We collect cookies to analyze our website traffic and performance; we never collect any personal data.Cookies Policy
Accept
Michigan Post
Search
  • Home
  • Trending
  • Michigan
  • World
  • Politics
  • Top Story
  • Business
    • Business
    • Economics
    • Real Estate
    • Startups
    • Autos
    • Crypto & Web 3
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Beauty
    • Art & Books
  • Health
  • Sports
  • Entertainment
  • Education
Reading: ‘Sherlock missed it’: Cork hacker slams audit corporations in on-chain messages
Share
Font ResizerAa
Michigan PostMichigan Post
Search
  • Home
  • Trending
  • Michigan
  • World
  • Politics
  • Top Story
  • Business
    • Business
    • Economics
    • Real Estate
    • Startups
    • Autos
    • Crypto & Web 3
  • Tech
  • Lifestyle
    • Lifestyle
    • Food
    • Beauty
    • Art & Books
  • Health
  • Sports
  • Entertainment
  • Education
© 2024 | The Michigan Post | All Rights Reserved.
Michigan Post > Blog > Crypto & Web 3 > ‘Sherlock missed it’: Cork hacker slams audit corporations in on-chain messages
Crypto & Web 3

‘Sherlock missed it’: Cork hacker slams audit corporations in on-chain messages

By Editorial Board Published June 20, 2025 4 Min Read
Share
‘Sherlock missed it’: Cork hacker slams audit corporations in on-chain messages

‘Sherlock missed it’: Cork hacker slams audit corporations in on-chain messages

The hacker behind final month’s $12 million exploit of Cork Protocol has weighed in on a debate between squabbling crypto safety audit corporations.

Messages left on-chain from the hacker’s deal with seem to set the document straight concerning the root causes of the incident and lament the clout-chasing of some auditors within the wake of such assaults.

The feedback got here in response to a put up made on Wednesday by Jack Sanford, CEO of safety audit agency Sherlock. Sandford accuses rivals Spearbit and Cantina of lacking the vulnerability and masking up their failures.

Within the first message, the hacker states “sherlock missed it.” Minutes later, they moved 4,530 ether — at present valued at $11.6 million — to a brand new deal with.

The talk

On Might 28, a16z-backed Cork Protocol introduced a “security incident affecting the wstETH:weETH market” and a short lived pause of all markets. The autopsy report that adopted said that “the attacker exploited an access control vulnerability in the Cork Hook, which none of our audits flagged.”

Nevertheless, Sanford’s put up factors to the commit hashes submitted in varied auditors’ stories, as proof that the supposed vulnerability didn’t fall inside their scope.

He then highlights Cantina’s failure to offer such hashes and the way Spearbit is but to launch their report publicly, regardless of it being overdue.

Within the preliminary message left by the hacker, they seemingly appropriate the assumed root reason for the exploit, stating “uniswap hook is not problem,” pouring chilly water on the concept the bug was solely current in later variations of the code.

The dressing-down

The attacker then adopted up with “a really big bombshell,” written in Estonian, wherein they seem to contradict themselves by stating that “Sherlock didn’t miss it,” and that “there are many ways to take DS, not just the Uniswap hook.”

He warns that every one corporations that missed the preliminary bug “should not be trusted.”

Considerably satirically, the hacker’s predominant beef seems to be with blockchain safety corporations that capitalize on the eye introduced by hacks.

Companies that “failed to detect the real problem” of their assessments allegedly embody Dedaub, Three Sigma, Halborn, Blocksec, and plenty of others.

The hacker says corporations that search for promotion by releasing evaluation earlier than the official autopsy “are not recommended.”

In a closing message, despatched hours later, the hacker doubles down on its assault on audit corporations that “write nonsense about bugs to promote their brands and profit from the efforts of others.”

They name out Dedaub’s Neville Grech specifically, accusing him of “promoting your brands by analyzing bugs that you can’t detect yourself.”

The Cork Protocol perpetrator?

