Hacker exploits vulnerability, drains $455,000 from DeFi protocol Arcadia Finance

TL;DR Breakdown

  • Hacker exploits code vulnerability in Arcadia Finance, draining approximately $455,000 from the DeFi protocol’s Ethereum and Optimism vaults.
  • The breach highlights the need for improved input validation and reentrancy protection in decentralized finance platforms.
  • The incident contributes to the growing number of cyber attacks in the crypto space, prompting concerns about security and the potential impact on the Optimism network’s revenue and future growth.

Description

Arcadia Finance, a noncustodial protocol supporting on-chain cross-margin accounts, fell victim to a cyber attack that resulted in the loss of approximately $455,000. However, the hacker exploited a code vulnerability, exposing a weakness in the platform’s validation mechanism. The vulnerability allowed unverified inputs to go unchecked, enabling the hacker to drain funds from Arcadia Finance’s … Read more

Arcadia Finance, a noncustodial protocol supporting on-chain cross-margin accounts, fell victim to a cyber attack that resulted in the loss of approximately $455,000. However, the hacker exploited a code vulnerability, exposing a weakness in the platform’s validation mechanism. The vulnerability allowed unverified inputs to go unchecked, enabling the hacker to drain funds from Arcadia Finance’s Ethereum (darcWETH) and Optimism (darcUSDC) vaults.

Code vulnerability leads to significant losses

The breach was first discovered by PeckShield, a prominent cybersecurity firm known for its expertise in the blockchain domain. PeckShield promptly alerted Arcadia Finance about the hack, emphasizing the lack of untrusted input validation as the primary cause of the exploit. Following PeckShield’s intimation, 

The perpetrator demonstrated a swift response by successfully transferring an estimated 179.3 ETH from the Optimism[OP] network. This sum was attained by utilizing a combination of 148 ETH, which had been bridged from the Ethereum network, and approximately 59,000 USDC that was swapped.

The stolen funds were laundered through Tornado Cash, a decentralized privacy solution for cryptocurrencies. However, the stolen tokens on the Ethereum network, valued at over $103,000 at the time of writing, remain parked in the suspected wallet address, awaiting further investigation.

Arcadia Finance acknowledged the breach and swiftly halted its contracts to prevent further loss of funds.

PeckShield also disclosed an additional vulnerability within Arcadia Finance’s code. This vulnerability, known as a lack of reentrancy protection, poses a severe risk to the protocol’s internal vault health check. If exploited, this vulnerability could have severe consequences for the platform.

The incident adds to the growing list of cyber attacks and exploits that have plagued the cryptocurrency space during the second quarter of 2023. A recent report by CertiK, a leading blockchain security company, revealed that a total of 212 security incidents occurred during the quarter, resulting in a staggering loss of $313,566,528 from Web3 protocols.

Defi Llama’s data reveals that Arcadia Finance’s TVL has taken a significant hit in the past few days due to the prevailing uncertainty surrounding the company.

Screenshot 2023 07 10 at 11.53.57 AMHacker exploits vulnerability, drains 5,000 from DeFi protocol Arcadia Finance
Arcadia Finance’s TVL declines. Source: DeFi Llama

Impact on Optimism network and future growth

The exploitation of Arcadia Finance affected the protocol and had implications for the broader Optimism network. Token Terminal’s data indicates that although the number of daily active users on Optimism experienced a robust growth rate of 3.9% over the past week, the platform’s revenue witnessed a significant decline. In just the last seven days, the revenue generated by Optimism plummeted by 52.6%.

This decline in revenue raises concerns about the long-term growth prospects of the Optimism network. Moreover, the OP token, which is closely associated with Optimism, has experienced a substantial decline in price over the past month. Additionally, the velocity of OP token trading has diminished, indicating a decrease in trading activity. It is important to note that the OP token was trading at $1.18 at the time of writing. 

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Hacker exploits vulnerability, drains $455,000 from DeFi protocol Arcadia Finance

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月11日 03:33
Next 2023年7月11日 04:44

Related articles

  • Bitcoin miners celebrate as U.S. drops controversial Bitcoin tax proposal

    TL;DR Breakdown Bitcoin miners in the United States can heave a sigh of relief as a proposed tax on crypto mining failed to make its way into a bill aimed at raising the U.S. debt ceiling. The DAME tax faced significant opposition due to concerns that it could potentially lead to an increase in global emissions.  The news of the tax proposal’s exclusion from the bill came after Pierre Rochard, the vice president of research at Bitcoin miner Riot Platforms, noticed its absence.  Bitcoin miners in the United States can heave a sigh of relief as a proposed tax on crypto mining failed to make its way into a bill aimed at raising the U.S. debt ceiling. The tax proposal, known as the Digital Assets Mining Energy (DAME) excise tax, intended to levy a tax on crypto miners equivalent to 10% of their electricity costs in 2024, with plans to increase it to 30% in 2026. The DAME tax faced significant opposition due to concerns that it could potentially lead to an increase in global emissions. Critics argued that if…

