Poly Network temporarily halts services after another hack

TL;DR Breakdown

  • The exploit involved manipulating a smart contract function on the platform’s cross-chain bridge protocol, leading Poly Network to temporarily suspend its services. 
  • Although the exact amount stolen in the attack was not specified by Poly Network, it was reported that the hacker transferred at least $5 million worth of crypto.
  • Binance CEO Changpeng Zhao reassured customers that the attack would not affect Binance users, as they do not support deposits from the Poly Network.

Description

The cross-chain bridge platform Poly Network fell victim to a major attack, resulting in a hacker being able to generate billions of tokens for profit on July 2. The exploit involved manipulating a smart contract function on the platform’s cross-chain bridge protocol, leading Poly Network to temporarily suspend its services. The attack affected 57 different … Read more

The cross-chain bridge platform Poly Network fell victim to a major attack, resulting in a hacker being able to generate billions of tokens for profit on July 2. The exploit involved manipulating a smart contract function on the platform’s cross-chain bridge protocol, leading Poly Network to temporarily suspend its services. The attack affected 57 different crypto assets across 10 blockchains, including Ethereum, BNB Chain, Polygon, Avalanche, Heco, OKx, and Metis.

Although Poly Network did not specify the exact amount stolen in the attack, it was reported that the hacker transferred at least $5 million worth of cryptocurrencies. In response to the incident, Poly Network initiated communication with centralized exchanges and law enforcement agencies, seeking their assistance in resolving the issue. The project team also advised other project teams and token holders to withdraw liquidity and unlock their LP tokens.

According to a DeFi security analyst, the exploit was a result of a smart contract vulnerability that allowed the hacker to craft a malicious parameter containing a fake validator signature and block header. This parameter was accepted by the smart contract, bypassing the verification process and enabling the hacker to issue tokens from Poly Network’s Ethereum pool to their address on other chains, such as Metis, BNB Chain, and Polygon. This process was repeated across multiple chains, resulting in the accumulation of a significant token stash.

Poly Network hack

At one point, the hacker’s wallet held approximately $42 billion worth of tokens, but they were only able to convert and steal a fraction of that amount. The attack has been called the “34 billion Poly Network hack” by blockchain security solutions provider Dedaub, highlighting weaknesses in the protocol’s multi-signature arrangement. Dedaub discovered that the private keys to the compromised addresses were compromised, emphasizing the need for more robust security measures.

Dedaub also noted that the attack was not complex and did not exploit any logic bugs. However, Poly Network’s response to the attack was criticized for being slow, taking seven hours, and resulting in a cost of $5.5 million in stolen crypto. Fortunately, a lack of liquidity in many of the tokens prevented further losses.

Binance CEO Changpeng Zhao reassured customers that the attack would not affect Binance users, as they do not support deposits from the Poly Network. This incident marks the second major attack on Poly Network, with the previous one occurring in August 2021, where hackers linked to the North Korean hacking collective, the Lazarus Group, made off with over $600 million.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Poly Network temporarily halts services after another hack

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月5日 05:38
Next 2023年7月5日 08:10

Related articles

  • ProShares records the large inflows amid ETF fever

    TL;DR Breakdown ProShares Bitcoin ETF has registered a staggering inflow from investors as the ETF frenzy persists. Companies intensify their race for Bitcoin ETF following BlackRock’s filing. Description In recent developments, the excitement surrounding Bitcoin exchange-traded funds (ETFs) has resurfaced, accompanied by a wave of new applications and increased capital inflows from institutional investors. Notably, the ProShares Bitcoin Strategy ETF (BITO), a Bitcoin futures fund, witnessed a surge of inflows on June 26, attracting significant attention from Bloomberg senior ETF analyst Eric Balchunas. … Read more In recent developments, the excitement surrounding Bitcoin exchange-traded funds (ETFs) has resurfaced, accompanied by a wave of new applications and increased capital inflows from institutional investors. Notably, the ProShares Bitcoin Strategy ETF (BITO), a Bitcoin futures fund, witnessed a surge of inflows on June 26, attracting significant attention from Bloomberg senior ETF analyst Eric Balchunas. ProShares gains popularity among institutional investors With its assets surpassing $1 billion, ProShares BITO experienced its largest weekly inflow in a year, reaching $65.3 million. As the first BTC-linked ETF in the United States, ProShares BITO has gained popularity…

    Article 2023年6月28日
  • This is going to be a horrible week for Apple – Why?

