Pages:
Author

Topic: DeFi hacks [history] - page 13. (Read 19119 times)

legendary
Activity: 2520
Merit: 1490
February 04, 2022, 05:36:26 AM
DeFi the KLAYswap project announced a hacking incident, as a result of which the project lost about 2.2 billion KRW, or about $1.83 million, the hacker managed to create a third-party js link on the KLAYswap external interface, as a result of which the user was sent to a fake KLAYswap page.

Details are here: https://medium.com/klayswap/klayswap-incident-report-feb-03-2022-f20ba2d8e4dd


legendary
Activity: 2520
Merit: 1490
February 03, 2022, 02:28:44 AM
It looks like cross-blockchain bridge Wormhole was hacked as a result of the exploit and, according to preliminary estimates, lost more than $326 million. dev's Wormhole itself confirmed a total loss of 120,000 ETH and announced that funds would be added to the bridge to stop the wrapped ETH on Solana. This is one of the biggest hacks in the history of DeFi. Sad
https://www.coindesk.com/tech/2022/02/02/blockchain-bridge-wormhole-suffers-possible-exploit-worth-over-250m/




UPD: The venture capital company Jump Crypto, which owns Certus One, which is the developer of the Wormhole cross-chain bridge, announced that it has invested 120,000 ETH in the Solana-Ethereum bridge.  All funds have been restored, Wormhole has been restored. The ETH contract is filled and all wETH are secured 1:1.



legendary
Activity: 1736
Merit: 4270
January 28, 2022, 09:00:54 AM
Qubit Finance,  X-Bridge $80M
Binance Smart Chain, Ethereum Crypto Bridge Hacked for $80 Million
https://decrypt.co/91447/binance-smart-chain-ethereum-crypto-bridge-hacked-80-million
"An exploit in decentralized finance (DeFi) protocol Qubit Finance enabled one hacker to walk away with $80 million in stolen crypto yesterday.
The specific smart contract flaw that enabled the attack was located in X-Bridge, a cross-chain bridge that facilitates easy token swaps between Ethereum and Binance Smart Chain. "
legendary
Activity: 1736
Merit: 4270
January 12, 2022, 06:55:15 AM

Animoca Brands’ Lympo NFT platform hacked for $18.7 million
https://cointelegraph.com/news/animoca-brands-lympo-nft-platform-hacked-for-18-7-million
"The sports NFT minting platform suffered a hot wallet security breach across several project wallets, losing $18 million worth of LMT.
Sports nonfungible token (NFT) minting platform and Animoca Brands subsidiary Lympo suffered a hot wallet security breach and lost 165.2 million LMT tokens worth $18.7 million at the time of the hack."
newbie
Activity: 18
Merit: 0
January 11, 2022, 04:13:07 AM
Because of developer incompetence, many DeFi projects get hacked.
legendary
Activity: 1736
Merit: 4270
December 30, 2021, 12:23:48 PM
Some results of 2021

The Biggest DeFi Hacks of 2021 until May 2021
https://www.cybavo.com/blog/defi-hacks-2021/

DeFi Has Accounted for Over 75% of Crypto Hacks in 2021
https://finance.yahoo.com/news/defi-accounted-over-75-crypto-140000154.html

Biggest Defi Hack in 2021
Poly Network Suffers Record-Breaking $600.3 Million Hack
https://decrypt.co/78163/polynetwork-suffers-record-breaking-600-3m-hack




#RugPull PeckShield has detected that Metaswap Gas (MGAS) soft-rugged, the stolen funds (1,100 BNB) are transfered to TornadoCash
https://twitter.com/peckshield/status/1475331156459790336?

#RugPull PeckShield has detected that  METADAO rugged, the stolen funds (800 Ether) are transferred to @TornadoCash
(#Ethereum). DO NOT STAKE in this contract and if you've approved it, REVOKE
https://twitter.com/PeckShieldAlert/status/1475434691939520523?

Tinyman -  the amount of hacking is unknown
Official Announcement About the Incidents of 01.01.2022
https://tinymanorg.medium.com/official-announcement-about-the-incidents-of-01-01-2022-56abb19d8b19
"When the attack began, total liquidity in Tinyman was around 43 million USD, only to be reduced to around 20 million even hours after the attack. Following our advice, projects and users have begun removing their liquidities, which brought the total number down to 5 million USD. It is crucial to realize that the difference between the 43 million USD and the current number is not a lost amount, a huge portion of this amount was reclaimed by the users and is totally safe in their wallets."





[moderator's note: consecutive posts merged]
legendary
Activity: 2520
Merit: 1490
December 30, 2021, 06:57:17 AM
Polygon developers revealed a case of theft committed by a hacker on December 4 of 801,601 MATIC tokens worth more than $2 million, which was made possible thanks to an exploit in the smart contract Polygon, which was reported on December 3 by @leonspacewalker, which later received with another user, whose name is not called, a reward of $3.46 million for reporting a bug.
source: https://blog.polygon.technology/all-you-need-to-know-about-the-recent-network-upgrade/?utm_source=Twitter-Main&utm_medium=Tweet&utm_campaign=Tier-1-Announcement
legendary
Activity: 2044
Merit: 1018
December 24, 2021, 11:31:19 AM
$8.8M is not big but not small.