    Article 2023年6月8日
  • California Revises Cryptocurrency Campaign Donation Policies

    TL;DR Breakdown California now allows campaign donations in cryptocurrency but mandates immediate conversion to US dollars and requires donations to come through US-based payment processors adhering to KYC policies. While states like Minnesota, Arizona, and Colorado are embracing crypto donations, others like North Carolina and Oregon have banned the practice over transparency concerns. Description In a significant move, the California Fair Political Practices Commission has unveiled its updated policies on cryptocurrency donations for campaigns. This comes as a response to the growing prominence of digital currencies in the financial landscape and their potential influence on political campaigns. The updated guidelines provide a more explicit framework for candidates and committees … Read more In a significant move, the California Fair Political Practices Commission has unveiled its updated policies on cryptocurrency donations for campaigns. This comes as a response to the growing prominence of digital currencies in the financial landscape and their potential influence on political campaigns. The updated guidelines provide a more explicit framework for candidates and committees in California, ensuring transparency and adherence to federal regulations. Contents hide 1 A…

    Article 2023年8月12日
  • DOJ urges court to stop SBF’s expert witnesses from testifying

    TL;DR Breakdown The DOJ has urged the court to bar SBF’s expert witnesses from testifying in the ongoing legal battle. Defense and prosecutors lock horns over testimony admissibility. Description As the trial of FTX founder Sam Bankman-Fried approaches, a legal tug-of-war over proposed witnesses has emerged between the defense and the Department of Justice (DOJ). Both parties have submitted their views on why certain witnesses should be disqualified from testifying, shedding light on the strategies they intend to employ in the upcoming trial involving … Read more As the trial of FTX founder Sam Bankman-Fried approaches, a legal tug-of-war over proposed witnesses has emerged between the defense and the Department of Justice (DOJ). Both parties have submitted their views on why certain witnesses should be disqualified from testifying, shedding light on the strategies they intend to employ in the upcoming trial involving fraud and conspiracy charges. DOJ wants SBF’s witnesses barred from testifying Bankman-Fried’s defense team has raised concerns about the financial analysis expert put forth by the DOJ. They argue that the proposed testimony might not be permissible under…

    Article 2023年8月29日
  • Singapore busts a $1 billion money laundering ring, seizing assets and crypto

    TL;DR Breakdown Singapore detains 10 foreign nationals in a significant operation against money laundering, forgery, and resistance to authorities. Assets worth around $1 billion, including properties, vehicles, and crypto, have been confiscated, dealing a blow to illicit activities. Most suspects possess Chinese passports, hinting at potential transnational involvement in these financial crimes. Description Singaporean law enforcement has taken a significant stride in combating financial crime, apprehending 10 foreign nationals suspected of laundering money. The arrests also encompass allegations of forgery and resistance to lawful authorities. The operation yielded an impressive haul of assets, totaling approximately S$1 billion ($735 million), a substantial blow to illicit activities. Most detained individuals … Read more Singaporean law enforcement has taken a significant stride in combating financial crime, apprehending 10 foreign nationals suspected of laundering money. The arrests also encompass allegations of forgery and resistance to lawful authorities. The operation yielded an impressive haul of assets, totaling approximately S$1 billion ($735 million), a substantial blow to illicit activities. Most detained individuals held Chinese passports, suggesting a potential transnational dimension to their activities. These suspects were…

    Article 2023年8月17日
  • Popular tech reviewer MKBHD gives thumbs down to Solana’s Saga crypto phone

    TL;DR Breakdown Popular tech YouTuber Marques Brownlee, known as MKBHD, gave a critical review of Solana Mobile’s Saga, a specialized crypto phone, citing its limited appeal and average specifications. Despite unique crypto-centric features like the Solana Mobile Stack (SMS) and Seed Vault, MKBHD argued that the phone’s high initial price tag and subsequent reduction do not justify its overall value. Description Solana Mobile’s Saga, a specialized crypto phone, received a less-than-stellar review from popular tech YouTuber Marques Brownlee, known as MKBHD. Despite its high build quality and unique crypto-centric features, the phone’s limited appeal and average specifications have raised questions about its value proposition in the competitive smartphone market. The Saga was developed in collaboration with … Read more Solana Mobile’s Saga, a specialized crypto phone, received a less-than-stellar review from popular tech YouTuber Marques Brownlee, known as MKBHD. Despite its high build quality and unique crypto-centric features, the phone’s limited appeal and average specifications have raised questions about its value proposition in the competitive smartphone market. The Saga was developed in collaboration with OSOM, a company with experience in…

    Article 2023年9月10日
TOP