Skip to main content
Important: We do not provide financial advice or custody funds. All transactions occur on third-party platforms.
Back to news
technologymedium impact

A Failed 2016 Ethereum ICO Just Hacked Itself to Unlock 1,003 ETH — Here's How That's Even Possible

72d ago · 1 source

A defunct Ethereum ICO project from 2016 managed to recover 1,003 ETH that had been locked in its own smart contract by exploiting a vulnerability in its own code. The ETH, worth over $2.5 million at current prices, had been inaccessible for nearly a decade. The incident highlights both the permanence and the quirks of smart contracts deployed on Ethereum's blockchain.

WHY IT MATTERS

Imagine you put money into a vending machine that broke down years ago, and your snack has been stuck behind the glass ever since. Now imagine someone figured out that if you press a very specific combination of buttons, the machine glitches and releases everything inside. That's essentially what happened here, but with a smart contract on Ethereum instead of a vending machine. A 'smart contract' is a program that lives on the blockchain and automatically handles funds based on pre-written rules. Once it's deployed, nobody can change it — not even the people who created it. In this case, a project from 2016 that failed still had over 1,000 ETH trapped inside its contract. Someone found a loophole in the code and used it to free the funds. It's a fascinating example of how permanent and sometimes unpredictable blockchain code can be.

Read the full analysis with a CryptoBipto membership

Create a free account and subscribe to unlock deep-dive analysis on every story.

Get started

SOURCES

RELATED

ETHSmart ContractsEthereum HistoryICOsOn-Chain ExploitsDeFi Security

Educational only — not financial advice.