"Treat the attribution as resting on victim reports."
Login to reply
Replies (2)
Also, the macaroon exposure directly conflicts with the BTCPay bug, which was related to 2FA, not macaroon exposure.
Source: BTCPay release notes

GitHub
Release 2.4.2 · btcpayserver/btcpayserver
This release contains fix of a critical vulnerability that is being actively exploited. You need to update as fast as you can.
We recommend integra...
yeah just based of this tweet from @Pavlenex and chainabuse report
https://chainabuse.com/report/68a4e3b0-93fa-44b2-b86e-b76d3d7895ef

X (formerly Twitter)
Pavlenex (@pavlenex) on X
Reported addresses linked to exploits of vulnerable BTCPay Server instances:
19jSfadPiKa4aCefj4F7uEYbhMEt2L8SCH
17C7EZC1VTrXzSQneiaJv2W6tQh1vCRSnF...