The content material of those later messages suggests the hacker could be a member of the safety researcher neighborhood with an axe to grind. Others actually appear to suppose so.

So he steals 12M, observes the entire drama AND then feedback on it 😅

I’m questioning who that’s now .. the possibility could be very excessive everyone knows him https://t.co/spm4NNTTvd

— CharlesWang (@0xCharlesWang) June 19, 2025

In that case, it wouldn’t be the primary time suspicions had been raised about a longtime determine within the scene being a blackhat. Earlier this 12 months, Nick L. Franklin, a prolific researcher who claimed to have “analyzed every major blockchain hack,” was linked to the $50 million Radiant Capital hack.

TAGGED:auditCorkfirmshackermessagesmissedonchainSherlockslams
Share This Article
Facebook Twitter Email Copy Link Print

HOT NEWS

How to Find Section 8 Houses for Rent in Tucson, Arizona

Real EstateTrending
April 1, 2026
AI has identified three parasites of economic prosperity

AI has identified three parasites of economic prosperity

Currently, the development of a proprietary AI S2SChat within the Arllecta Group is undergoing testing…

March 25, 2026
One of Very Few Australians to Conquer The Crash Lucha Libre: Craven’s Historic Run in Tijuana

One of Very Few Australians to Conquer The Crash Lucha Libre: Craven’s Historic Run in Tijuana

By Tessa Green In the chaotic, neon‑lit world of Tijuana’s lucha libre scene, one Australian…

March 7, 2026
Aburob’s Bold Encounter With Little Saint James

Aburob’s Bold Encounter With Little Saint James

In early 2026, Arab YouTuber Aburob captured global attention with a bold video in which…

February 22, 2026
Inside the Hidden World of Dog Fighting: Detective Masaji’s Investigation Exposes a Shadow Industry

Inside the Hidden World of Dog Fighting: Detective Masaji’s Investigation Exposes a Shadow Industry

In a chilling exposé drawn from his undercover inquiries and field footage, Detective Masaji has…

February 20, 2026

YOU MAY ALSO LIKE

The Block Mine Emerges as a Global Mining Powerhouse—Ushering in a New Era of Digital Asset Infrastructure with Nexa

The global blockchain economy is entering its next great phase—and The Block Mine is standing at the center of it.…

Crypto & Web 3Trending
December 18, 2025

Cathie Wooden falls for AI slop regardless of heavy OpenAI, Tempus bets

Cathie Wooden, the Ark Make investments CEO who heralded AI as “the most transformative technology in history” whereas investing tens…

Crypto & Web 3
December 18, 2025

Aave Labs v DAO: Who controls the cash — and the model?

The talk between Aave DAO and Aave Labs continues to escalate. In what started as a spat over the “private…

Crypto & Web 3
December 17, 2025

Ex-Alameda CEO Caroline Ellison leaves federal jail after 11 months

Caroline Ellison, the previous co-CEO of Alameda Analysis, is not behind bars after being moved to a midway home lower…

Crypto & Web 3
December 17, 2025

Welcome to Michigan Post, an esteemed publication of the Enspirers News Group. As a beacon of excellence in journalism, Michigan Post is committed to delivering unfiltered and comprehensive news coverage on World News, Politics, Business, Tech, and beyond.

Company

  • About Us
  • Newsroom Policies & Standards
  • Diversity & Inclusion
  • Careers
  • Media & Community Relations
  • Accessibility Statement

Contact Us

  • Contact Us
  • Contact Customer Care
  • Advertise
  • Licensing & Syndication
  • Request a Correction
  • Contact the Newsroom
  • Send a News Tip
  • Report a Vulnerability

Term of Use

  • Digital Products Terms of Sale
  • Terms of Service
  • Privacy Policy
  • Cookie Settings
  • Submissions & Discussion Policy
  • RSS Terms of Service
  • Ad Choices

© 2024 | The Michigan Post | All Rights Reserved

Welcome Back!

Sign in to your account

Lost your password?