I think the PolyNetwork team can go and fuck off, good chance they stole the money themselves anyways.
Never attribute to malice that which is adequately explained by stupidity
This is a bit different than the custodial "hacks" of yore. Technically the code is public, which would make a backdoor quite difficult to implement and hide, and the team doesn't own customers' funds. And we have ETH/DAO precedent, which already showed that shitcoiners can't code for shit. But they can just roll the chain back so it's fine, it's like a free beta test with OPM.