Chronology
18 events · 17 sourcedEvery entry below is dated and sourced. Where something is reported rather than confirmed on-chain, it says so. If you can correct or extend any of it, we want to hear from you.
2021
Before-
Built
Chain/Saw begins operating #
Chain/Saw runs as a curated, artist-first NFT marketplace and incubates a series of Matt Furie releases. The studio later cites 2021 as its starting point.
Source — Redlion, archived 24 Mar 2023
2022
The collection-
Built
Hedz announced #
Chain/Saw announces a 1,000-piece collection at 0.666 ETH across three mint phases, with artwork assigned randomly via Chainlink VRF.
Source — NFT Now Archived copy -
Built
Collectors mint opens #
Holders of earlier Chain/Saw collections mint first, with 626 mints allocated by prior holdings and a 72-hour window.
Source — Chain/Saw whitelist Archived copy -
Built
Hedz tops OpenSea #
The floor climbs from roughly 1.83 ETH to over 3 ETH within days, and Hedz becomes the highest-volume collection on OpenSea that day at about $1.47M.
Source — Daily News Archived copy -
Built
Public mint and reveal #
Remaining pieces go to public mint and the artwork is revealed. Each Hed is a hand-drawn 1/1 with its own name.
Source — Hedz FAQ Archived copy
2023
Warning-
Loss
An earlier mint goes wrong #
A later Furie mint is paused within its first hour. Chain/Saw calls it an exploit, and later acknowledges the contract had been rushed to release.
Source — Redlion, archived 24 Mar 2023
2025
The seizure-
Built
Replicandy launches #
Furie and Chain/Saw release another collection. It trades as high as 0.08 ETH.
Source — The Defiant Archived copy -
Loss
First contract seized #
At 04:25 UTC, ownership of Replicandy is transferred to an externally owned address, 0x9Fca. Mint proceeds are withdrawn roughly fourteen hours later.
Source — ZachXBT Archived copy -
Loss
Mint reopened and dumped #
At 05:11 UTC the attacker unpauses the mint, issues thousands of new tokens and sells them into standing bids. Replicandy falls about 97% in an hour.
Source — The Defiant Archived copy -
No public response
Chain/Saw acknowledges the compromise #
The studio states publicly that the contract was compromised by a known party and that it is pursuing appropriate channels. Little further detail follows.
Source — The Defiant Archived copy -
Loss
Hedz seized #
The same address takes ownership of Peplicator, Hedz and Zogz from the Chain/Saw deployer. This is the day the Hedz artwork is lost: with the contract under hostile control the metadata is rewritten, and marketplaces begin serving a placeholder in place of every piece. Hedz survives better than its siblings for one reason — it was a capped 1,000-piece collection, fully minted in 2022, so no new tokens could be created. The open editions had no such ceiling.
Source — ZachXBT Archived copy -
Evidence published
ZachXBT publishes the trace #
ZachXBT publishes an on-chain trace of the June attacks. His investigation attributes them to suspected North Korean IT workers who had been taken on as developers. That attribution is his and is published as a suspicion: it has not been tested in any court, no charge has been laid arising from it, and this archive has not independently verified it or established what any party knew at the time. He puts roughly $310,000 taken from the Chain/Saw collections and about $680,000 from a separate project, more than $1M in total, and notes that the teams cannot be reached — direct messages are closed and no contact route is offered.
Source — CryptoSlate Archived copy -
No public response
Public accusations are made against Chain/Saw #
A creator in the community publishes a series of accusations against the studio: that it walked away without helping affected holders or handing control back, that it earned more than $25M across four years, and that the hack was concealed for close to forty days while people kept trading. These are that person's allegations, not findings of this archive. None of them has been tested in a court or verified here, and the earnings and concealment claims in particular are not something on-chain data can settle. What is recorded here is that the accusations were made publicly, on the date shown, and remain unanswered.
Source — Blockonomi Archived copy -
No public response
A public commitment, and the position a year later #
Furie states publicly that he is proud of the art and grateful to collectors, and that the issues affecting the projects are being addressed with a priority on securing both the artwork and the underlying technology for the long term. More than a year later the contract has not moved and the images have not been restored.
Source — Matt Furie on X Archived copy
2026
Since-
Evidence published
Furie’s X account tied to a wider operation #
On-chain investigator Specter links the compromise of Furie’s account to the same group behind the Roaring Kitty and WinRAR takeovers, tracing wallets holding more than $14M across five chains.
Source — Crypto Times Archived copy -
Jul–Aug 2026
No public response
Reports of tokens promoted through the compromised account #
Tokens built on Furie’s Night Riders characters are reported as being promoted through the account over a period of weeks. One report describes the account changing its picture, a token tripling within minutes, then the post being deleted and the price collapsing. Reported, not confirmed on-chain, and this archive takes no position on who was operating the account at the time. As at the date this page was last checked, no warning about these tokens had been posted on hedz.fun, the project's own site.
Source — Etherscan Archived copy -
No public response
The official site is now a logo #
hedz.fun once carried the full mint FAQ and project detail. It now resolves to a single page: the Hedz logo, a link to the terms of service, and a link to Furie’s X account. No notice, no status, no contact route. The terms themselves are still dated 15 September 2022 and have never been updated — not for the seizure, not for the loss of the artwork.
Source — hedz.fun Archived copy -
Evidence published
This archive published #
The original files are recovered and hash-matched against the pre-exploit metadata. The artwork is viewable again. The contract remains as it was.
For the current state of the contract rather than its history, see the contract status.