Immunefi Suspends Trust Security Amid Dispute Over Denied Bug Bounty Payment

DeFi Security
Trust Security accused Immunefi of siding with a project that allegedly dismissed a critical vulnerability capable of enabling fund theft.
Author
Author
Ruholamin HaqshanasVerified
Part of the Team Since
Oct 2021
About Author

Ruholamin Haqshanas is a contributing crypto writer for CryptoNews. He is a crypto and finance journalist with over four years of experience. Ruholamin has been featured in several high-profile crypto...

Last updated: 

Web3 bug bounty platform Immunefi has suspended white hat security firm Trust Security for 90 days following allegations of an unfairly denied bug bounty payment.

Trust Security accused Immunefi of siding with a project that allegedly dismissed a critical vulnerability capable of enabling fund theft.

The controversy began on November 12, when Trust Security disclosed on X that its team had discovered a critical theft-of-funds vulnerability on a forked mainnet of an undisclosed project.

Immunefi Concludes Reported Bug Fell Out of Scope

The vulnerability, shared with Immunefi, was intended to secure a bounty payment for the identification of a high-risk bug.

Immunefi, which mediates between ethical hackers and blockchain projects, concluded that the reported bug fell out of scope, rendering it ineligible for a full bounty.

Trust Security criticized the decision, claiming Immunefi backed the project’s “nonsense argument” and offered only a small “goodwill bounty” instead of the full payout.

Trust rejected the offer, citing concerns about transparency, as accepting it would legally prevent them from revealing the vulnerability’s details without the project’s approval.

Immunefi countered the accusations, asserting that its decision followed standard guidelines.

“The issue was out of scope according to our standard rules,” Immunefi stated, adding that the project’s goodwill offer was a generous gesture.

The platform defended its stance by suspending Trust Security for “mischaracterizing the issues” and warned of a permanent ban for any repeated violations.

Trust Security, however, accused Immunefi of prioritizing secrecy over Web3’s ethos of transparency and community-driven security.

“We’d rather expose the scam and warn hackers than take a few extra Ks in our pocket.”

Notably, in October, the Evmos blockchain paid a $150,000 reward to a researcher for identifying a critical vulnerability that could halt its operations.

Over $409 Million Lost to Crypto Hacks in Q3 2024

An estimated $409 million was stolen by crypto hackers in the third quarter of 2024, Immunefi revealed in a recent report.

Per the report, the quarter saw hacks account for 99.25% of total funds lost, while fraud represented just 0.75%. Fraud cases saw a notable decrease year over year, dropping by 86.4%.

This $409 million figure represents a 40% decrease from the same quarter in 2023, which recorded losses of over $685 million to hackers and fraudsters.

The report said that while DeFi saw a higher number of incidents, CeFi was responsible for more severe losses, with some individual attacks leading to hundreds of millions of dollars in stolen assets.

“We’re seeing a higher number of incidents targeting DeFi, while CeFi experiences fewer incidents but often with more severe consequences, with hundreds of millions in stolen funds in a single exploit,” said Mitchell Amador, Immunefi founder and CEO.

Amador further explained that private key management remains one of the biggest vulnerabilities in CeFi.

“It requires rigorous key management policies, practices, and emergency plans,” she added.

In the Article
Bitcoin
BTC
$89,223
1.21 %
Ethereum
ETH
$3,036
2.26 %
XRP
XRP
$1.9352
0.06 %
Litecoin
LTC
$77.54
0.10 %
Cardano
ADA
$0.3708
0.01 %

2M+

Active Monthly Users Around the World

250+

Guides and Reviews Articles

8

Years on the Market

70

International Team Authors
editors
+72 More
At Cryptonews, we aim to make cryptocurrency, blockchain, and Web3 understandable, and information available to everyone, no matter what level you are in your investment journey. Founded in 2017, Cryptonews has been dedicated to delivering reliable, multilingual coverage of the cryptocurrency industry.

Best Crypto ICOs

Discover trending tokens still in presale — early-stage picks with potential.

Explore Our Tools

Smart tools made for everyday crypto users

Market Overview

  • 7d
  • 1m
  • 1y
Market Cap
$3,116,411,141,203
0.96
Trending Crypto

More Articles

Price Analysis
XRP Price Prediction: $1.9bn ETF Inflows Put $2.15 Breakout Back in Play
Arslan Butt
Arslan Butt
2025-12-21 11:52:53
Price Analysis
Ethereum Price Prediction: Hayes Moves $3M as ETH Loses Momentum to DeFi
Arslan Butt
Arslan Butt
2025-12-21 11:30:32
Crypto News in numbers
editors
Authors List + 66 More
2M+
Active Monthly Users Around the World
250+
Guides and Reviews Articles
8
Years on the Market
70
International Team Authors