Keeta tells attacker to return funds within 72 hours as probe identifies key evidence

Keeta tells attacker to return funds within 72 hours as probe identifies key evidence

N
News Editor
2026-08-23 01:52:57
Keeta Network said it has made material progress in its investigation into a recent attack on the payment blockchain, with CEO Ty stating that the team has gathered evidence that could identify the attacker. The preserved evidence has already been submitted to relevant parties and includes attack-linked IP addresses, details on VPN and VPS infrastructure, user-agent and technical environment data tied to unauthorized requests, related email addresses, and information on software and infrastructure providers allegedly used in the incident. Ty said the attacker has 72 hours to return all funds taken in the exploit, with repayment accepted in KTA, ETH, or USDC. If the full amount is returned, Keeta is willing to offer a reward and resolve the matter without pursuing legal action. If the deadline passes without repayment, the company said it will retain all rights to seek legal remedies and recover the funds. Ty also said the root cause of the incident has been confirmed and a patch is being tested. According to the statement, the issue is isolated to the affected component and does not affect Keeta’s anchor system or any externally connected systems. All KTA on Base were said to be unaffected, while the Keeta mainnet will remain in read-only mode until testing is complete and added safeguards are in place.

According to ChainCatcher, Keeta Network CEO Ty said the company has made material progress in investigating the recent attack on the payment blockchain and has collected evidence that could identify the attacker.

Ty said the evidence includes IP addresses linked to the attack, along with details on the VPN and VPS infrastructure used in the incident. The company has also gathered information on the user agents and technical environments behind unauthorized requests, related email addresses, and the software and infrastructure service providers involved. The evidence has been preserved and submitted to relevant parties.

72-hour deadline to return all stolen funds

Keeta has asked the attacker to return all funds obtained in the attack within 72 hours. The network said repayment can be made in KTA, ETH, or USDC.

If the full amount is returned, Ty said Keeta is willing to offer a reward and settle the matter without pursuing legal action. If the funds are not returned before the deadline, the company said it will retain all rights to pursue legal claims and attempt fund recovery.

Patch under testing as mainnet stays read-only

Ty had previously said the root cause of the security incident has been confirmed and that a patch is now being tested.

He said the problem is isolated to the affected component and does not affect Keeta’s anchor system or any externally connected systems. All KTA on Base were not affected, according to the statement.

The Keeta mainnet will remain in read-only mode until the patch has been fully tested and additional safeguards have been put in place before full operations resume. The team is also evaluating the best way to fully compensate all affected users.

This article was originally published by Bit.Fan. For more cryptocurrency news and market insights, visit www.bit.fan.
230

Disclaimer:

The market information, project data, and third-party content displayed on this platform are for industry information sharing only and do not constitute any form of investment advice or return commitment.

Cryptocurrency trading carries high risks. Users should fully assess their risk tolerance and make independent decisions. All profits, losses, and legal responsibilities are borne by the users themselves.