Close Menu
    Latest Post

    Is ChatGPT’s New Shopping Research Solving a Problem, or Creating One?

    January 9, 2026

    How GitHub Engineers Address Platform Challenges

    January 9, 2026

    Key CSS Developments: Conditional View Transitions, Text Effects, and Community Insights

    January 9, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Is ChatGPT’s New Shopping Research Solving a Problem, or Creating One?
    • How GitHub Engineers Address Platform Challenges
    • Key CSS Developments: Conditional View Transitions, Text Effects, and Community Insights
    • As RAM prices skyrocket and Windows 11 flounders, Linux gains native NVIDIA GeForce NOW support — turning the cloud into a sanctuary for priced-out gamers
    • Honor Magic 8 Pro: A Contender in the Flagship Smartphone Arena
    • United States Withdraws from International Cybersecurity Organizations
    • Lego Introduces Tech-Enhanced Smart Bricks Amidst Expert Concerns
    • Build Resilient Generative AI Agents
    Facebook X (Twitter) Instagram Pinterest Vimeo
    NodeTodayNodeToday
    • Home
    • AI
    • Dev
    • Guides
    • Products
    • Security
    • Startups
    • Tech
    • Tools
    NodeTodayNodeToday
    Home»Security»Illusory Systems settles with FTC over 2022 cryptocurrency hack
    Security

    Illusory Systems settles with FTC over 2022 cryptocurrency hack

    Samuel AlejandroBy Samuel AlejandroDecember 21, 2025Updated:December 22, 2025No Comments4 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    src a87fdb featured
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Image 1

    FTC building (John Taylor/Flickr)

    The Federal Trade Commission (FTC) has mandated that a company, which previously promoted its robust cybersecurity, must return recovered funds to victims and implement significant security enhancements. This directive follows a software vulnerability that enabled hackers to steal hundreds of millions of dollars in cryptocurrencies from users.

    The FTC announced a settlement with Illusory Systems, also known as Nomad, after an inquiry into a 2022 incident. During this event, hackers exploited a weakness in the company’s Token Bridge, a cryptocurrency smart contract solution. This technology facilitates the transfer of assets between different blockchain networks.

    Under the terms of the agreement, Illusory Systems is required to establish a comprehensive cybersecurity program. This includes addressing specific security flaws highlighted in the FTC’s complaint, along with developing strategies to safeguard consumers from theft and fraud. The company must also submit this plan, collaborate with independent third-party evaluators on improvements, and return any stolen funds recovered by law enforcement.

    Christopher Mufarrige, Director of the FTC’s Bureau of Consumer Protection, stated, “The FTC Act requires companies to take reasonable security measures. It’s important that companies live up to their security promises to consumers.”

    An FTC complaint indicates that in June 2022, Illusory Systems deployed “new, inadequately tested code” for its Token Bridge cryptocurrency smart contracts, despite a prior security audit.

    Just one month later, malicious actors exploited this flaw, stealing $186 million in cryptocurrency from users. Ethical hackers managed to utilize the same exploit to secure at least $37 million of the compromised funds before they could be fully drained. The settlement mandates Illusory Systems to return these safeguarded funds to users.

    The FTC’s investigation focused on how Illusory Systems marketed its Token Bridge network to customers. The company was accused of misrepresenting its commitment to user security.

    The company had, at various times, advertised the smart contract solution as “high security,” a “security first” solution that “prioritizes the safety and security of the funds/cross chain messages,” and something designed to “keep the entire system (and your funds/messages) safe.”

    One particular message simply declared: “We’re secure…period.”

    However, the FTC’s investigation concluded that Illusory Systems had failed to implement reasonable and appropriate security protocols.

    Despite awareness that cross-chain bridges like Token Bridge were frequent targets for hackers and could lead to “catastrophic loss” if compromised, developers neglected to implement “well known secure coding practices, such as writing and conducting adequate unit tests prior to pushing code to production.”

    Internal analyses by company software engineers and a post-incident review revealed that most testing for Token Bridge focused on functionality rather than verifying its security.

    According to the commission, Illusory Systems lacked sufficient security personnel, clear processes for vulnerability reporting and response, a formal written security plan, and “widely accepted industry norms” such as circuit breakers or a “kill switch” to halt suspicious financial transactions.

    Furthermore, the company did not have automated fraud monitoring in place, leading it to discover the breach via a user on social media rather than through internal detection systems.

    Staff members struggled to respond to the hack, even resorting to an engineer on a flight relaying code snippets through an online chat. These delays meant security personnel were “unable to shut down the bridge until after it had been emptied of assets.”

    Months prior to the incident, an engineer had warned the CEO about inadequate code testing and quality assurance, noting that the company had previously released code with a significant vulnerability due to insufficient testing.

    The investigation also uncovered that, despite assurances to keep customer funds secure, the company had previously overruled internal efforts to compensate users who lost money due to a bug in the web-based Token Bridge interface.

    In one instance, the chief operating officer reportedly stated, “there are no guarantees of safety,” while the CEO remarked that Illusory Systems was “putting out a free-to-use interface to a protocol that may have bugs/issues.”

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleOnePlus 15R review: unbeatable battery life, beatable value
    Next Article Ferry Attack Attempt Using Raspberry Pi Highlights Critical Physical Security Gaps
    Samuel Alejandro

    Related Posts

    Security

    United States Withdraws from International Cybersecurity Organizations

    January 9, 2026
    Security

    Drones to Diplomas: How Russia’s Largest Private University is Linked to a $25M Essay Mill

    January 8, 2026
    Security

    KrebsOnSecurity.com Marks 16 Years of Cybersecurity Reporting

    January 7, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Latest Post

    ChatGPT Mobile App Surpasses $3 Billion in Consumer Spending

    December 21, 202512 Views

    Automate Your iPhone’s Always-On Display for Better Battery Life and Privacy

    December 21, 202510 Views

    Creator Tayla Cannon Lands $1.1M Investment for Rebuildr PT Software

    December 21, 20259 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    About

    Welcome to NodeToday, your trusted source for the latest updates in Technology, Artificial Intelligence, and Innovation. We are dedicated to delivering accurate, timely, and insightful content that helps readers stay ahead in a fast-evolving digital world.

    At NodeToday, we cover everything from AI breakthroughs and emerging technologies to product launches, software tools, developer news, and practical guides. Our goal is to simplify complex topics and present them in a clear, engaging, and easy-to-understand way for tech enthusiasts, professionals, and beginners alike.

    Latest Post

    Is ChatGPT’s New Shopping Research Solving a Problem, or Creating One?

    January 9, 20260 Views

    How GitHub Engineers Address Platform Challenges

    January 9, 20260 Views

    Key CSS Developments: Conditional View Transitions, Text Effects, and Community Insights

    January 9, 20260 Views
    Recent Posts
    • Is ChatGPT’s New Shopping Research Solving a Problem, or Creating One?
    • How GitHub Engineers Address Platform Challenges
    • Key CSS Developments: Conditional View Transitions, Text Effects, and Community Insights
    • As RAM prices skyrocket and Windows 11 flounders, Linux gains native NVIDIA GeForce NOW support — turning the cloud into a sanctuary for priced-out gamers
    • Honor Magic 8 Pro: A Contender in the Flagship Smartphone Arena
    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions
    • Disclaimer
    • Cookie Policy
    © 2026 NodeToday.

    Type above and press Enter to search. Press Esc to cancel.