Decentralized Finance suffers another blow: lending protocol attacked, Lock-up Position falls 99.9% in 24 hours.

robot
Abstract generation in progress

Recently, a platform focused on Decentralized Finance and coin protocols experienced a security incident, with its lending protocol being attacked, forcing the platform to temporarily shut down. The security team analyzed that the method of this attack is very similar to a certain DEX attack case that occurred the previous day, and it is likely carried out by the same group of hackers. Currently, the team of the attacked platform is conducting an in-depth investigation into the details of the incident.

On-chain data shows that the attacker has transferred the acquired assets to two mainstream DeFi lending platforms. The data platform monitored that the locked amount of the attacked platform plummeted by 99.9% within 24 hours, almost dropping to zero.

Looking back at the attack incident from the previous day, the hacker cleverly exploited the compatibility vulnerability between a certain DEX and the ERC777 token standard. During the ETH and imBTC trading, the attacker executed a reentrancy attack through the tokensToSend function in the ERC777. According to security agencies, the DEX lost approximately 1,278 ETH in this attack, worth around $220,000. Additionally, about 18.37 imBTC were acquired by two arbitrageurs at a lower price, with the two addresses starting with 0x3195c3 and 0x17559a respectively.

The two consecutive attacks have once again sounded the alarm for DeFi security, reminding project teams and users to be more vigilant about potential security risks. At the same time, this also highlights the security challenges when it comes to cross-protocol interoperability, especially when dealing with tokens of different standards.

DEFI-4.19%
View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • 6
  • Share
Comment
0/400
LoneValidatorvip
· 07-31 05:51
Another vulnerability code
View OriginalReply0
MevHuntervip
· 07-31 05:51
History always repeats itself.
View OriginalReply0
GasFeeDodgervip
· 07-31 05:51
The project party does not learn from experience.
View OriginalReply0
BearMarketMonkvip
· 07-31 05:50
Code vulnerabilities are always a major disaster.
View OriginalReply0
NotSatoshivip
· 07-31 05:43
Attack and break again.
View OriginalReply0
SchroedingerMinervip
· 07-31 05:35
It's the old problem of 777 again.
View OriginalReply0
Trade Crypto Anywhere Anytime
qrCode
Scan to download Gate app
Community
English
  • 简体中文
  • English
  • Tiếng Việt
  • 繁體中文
  • Español
  • Русский
  • Français (Afrique)
  • Português (Portugal)
  • Bahasa Indonesia
  • 日本語
  • بالعربية
  • Українська
  • Português (Brasil)