the ethereum platform has been a lot of interest in the period
maybe the vulnerability is in the private key, j-son, prhase
it is not easy to get / randomize the private key. but some people can hack in various ways
in my opinion this must be fixed
at least the etherum team did a fork to fix this
option and my suggestion is
if you are going to access privatkey 'j-son' phrase ether must pass through aproval security / verification phone or email the legitimate owner.
It can also help monitor transactions / hackers that try to interfere with the etherum platform or other blockchain platforms