Curve Finance pools hit hard as Vyper exploit leads to losses of $24M

TL;DR Breakdown

  • Several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million.
  • DeFi projects, including decentralized exchange Ellipsis, Alchemix’s alETH-ETH pool, JPEGd’s pETH-ETH pool, and Metronome’s sETH-ETH pool, suffered substantial financial losses. 

Description

In a shocking turn of events, several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million at the time of reporting. The exploit was traced back to vulnerabilities in specific versions of the Vyper compiler, with versions … Read more

In a shocking turn of events, several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million at the time of reporting. The exploit was traced back to vulnerabilities in specific versions of the Vyper compiler, with versions 0.2.15, 0.2.16, and 0.3.0 being identified as the culprits.

Vyper, the Python-based smart contract programming language, acknowledged the seriousness of the situation and urged all projects relying on the affected versions to reach out immediately. The exploit’s mechanism, known as “malfunctioning reentrancy locks,” allowed attackers to bypass the intended safeguards and drain funds from the targeted contracts.

Curve Finance exploit

The investigation into the incident is currently underway, and the fallout has been immense. DeFi projects, including decentralized exchange Ellipsis, Alchemix’s alETH-ETH pool, JPEGd’s pETH-ETH pool, and Metronome’s sETH-ETH pool, suffered substantial financial losses. Ellipsis reported that a limited number of stable pools with BNB were exploited using an outdated Vyper compiler.

The breach triggered a wave of panic across the DeFi ecosystem, prompting a flurry of transactions across various pools and spurring white hat hackers to initiate a rescue operation. As the situation unfolded, the utility token of Curve Finance, CRV, experienced a decline of over 5% in response to the news. However, reassuringly, Curve Finance confirmed that crvUSD contracts and any pools associated with it were not affected by the attack.

Reentrancy attacks have long been a concern in the crypto space, and this incident underscores the importance of robustly implementing security measures in DeFi protocols. As the investigation progresses, developers are expected to work closely with the Vyper team to address the vulnerabilities and prevent future exploits.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Curve Finance pools hit hard as Vyper exploit leads to losses of $24M

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月31日 16:30
Next 2023年7月31日 18:02

Related articles

  • Coinbase asks for dismissal of SEC lawsuit, says tokens are not investment contracts

    TL;DR Breakdown Coinbase has filed papers asking the New York federal court to dismiss its lawsuit from the SEC, accusing the exchange of offering unregistered securities Coinbase argues that tokens are not investment contracts SEC has offered inadequate guidance on cryptos Description Coinbase, a U.S. crypto exchange, has filed papers asking the New York federal court to dismiss its lawsuit from the Securities and Exchange Commission(SEC). While the SEC accused the exchange of offering unregistered securities, Coinbase argues that the digital assets listed on its platform are not subject to the regulator’s jurisdiction in its 177-page response … Read more Coinbase, a U.S. crypto exchange, has filed papers asking the New York federal court to dismiss its lawsuit from the Securities and Exchange Commission(SEC). While the SEC accused the exchange of offering unregistered securities, Coinbase argues that the digital assets listed on its platform are not subject to the regulator’s jurisdiction in its 177-page response to the SEC lawsuit. Coinbase says tokens are not investment contracts In early June, the SEC filed a lawsuit against Coinbase, saying that a dozen…

    Article 2023年7月2日
  • SEC’s interlocutory appeal on Ripple XRP was a big mistake, John Deaton agrees

    TL;DR Breakdown Greg Beuke, an attorney and crypto enthusiast, took it to X, saying that the interlocutory appeal was a big mistake for the SEC. Ripple maintains that despite the SEC’s ability to appeal, the primary legal case should advance concurrently with the appeal process, Ripple CTO says. Description Greg Beuke, an attorney and crypto enthusiast, took it to X, saying that the Ripple interlocutory appeal was a big mistake for the SEC. Beuke went on to say that Judge Torres’s ruling did not mean that sales over exchanges could not be investment contracts; hence the SEC misunderstood the filing. Meanwhile, a pro-XRP attorney, … Read more Greg Beuke, an attorney and crypto enthusiast, took it to X, saying that the Ripple interlocutory appeal was a big mistake for the SEC. Beuke went on to say that Judge Torres’s ruling did not mean that sales over exchanges could not be investment contracts; hence the SEC misunderstood the filing. Meanwhile, a pro-XRP attorney, John E Deaton, mentioned that Beuke had done an excellent job in his outline. SEC’s mistake in the…