    TL;DR Breakdown Apple faces challenges with China clamping down on iPhone usage among its government officials. The iPhone 15 unveiling aims to outpace Samsung in the global handset market. Description September, with its transition from the carefree warmth of summer to the daunting chill of fall, often ushers in unexpected challenges. Just as the weather turns its back on the optimism of sunnier days, the tech giant Apple finds itself facing its own set of dark clouds as we venture further into the month. An … Read more September, with its transition from the carefree warmth of summer to the daunting chill of fall, often ushers in unexpected challenges. Just as the weather turns its back on the optimism of sunnier days, the tech giant Apple finds itself facing its own set of dark clouds as we venture further into the month. An Unexpected Party-Crasher in Beijing Apple’s been polishing its image and gearing up for a significant event. With the anticipated unveiling of the iPhone 15 on Tuesday, there was a palpable energy in the air. Rumors were buzzing,…

    Article 2023年9月11日
  • Crypto scammers exploit celebrity images, NatWest reveals

    TL;DR Breakdown NatWest’s Celebrity Scam Super League reveals celebrities whose images have been exploited in crypto scams, with Peter Jones and Sir David Attenborough topping the list. Scam ads primarily originate on social media platforms, including Facebook and Twitter, and customers have fallen victim to fake investment articles and advertisements. NatWest warns consumers to be cautious of fake celebrity investment adverts online and calls for a collaborative effort with social media companies to eliminate these fraudulent practices. NatWest, a prominent British bank, has released its annual Celebrity Scam Super League table, revealing the celebrities whose images are unknowingly used by fraudsters to steal millions of pounds from unsuspecting individuals. Peter Jones, known for his role in Dragon’s Den, is topping the list, closely followed by renowned naturalist Sir David Attenborough. Surprisingly, Holly Willoughby and Philip Schofield, who jointly topped the table last year, have dropped out of the top rankings for the first time. Social media: The breeding ground for scam ads The majority of scam advertisements targeting consumers originate from social media platforms. Facebook and Twitter, among others, have…

    Article 2023年6月4日
  • Survey reveals the exact salary Americans need for comfort

    Description The gnawing feeling of financial anxiety, the constant tossing and turning in the dead of night, fearing the looming student loan payments, and skyrocketing credit card balances. These are the dark thoughts 3 out of 4 Americans grapple with, thanks to our fragile economy. So, just how much do Americans need to shelve those worries … Read more The gnawing feeling of financial anxiety, the constant tossing and turning in the dead of night, fearing the looming student loan payments, and skyrocketing credit card balances. These are the dark thoughts 3 out of 4 Americans grapple with, thanks to our fragile economy. So, just how much do Americans need to shelve those worries and sleep soundly? Let’s dive into the data. Generational Comfort Metrics Age plays a pivotal role in how we perceive financial comfort. The sprightly youth, ages 18 to 34, have a surprisingly modest benchmark. The majority are content earning less than six figures. To break it down, a mere 17% of them claim they could sustain on $50,000 or below, while 34% are eyeing the $51,000…

    Article 2023年9月8日
  • Debate persists: Should FTX disclose consumer names?

    TL;DR Breakdown The crypto community continues to witness the dispute over whether or not to reveal the names of customers at collapsed crypto exchange FTX. Analysts argue that disclosing the names of the customers would “impair the debtors’ ability to maximize the value that it currently possesses.” The top 50 FTX creditors are owed an estimated $3.1 billion. Kevin Cofsky, a partner at Perella Weinberg Partners, testified in the ongoing discussion around the revelation of user names at the now-defunct crypto exchange FTX, arguing that doing so would impede efforts to retrieve assets and reduce value. Despite media organizations’ calls for public disclosure, top creditors have preferred anonymity. Sam Bankman-Fried, the CEO of FTX, is accused of many financial offenses. Media outlets advocate for public disclosure of FTX creditors’ names According to reports from top media houses, the debate over whether or not to disclose the names of consumers at the defunct cryptocurrency exchange FTX is still going on. Kevin Cofsky, a partner at the investment firm Perella Weinberg Partners, testified at a hearing on June 8 that disclosing the…

    Article 2023年6月13日
TOP