Skip to main content
Back to news
Technology

A Failed 2016 Ethereum ICO Just Hacked Itself to Unlock 1,003 ETH — Here's How That's Even Possible

(123 days ago) · 1 source · Summarized by CryptoBipto

A defunct Ethereum ICO project from 2016 managed to recover 1,003 ETH that had been locked in its own smart contract by exploiting a vulnerability in its own code. The ETH, worth over $2.5 million at current prices, had been inaccessible for nearly a decade. The incident highlights both the permanence and the quirks of smart contracts deployed on Ethereum's blockchain.

WHY IT MATTERS

Imagine you put money into a vending machine that broke down years ago, and your snack has been stuck behind the glass ever since. Now imagine someone figured out that if you press a very specific combination of buttons, the machine glitches and releases everything inside. That's essentially what happened here, but with a smart contract on Ethereum instead of a vending machine. A 'smart contract' is a program that lives on the blockchain and automatically handles funds based on pre-written rules. Once it's deployed, nobody can change it — not even the people who created it. In this case, a project from 2016 that failed still had over 1,000 ETH trapped inside its contract. Someone found a loophole in the code and used it to free the funds. It's a fascinating example of how permanent and sometimes unpredictable blockchain code can be.

In one of the more unusual on-chain stories in recent memory, a failed ICO project from Ethereum's early days found a way to extract over 1,000 ETH from its own smart contract — essentially by exploiting a flaw in code it originally wrote.

Read the full analysis with a CryptoBipto membership

Members can read the full analysis of every story, not just the headline.

Get started

SOURCES

  • Source

RELATED

ETHSmart ContractsEthereum HistoryICOsOn-Chain ExploitsDeFi Security