JayPegs Automart - REKT

We hit a new low. A blue-chip rekt by a front-end attack.

A developer who had been contracted to work on the MISO auction for “JayPegs Automart” inserted his own wallet address into the contract instead of the auctionWallet.

Remind us, which part of crypto is supposed to be “trustless”?

Misplaced faith cost MISO $3.1 million.

The aftermath was more aggressive than usual.

In a since deleted tweet, Sushi CTO Joseph DeLong went public with his suspicions, doxxing the developer he believed to be responsible.

The Miso front end has become the victim of a supply chain attack. An anonymous contractor by with the GH handle AristoK3 injected malicious code into the Miso front end. We have reason to believe this is @eratos1122.

Eratos1122 protested, but the Sushi team had made their case, and they refused to back down.

DeLong had attached the resume, personal website, Facebook profile, email address and invoice details of eratos1122 into a public Google doc.

After a few hours of these details being made public, and following threats from the Sushi team to involve the FBI, the money was returned. (865.094 of 864.8 ether, more than was originally stolen)

The doxx document is now private, however some of the contents are detailed below.

We’ll let the rekt readers decide why the funds were returned.

Hacker OG address - 0x3dDD8b6D092df917473680d6C41F80F708C45395

0x3dD funded by: 0xe5f7ae14f02894fcf46ffcb225cc4db38f3c4962 Binance link

0xe5f funded by: 0xba6f4f83329b9500672c6955fd5082c9434aaf74

Binance link ONE

Binance link TWO

Binance link THREE

0xba6f funded by: 0x482c9f85644f1686c490d38291511657da767e61

Address previously linked to 0xAK

FTX link ONE

FTX link TWO


When whitehat developers switch hats to black, they often forget to cover their tracks.

Doxxing somebody like that is a serious step to take, and the Sushi team / Joseph DeLong must have had a lot of conviction in order to be so public with their accusation.

The tweets and documents may no longer be available, but the Sushi and Jaypeg team still seem confident that their suspicions were correct.

Until now, Eratos1122 had earned a decent reputation in the space, and his Github shows a lot of experience. Whether the accusations against him are truthful or not, this incident will not be forgotten.

Another close call for Sushiswap, who have appeared in rekt.news in the past, but always seem to escape total disaster.

However, regardless of refund, a hack is a hack, and this one’s going on the leaderboard.

With 0xMaki stepping down as the leader of SushiSwap, some are taking the opportunity to post bearish tweets about the Uniswap competitor. However, you have to consider their motives.

Meanwhile, at Jaypegs Automart, forced memes are 20% off!!!

Terms and conditions apply.

