Yep, also greedy. If he only emptied a few large wallets and sent them to different addresses each also not all at the same time the vulnerability may not have been discovered so quickly.
Most would have blamed the card holder as was seen in the initial few posts that showed up on reddit.
would be interesting to see what happens to them when they're found, shame we'll never know.
Unless they trade the already tainted BTCs into XMR we very likely will once they try to cash out.
Oh I've no doubt some people will figure out who it was, it's their fate we won't be privy to, but I'm certain it won't be pretty.