In common JSON-RPC thefts, wallet owners initiate normal transactions after unlocking their wallets, and then attackers also initiate currency theft transactions, which can see multiple transactions turned to different wallet addresses, which is one of the characteristics of this method of currency theft. However, this feature was not found in this incident, that is, the wallet unlocked after the launch of normal transactions, there is also a possibility that MaiCoin's hot wallet in order to facilitate the user withdrawal, itself is an indefinite unlock state, but its own external network isolation, the outer network can not access the wallet RPC interface, due to network administrator or other personnel misoperation caused the wallet RPC interface was exposed to the public network, thus this tragedy occurred.