    Article 2023年8月21日
  • EOS gains JVCEA approval for token trading in Japan’s exchanges

    TL;DR Breakdown EOS obtains regulatory approval for trading EOS tokens on Japanese exchanges. EOS token holders can soon trade against the Japanese yen on a regulated platform. CEO Yves La Rose highlights the significance of approval for EOS’s commitment. Description EOS, a well-established platform in the crypto industry, has recently achieved a significant milestone. The EOS Network Foundation (ENF) has successfully obtained regulatory approval to trade EOS tokens on regulated cryptocurrency exchanges in Japan. This approval was granted by the Japan Virtual and Crypto Asset Exchange Association (JVCEA), a regulatory body that ensures the safety … Read more EOS, a well-established platform in the crypto industry, has recently achieved a significant milestone. The EOS Network Foundation (ENF) has successfully obtained regulatory approval to trade EOS tokens on regulated cryptocurrency exchanges in Japan. This approval was granted by the Japan Virtual and Crypto Asset Exchange Association (JVCEA), a regulatory body that ensures the safety of crypto trading in Japan.  The approval means that EOS token holders will soon be able to trade against the Japanese yen on BitTrade, a digital asset…

    Article 2023年8月30日
  • Crypto wallet maker Ledger launches controversial recovery service amid backlash

    TL;DR Breakdown Ledger, a leading crypto wallet maker, has launched a controversial recovery service, Ledger Recover, which secures user seed phrases but requires users to provide a government-issued ID. The crypto community has reacted strongly, arguing the service undermines the purpose of hardware wallets and infringes on privacy principles, particularly in light of Ledger’s previous security breach. Despite the backlash, Ledger’s leadership defends the service, claiming it’s an optional, secure measure and a necessary step to attract new crypto users. The modern-day debate between privacy and convenience has found its way into cryptocurrency. Ledger, the Paris-based producer of hardware wallets at the heart of the dispute, offers cryptocurrency holders the highest level of security. A new feature introduced by Ledger, known as “Ledger Recover,” has sparked a significant backlash, fueling a broader discussion about the future of crypto security. Exciting update, Ledger has a new product, Ledger Recover, that’s launching soon: https://t.co/nT1VHnnSYz 🧵Here’s what Ledger Recover is and what it isn’t, explained by @P3b7_ & in the thread below. pic.twitter.com/RW1w07H6pK — Ledger (@Ledger) May 16, 2023 The innovation: Ledger’s response…

    Article 2023年5月17日
  • Unbanked no more: Bahamas launches crypto remittance platform

    TL;DR Breakdown Island Pay introduces “CiNKO” digital wallet, powered by Circle’s USDC stablecoin, for remittances in Latin America and the Caribbean. The innovative wallet aims to enhance financial inclusion by providing seamless transactions for both banked and unbanked individuals in over 30 countries. The push for stablecoins and decentralized finance protocols in the region is set to revolutionize the remittance landscape, offering potential cost savings of up to 80% compared to traditional methods. Description Island Pay, a Bahamas-based fintech company, has stepped forward with an innovative solution to address the high costs and challenges associated with traditional remittances. However, the company recently unveiled its digital wallet, “CiNKO,” tailored for users in Latin America and the Caribbean. CiNKO will utilize Circle’s USDC stablecoin as its primary currency, offering an alternative … Read more Island Pay, a Bahamas-based fintech company, has stepped forward with an innovative solution to address the high costs and challenges associated with traditional remittances. However, the company recently unveiled its digital wallet, “CiNKO,” tailored for users in Latin America and the Caribbean. CiNKO will utilize Circle’s USDC stablecoin…

    Article 2023年7月26日
TOP