I wonder that will the Visor Finance team will do compensation for their users. If they seriously compensate for their users, they will have to sacrifice their income in many months and in the same time, they will have to pay cost for staffs, developments, operations, maintenance and other things to keep their DeFi platform up and run.

It is not a good thing and it's bad to see it happened around Christmas which should be a peaceful period for all.
legendary
Activity: 1736
Merit: 4270
December 24, 2021, 09:01:02 AM
There are also reports that the Visor protocol (Visorfinance) was attacked using a re-entry exploit and lost over 8.8 million VISR tokens, which as of this event was estimated at about $8.8 million, after that the price fell from $1 to $0.02, after which the project team announced the migration of user funds to a new contract to restore them
https://twitter.com/peckshield/status/1473315405498576901
https://visorfinance.medium.com/?p=7920e1dee55a


Visor Finance -$8.8M
Visor Finance Suffers DeFi Hack: Lost 8.8 million VISR tokens
https://blog.coincodecap.com/visor-finance-suffers-defi-hack
VISOR Finance Suffers DeFi Hack $8.2M Lost | Bitcoin News
https://medium.com/coinmonks/visor-finance-suffers-defi-hack-8-2m-lost-bitcoin-news-4a80e99199f0
legendary
Activity: 2520
Merit: 1490
December 23, 2021, 12:38:57 PM
There are also reports that the Visor protocol (Visorfinance) was attacked using a re-entry exploit and lost over 8.8 million VISR tokens, which as of this event was estimated at about $8.8 million, after that the price fell from $1 to $0.02, after which the project team announced the migration of user funds to a new contract to restore them
https://twitter.com/peckshield/status/1473315405498576901
https://visorfinance.medium.com/?p=7920e1dee55a

legendary
Activity: 1736
Merit: 4270
December 22, 2021, 07:50:59 AM
for a link to 1 post.
The next victim of hackers in the DeFi segment was the Grim Finance platform, losses are estimated at more than $30 million, developers have suspended deposits and recommend users to withdraw their funds urgently.

https://twitter.com/financegrim/status/1472357770846519312


With a name like the platform, investors needed to be more circumspect

Grim Finance Hacked for $30 Million in Fantom Tokens
Grim Finance is the latest DeFi protocol to be hit by an exploit.
https://decrypt.co/88727/grim-finance-hacked-30-million-fantom-tokens
https://cryptobriefing.com/fantom-defi-project-grim-finance-suffers-30m-hack/


Vulcan Forged-$140M
https://twitter.com/VulcanForged/status/1470365117774770180
https://www.theblockcrypto.com/post/127270/96-private-keys-stolen-from-vulcan-forged-in-140-million-theft


Gelato-$26M
https://twitter.com/gelatonetwork/status/1470289886406004736


8IGHT FINANCE- $1.75M
https://rekt.news/8ight-finance-rekt/
legendary
Activity: 2520
Merit: 1490
December 11, 2021, 09:21:19 AM
BadgerDAO reveals the details of the hacker attack that allowed the theft of $120 million, everything boils down, in their opinion, to the unauthorized use of API keys of the Cloudflare Workers service.
The full technical analysis from the BadgerDAO team is here: https://badger.com/technical-post-mortem



Personally, one bad experience was enough for me using API keys to access an account on the yobit garbage exchange four years ago, after which I lost 0.5 BTC, but it was my funds, and here such a number of users and such vulnerability suffered, IMHO here is completely the fault of the developers. Smiley



The next victim of hackers in the DeFi segment was the Grim Finance platform, losses are estimated at more than $30 million, developers have suspended deposits and recommend users to withdraw their funds urgently.

https://twitter.com/financegrim/status/1472357770846519312


With a name like the platform, investors needed to be more circumspect

[moderator's note: consecutive posts merged]
legendary
Activity: 1736
Merit: 4270
December 02, 2021, 10:37:23 AM
BadgerDAO $100 M

BadgerDAO reported unauthorized withdrawal of user funds, engineers BadgerDAO are investigating this issue, the protocol's smart contracts have been temporarily suspended.



One of the victims lost 896 BTC https://etherscan.io/tx/0x951babdddbfbbba81bbbb7991a959d9815e80cc5d9418d10e692f41541029869 , in total about $ 100 million was withdrawn from the project.



