Criptor

An RSS reader for cryptocurrency news

About
BeInCryptoBeInCryptoCoin GapeCoin GapeCrypto PotatoCrypto PotatoThe DefiantThe DefiantProtosProtos
Browse all

Criptor

Your comprehensive RSS reader for all things cryptocurrency. Stay updated with the latest news from around the globe.

Quick Links

  • About
  • Privacy Policy
  • Terms of Service
  • Cookie Policy

Resources

  • Disclaimer
  • Blog
  • Help Center
  • Contact

© 2025 Criptor. All rights reserved.

Built with ♥ for crypto enthusiasts

Home›Protos›Jill Gunter has wallet drained via vulnerable ThirdWeb contract
Protos

Protos

Original publisher

Share:

Jill Gunter has wallet drained via vulnerable ThirdWeb contract

December 12, 2025
3 min read
Jill Gunter has wallet drained via vulnerable ThirdWeb contract

On Thursday, Jill Gunter, co-founder of “the base layer for rollups” Espresso, took to X to inform followers her wallet had been drained due to a vulnerability in a ThirdWeb contract.

The 10-year crypto veteran noted the “deep irony” of her funds being funneled into privacy protocol Railgun while she was “writing a defense of privacy in crypto to present in DC next week.”

In a follow-up thread, Gunter describes the process of investigating how over $30,000 USDC was lost.

The deep irony that as I sat here writing a defense of privacy in crypto to present in DC next week…

my wallet was getting drained and the funds are getting deposited into Railgun.

— Jill Gunter (@jillgun) December 11, 2025

Read more: ZachXBT cracks Railgun privacy to expose Bittensor hacker

The transaction, which drained Gunter’s jrg.eth address, occurred on December 9. 

The tokens had been moved into the address the day before the theft “in anticipation of funding an angel investment I planned to make this week.”

Although the tokens had been moved from jrg.eth to another (0xF215), the transaction shows a contract interaction with 0x81d5.

This vulnerable contract that led to the drained wallet, Gunter found, was a Thirdweb bridge contract that she had previously used for “a $5 transfer.”

After contacting Thirdweb, she was informed that a vulnerability was found in the bridge contract in April. It “allowed anyone to access funds from users who had clicked through and accepted unlimited token approvals.”

Indeed, the contract is now labelled on Etherscan as compromised.

I don't know if I'll see reimbursement from all of this. I know you can't expect that in crypto. This is all occupational hazard of being in this space.

But whatever I do recover, I'll be donating to @_SEAL_Org. You should consider donating too.https://t.co/FJ3ElD89ko

— Jill Gunter ☕ (@jillgun) December 12, 2025

Read more: Explained: how crypto’s ‘largest supply chain attack’ stole just $0.05

A Thirdweb blog post, published today, states that the theft “resulted from the legacy contract not being properly decommissioned during our April 2025 vulnerability response.”

Thirdweb “permanently disabled the legacy contract… and no user wallets or funds remain at risk.”

Gunter praised the SEAL Security Alliance for its response, pledging to donate any potential reimbursement, and urged others to do the same.

Thirdweb’s second rodeo

In addition to the vulnerable bridge contract, ThirdWeb had previously disclosed a wide-reaching vulnerability in late 2023.

It informed the crypto community of “a security vulnerability in a commonly used open-source library.”

Security researcher and SEAL member Pascal Caversaccio dubbed Thirdweb’s statement “not responsible disclosure.” He argued that providing a list of vulnerable contracts gave black hats hackers a “head start.”

According to crypto scam tracker ScamSniffer’s analysis, over 500 token contracts were affected and at least 25 exploited.

Got a tip? Send us an email securely via Protos Leaks. For more informed news, follow us on X, Bluesky, and Google News, or subscribe to our YouTube channel.

The post Jill Gunter has wallet drained via vulnerable ThirdWeb contract appeared first on Protos.

RELATED TOPICS

protosdrainedcryptowriting defenseprivacy cryptodefense privacyvulnerabilityjillcriptorcrypto dcgunterwalletgunter jillgunfundscontractthirdweb contractthirdwebbridge contractjill gunterdeep ironyprivacywallet drained

More From Protos

No, the IRS is not forcing you to list all your crypto wallets

No, the IRS is not forcing you to list all your crypto wallets

4 days ago

Do Kwon sentenced to 15 years for Terra/Luna fraud

Do Kwon sentenced to 15 years for Terra/Luna fraud

2 days ago

Strategy’s BTC Yield turns negative for first time in years

Strategy’s BTC Yield turns negative for first time in years

2 days ago

View All Articles

Market Overview

BitcoinBitcoin
88,663.78-1.747%
EthereumEthereum
3,088.44-0.841%
Binance CoinBinance Coin
883.92-1.438%
RippleRipple
1.9912-1.552%
SolanaSolana
130.29-2.133%

You May Also Like

The more Jack Mallers says Twenty One is ‘different,’ the more its stock falls
Protos

The more Jack Mallers says Twenty One is ‘different,’ the more its stock falls

3 days ago
Polymarket volume misreported as data providers double-count trades, report
Protos

Polymarket volume misreported as data providers double-count trades, report

5 days ago
Aave Labs faces backlash over CoW Swap integration
Protos

Aave Labs faces backlash over CoW Swap integration

2 days ago
Who moved $3M in Silk Road BTC? Dormant addresses spring back to life
Protos

Who moved $3M in Silk Road BTC? Dormant addresses spring back to life

3 days ago