Nomad to Repay Users Over 2022 Cyberattack

Blockchain company Illusory Systems, which trades as Nomad, has agreed to repay users who lost funds in a 2022 cyberattack under a proposed…
ChatGPT Image Nomad cyber attack - SecurityBuyer.com

Share this article:

Blockchain company Illusory Systems, which trades as Nomad, has agreed to repay users who lost funds in a 2022 cyberattack under a proposed settlement with the US Federal Trade Commission (FTC).

The regulator alleges that Nomad misled users about the security of its cryptocurrency bridge, which was compromised in an attack that resulted in the theft of $186 million. While some funds were later recovered, customers are said to have ultimately lost around $100 million.

According to the FTC, the incident stemmed from a software update pushed by Nomad in June 2022 that contained inadequately tested code. The update allegedly introduced a significant vulnerability, which was exploited roughly a month later. The FTC said the company failed to identify or mitigate the flaw before it was used in the attack.

Under the proposed settlement agreement, published this week, Nomad would be required to repay approximately $37.5 million to affected users who remain out of pocket. The repayments would need to be completed within one year of the agreement being signed, or within 30 days of the conclusion of any related litigation, whichever is later.

In addition to financial restitution, the settlement would impose a number of operational requirements on the company. Nomad would be required to establish and maintain a comprehensive cybersecurity programme, appoint a dedicated employee responsible for overseeing that programme, and submit to regular third-party security assessments. The agreement would also prohibit the company from making any future misrepresentations about the security of its products.

The FTC’s complaint alleges that Nomad promoted its blockchain bridge as a “security-first” product, despite failing to meet basic cybersecurity standards. The regulator claims the company did not adopt secure coding practices, lacked a vulnerability management programme, and failed to deploy safeguards that could have reduced the impact of a breach. It also alleges that inadequate incident response capabilities contributed to the scale of the losses suffered by users.

Nomad has agreed to the terms of the proposed settlement, which will become final following a public comment period and a second, final vote by the FTC.

“The FTC Act requires companies to take reasonable security measures,” said Christopher Mufarrige, director at the FTC’s Bureau of Consumer Protection. “It’s important that companies live up to their security promises to consumers.”

Nomad currently has a minimal public presence. The company has not issued public communications since 2023, and its website does not provide contact information or updates regarding its operations.

About Security Buyer

Security Buyer is the leading authority in global security content, delivering expert news, in-depth articles, exclusive interviews, and industry insights across print, digital, and event platforms. Published 10 times a year, the magazine is a trusted resource for professionals seeking updates and analysis on the latest developments in the security sector.

To submit an article, or for sponsorship opportunities, please contact our team below.

Rebecca Spayne Picture

Rebecca Spayne

Group Managing Editor

Georgina Turner Picture

Georgina Turner

Sales Manager

Afua Akoto Picture

Afua Akoto

Marketing Manager

Related News

PaxLock Pro2 - securitybuyer.com

Paxton officially launches PaxLock Pro2

Paxton the security technology manufacturer has launched a brand-new re-engineered PaxLock which is built to protect straight
KentixONE data centre - securitybuyer.com

Data centre security with KentixONE

Prior1 develops container data centers to meet the highest security and energy efficiency standards. Their containers require
Chubbsafes - securitybuyer.com

Chubbsafes explores certified storage for jewellery and precious metals

Chubbsafes, part of Gunnebo Safe Storage, has launched a new technical discussion guide examining when certified
Mercury trends report - securitybuyer.com

New Mercury Research Finds Growing Cybersecurity Gap

2026 Trends in Access Controllers Report finds interoperability, cloud connectivity and AI are reshaping long-term controller strategies.
Chris Carroll - securitybuyer.com

Comelit-PAC Promotes Chris Carroll as Sales Director

Comelit-PAC has appointed Chris Carroll as Sales Director, following an 18 year career with the company, seeing him progress
Jason Bezuidenhout - securitybuyer.com

Zygal Appoints Jason Bezuidenhout

Zygal has appointed Jason Bezuidenhout as Chief Revenue Officer (CRO), strengthening its leadership team as the company continues
Eun-Kyung-Hong_- securitybuyer.com

How AI Manages Mixed Surveillance Workloads

Eun-Kyung Hong, HDD Product Manager at Toshiba Electronics Europe GmbH discusses AI optimisation in mixed surveillance workloads
ASSA ABLOY - securitybuyer.com

ASSA ABLOY Door Group highlights importance of BS 8214:2026

ASSA ABLOY Door Group is supporting Fire Door Safety Week 2026 by raising awareness of the latest update to BS 8214:2026
OPTEX at Essen - securitybuyer.com

OPTEX to showcase perimeter solutions at Security Essen

OPTEX will present its latest perimeter and asset protection solutions at Security Essen 2026, one of Europe’s leading security trade fairs.
Dallmeier

Building Trust in Modern Video Security

Rebecca Spayne, Managing Editor of Security Buyer, speaks with Josua Braun, Chief Revenue Officer at Dallmeier electronic, about cyber resilience, trusted supply chains, the practical value of artificial intelligence and what security professionals should consider when investing in modern video technology. 
Scroll to Top