But whether it was an attack or the funds were simply burned as a result of using a bug in contracts is not yet clear.
https://twitter.com/DefiWhiskey/status/1466271476416454656



for a link to 1 post.
https://cryptobriefing.com/120m-lost-badgerdao-defi-hack/
$120M Lost in BadgerDAO DeFi Hack
"Key Takeaways
BadgerDAO has suffered a major frontend attack.
The hacker reportedly compromised Badger's user interface by inserting a malicious script that prompted users to give the hacker permission to spend their funds.
Smart contract auditing firm Peckshield has estimated the value of the stolen funds to around $120 million."
legendary
Activity: 2520
Merit: 1490
December 02, 2021, 04:13:35 AM
BadgerDAO reported unauthorized withdrawal of user funds, engineers BadgerDAO are investigating this issue, the protocol's smart contracts have been temporarily suspended.



One of the victims lost 896 BTC https://etherscan.io/tx/0x951babdddbfbbba81bbbb7991a959d9815e80cc5d9418d10e692f41541029869 , in total about $ 100 million was withdrawn from the project.



But whether it was an attack or the funds were simply burned as a result of using a bug in contracts is not yet clear.
https://twitter.com/DefiWhiskey/status/1466271476416454656

legendary
Activity: 2660
Merit: 1009
December 01, 2021, 06:53:42 AM
That's really a lot of hacks and very big money involved but we shouldn't forget the small ones and if we sum that up I think they are much more expensive than those on the list. What I mean is something like the rug pull I think the one that happened in Binance before and other rug pulls of different developers that consist of million of $.
legendary
Activity: 2030
Merit: 1643
Verified Bitcoin Hodler
December 01, 2021, 06:29:56 AM
Amazing list! It worries me that DEFI can be so easily hacked and that it happens so very very often... The thing that bothers me most is the disgusting bounty haggling from Fullcrum. They saved their 2.5 Million dollars and don't even get paid for their efforts. What kind of move is that? Fullcrum? More like Fullscum. I would keep away from doing business with them.

That being said, thanks for this list. Im sure it will be very helpful for future Defi.
legendary
Activity: 1736
Merit: 4270
December 01, 2021, 05:35:00 AM
MonoXFinance $31 M

The Polygon based MonoX DeFi platform was hacked, the hacker managed to withdraw crypto assets worth $31 million, the following assets were withdrawn:
 -5.7M MATIC ($10.5M)
- 3.9k WETH ($18.2M)
- 36.1 WBTC ($2M)
- 1.2k LINK ($31k)
- 3.1k GHST ($9.1k)
- 5.1M DUCK ($257k)
- 4.1k MIM ($4.1k)
- 274 IMX ($2k)



The developers of MonoX confirmed the fact of hacking and apologized to investors, but the developers also said that the incident is being investigated and measures are being taken to refund funds.
As it turned out during the investigation, the hacking mechanism looked like this: the attacker managed to raise the price of the MONO token to the skies with the help of a swap contract, and then purchase all the other assets in the pool for it.





for a link to 1 post.
MonoX Finance Drained of $31M in Latest DeFi Hack
https://cryptobriefing.com/monox-finance-drained-of-31m-in-latest-defi-hack/

"Key Takeaways
A hacker has exploited MonoX Finance's smart contracts, draining $31 million worth of assets.
The MonoX team are attempting to contact the hacker to ask for the funds to be returned.
Despite receiving two independent audits, the vulnerabilities in MonoX's smart contracts were not found."
legendary
Activity: 2520
Merit: 1490
December 01, 2021, 03:39:48 AM
The Polygon based MonoX DeFi platform was hacked, the hacker managed to withdraw crypto assets worth $31 million, the following assets were withdrawn:
 -5.7M MATIC ($10.5M)
- 3.9k WETH ($18.2M)
- 36.1 WBTC ($2M)
- 1.2k LINK ($31k)
- 3.1k GHST ($9.1k)
- 5.1M DUCK ($257k)
- 4.1k MIM ($4.1k)
- 274 IMX ($2k)



The developers of MonoX confirmed the fact of hacking and apologized to investors, but the developers also said that the incident is being investigated and measures are being taken to refund funds.
As it turned out during the investigation, the hacking mechanism looked like this: the attacker managed to raise the price of the MONO token to the skies with the help of a swap contract, and then purchase all the other assets in the pool for it.



legendary
Activity: 2632
Merit: 1212
Livecasino, 20% cashback, no fuss payouts.
November 25, 2021, 07:03:08 AM
DeFi exploits total $680 million so far in 2021
https://www.theblockcrypto.com/post/123030/defi-exploits-total-680-million-so-far-in-2021
"Quick Take
There have been 70 DeFi attacks this year across four blockchain platforms.
Around $1.4 billion was initially stolen but $760 million has been returned."

Those that are known anyway. I bet you on BSC and Tron there are loads of small tiny rug pulls that don't make the news or are even talked about but I see a new IDO every few hours, and most of them gonna end up scams. People also who got scammed mostly won't say it (the small losers whine but the big ones keep quiet) and then all this doesn't go reported.
Pages:
Jump to: