on exchanges—a key indicator of potential buying pressure—has increased significantly. The report notes that the exchange USDT balance, around $273 million in April, grew to $379 million by August 31, marking a new yearly high. CryptoQuant interprets this surge as a reflection of…
Share
BitcoinEthereumNews2025/09/18 01:01
A7 leaks reveal Russia’s influence over Eastern European elections with crypto

A7 leaks reveal Russia’s influence over Eastern European elections with crypto

The post A7 leaks reveal Russia’s influence over Eastern European elections with crypto appeared on BitcoinEthereumNews.com. Blockchain analytics firm Elliptic has flagged a cache of leaked data from businesses controlled by sanctioned Moldovan oligarch and Kremlin ally Ilan Shor. The files, leaked earlier this month, provide a detailed look inside the A7 group, an operation based in Russia, operating a specialized “sanctions evasion-as-a-service.” Elliptic’s analysis of the data shows that several crypto wallets have processed stablecoin transactions worth $8 billion over the past 18 months, tracing the digital money flow from Russian-affiliated entities to political operations in Moldova as the country prepares to hold its parliamentary elections. Reports mentioned that Shor’s switch to digital assets was necessary because of his controversial past. A7 document leaks show Russia’s influence using crypto According to several reports, Shor fled Israel after he was convicted in 2017 for his role in the theft of $1 billion from Moldovan banks. Shor ended up in Russia, with the country granting him citizenship. The United States later sanctioned him in 2022, accusing him of making efforts to undermine democracy in Moldova. From his position as a fugitive, Shor started the A7 group in 2024, creating a structured connection for the expertise he had cultivated. In the report released by Elliptic, it claimed that A7 group is partly owned by Russia’s state-owned Promsvyazbank (PSB), a bank that has been sanctioned for financing Russia’s defense industry, tying A7 as a de facto arm of the country’s financial warfare apparatus. The scale of the operation is quite big, with Shor reportedly boasting to Vladimir Putin in a statement earlier this month that A7 had carried out transactions worth 7.5 trillion rubles, which is approximately $89 billion, for Russian businesses in ten months. While the mechanisms of operations were not clear to people at the time, the A7 leaks now provide a detailed look into the blueprint…
Share
BitcoinEthereumNews2025/09/27 18:58