According to ChainCatcher, PeckShield disclosed that structured product protocol ThetanutsFi suffered an attack, with the total loss estimated at about $2.1 million. Within that amount, around $2 million worth of options tokens has already been recovered by a whitehat address. In security-related disclosures, a whitehat address generally refers to an address involved in helping recover or safeguard assets during an incident; in this disclosure, it refers to the recovered portion of the options tokens.
PeckShield’s disclosure also described the attacker’s asset movements. The attacker has converted $105,000 in USDC into roughly 60 ETH. Apart from the converted amount, the attacker still holds USDC options tokens valued at about $34,000. Based on the figures disclosed, the largest part of the incident is tied to the options token loss and recovery, while the USDC amount already swapped by the attacker is smaller in comparison.
At the time of the ChainCatcher item, the available information covered the estimated loss, the whitehat recovery, and the attacker’s current holdings and swap activity. It did not provide the attack path, contract-level details, or any follow-up handling plan from ThetanutsFi. Further information should be based on disclosures from the project, security firms, or on-chain records.

