Kraken Loses $3M to Exploited Zero-Day Flaw

A security researcher exploited a critical flaw at Kraken, stealing US$3 million in digital assets

The flaw allowed users to inflate their account balances through a deposit loophole

Kraken fixed the issue within 47 minutes, assuring no client assets were at risk

The researcher and associates allegedly extorted Kraken instead of reporting under bug bounty terms

Kraken treated the incident as a criminal matter, coordinating with law enforcement