Curve Finance pools hit hard as Vyper exploit leads to losses of $24M

TL;DR Breakdown

  • Several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million.
  • DeFi projects, including decentralized exchange Ellipsis, Alchemix’s alETH-ETH pool, JPEGd’s pETH-ETH pool, and Metronome’s sETH-ETH pool, suffered substantial financial losses. 

Description

In a shocking turn of events, several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million at the time of reporting. The exploit was traced back to vulnerabilities in specific versions of the Vyper compiler, with versions … Read more

In a shocking turn of events, several stable pools on Curve Finance, along with other decentralized finance (DeFi) projects, fell victim to a devastating exploit on July 30, causing losses amounting to $24 million at the time of reporting. The exploit was traced back to vulnerabilities in specific versions of the Vyper compiler, with versions 0.2.15, 0.2.16, and 0.3.0 being identified as the culprits.

Vyper, the Python-based smart contract programming language, acknowledged the seriousness of the situation and urged all projects relying on the affected versions to reach out immediately. The exploit’s mechanism, known as “malfunctioning reentrancy locks,” allowed attackers to bypass the intended safeguards and drain funds from the targeted contracts.

Curve Finance exploit

The investigation into the incident is currently underway, and the fallout has been immense. DeFi projects, including decentralized exchange Ellipsis, Alchemix’s alETH-ETH pool, JPEGd’s pETH-ETH pool, and Metronome’s sETH-ETH pool, suffered substantial financial losses. Ellipsis reported that a limited number of stable pools with BNB were exploited using an outdated Vyper compiler.

The breach triggered a wave of panic across the DeFi ecosystem, prompting a flurry of transactions across various pools and spurring white hat hackers to initiate a rescue operation. As the situation unfolded, the utility token of Curve Finance, CRV, experienced a decline of over 5% in response to the news. However, reassuringly, Curve Finance confirmed that crvUSD contracts and any pools associated with it were not affected by the attack.

Reentrancy attacks have long been a concern in the crypto space, and this incident underscores the importance of robustly implementing security measures in DeFi protocols. As the investigation progresses, developers are expected to work closely with the Vyper team to address the vulnerabilities and prevent future exploits.

Disclaimer. The information provided is not trading advice. Cryptopolitan.com holds no liability for any investments made based on the information provided on this page. We strongly recommend independent research and/or consultation with a qualified professional before making any investment decisions.

文章来源于互联网:Curve Finance pools hit hard as Vyper exploit leads to losses of $24M

Disclaimers:

1. You are solely responsible for your investment decisions and this info is not liable for any losses you may incur.

2. The copyright of this article belongs to the writer, it represents the writer's opinions only, not represents the site's ones. Not financial advice.

Previous 2023年7月31日 16:30
Next 2023年7月31日 18:02

Related articles

  • Singapore central bank unveils regulatory framework, bringing clarity to stablecoins

    TL;DR Breakdown The central bank of Singapore has announced a regulatory framework for single-currency stablecoins (SCS) The bank’s deputy managing director of financial supervision, Ho Hern Shin, advised SCS issuers to make early preparations for compliance. Description Singapore’s central bank has announced its revised regulatory framework, whose primary objective is ensuring the stability of single-currency stablecoins that fall under the jurisdiction of the city-state. Unveiled on August 15th by the Monetary Authority of Singapore, this framework is designed to oversee single-currency stablecoins (SCS) linked to the valuation of either the Singapore dollar … Read more Singapore’s central bank has announced its revised regulatory framework, whose primary objective is ensuring the stability of single-currency stablecoins that fall under the jurisdiction of the city-state. Unveiled on August 15th by the Monetary Authority of Singapore, this framework is designed to oversee single-currency stablecoins (SCS) linked to the valuation of either the Singapore dollar or prominent G10 currencies, including the USD, euro and British pound. Singapore introduces a stablecoin regulatory framework  Ho Hern Shin, the Deputy Managing Director of Financial Supervision at the bank,…

    Article 2023年8月16日
  • Bank of England clears path for digital pound backed by Project Rosalind study

    TL;DR Breakdown BOE is advancing towards the launch of the digital pound following Project Rosalind’s positive reinforcement. Gilbert Verdian, CEO and founder of Quant, calls Britain an “epicenter of the next generation of financial systems” The Bank of England(BOE) is advancing towards the launch of the digital pound following Project Rosalind’s positive reinforcement. The project, conducted over the past year, revealed that the technology can support a “diverse range” of new money uses. Positive feedback received on the digital pound Project Rosalind was started last year and was managed by the UK institution in conjunction with the Bank for International Settlements, to identify the workings and benefits of a central bank digital currency(CBDC), particularly the digital pound. According to a report published by the BIS, the first phase of the project found that a CBDC could fasten individual payments and make transactions easier. Firms could also introduce the latest financial products with the additional benefit of lower fraud rates using a “digital pound” CBDC. In addition, it brings about the concept of money “programmability,” allowing payments, for example, to settle…

    Article 2023年6月19日
  • Kenyan government suspends Worldcoin operations amid concerns over data privacy and legitimacy

    TL;DR Breakdown Kenya’s Ministry of the Interior has suspended Worldcoin’s operations. The suspension is for an investigation into legitimacy and data protection. Nairobi was a key market, with over 250,000 sign-ups. Description In a striking move against a global identity crypto protocol, Kenya’s Ministry of the Interior has suspended the operations of Worldcoin within the country. Worldcoin, co-founded by OpenAI’s Sam Altman, has come under scrutiny for its practices in collecting iris data. The suspension will remain effective as various Kenyan agencies assess the project’s risks to … Read more In a striking move against a global identity crypto protocol, Kenya’s Ministry of the Interior has suspended the operations of Worldcoin within the country. Worldcoin, co-founded by OpenAI’s Sam Altman, has come under scrutiny for its practices in collecting iris data. The suspension will remain effective as various Kenyan agencies assess the project’s risks to the public. Worldcoin’s initiative has aimed to create a global identification mechanism utilizing iris scans, a technology designed to verify that an agent is human and unique. This identification approach has been deemed potentially vital…

    Article 2023年8月3日
  • Colorado Division of Motor Vehicles (DMV) partners with PayPal to accept crypto as a form of payment

    TL;DR Breakdown The Colorado Division of Motor Vehicles (DMV) has become the first government agency in the state to accept cryptocurrency as payment for online services like driver’s licenses and vehicle registrations. To enable this, the DMV has partnered with PayPal, which will handle the cryptocurrency transactions by converting digital assets into dollars. A service fee will be applied for using this payment method. Description The Colorado Division of Motor Vehicles (DMV) has started accepting cryptocurrency as a form of payment for its online services. This initiative makes the DMV the first government agency in the state to embrace digital assets for financial transactions. PayPal crypto enables payments for driver’s licenses and vehicle registrations To facilitate this new payment option, … Read more The Colorado Division of Motor Vehicles (DMV) has started accepting cryptocurrency as a form of payment for its online services. This initiative makes the DMV the first government agency in the state to embrace digital assets for financial transactions. PayPal crypto enables payments for driver’s licenses and vehicle registrations To facilitate this new payment option, the DMV…

    Article 2023年9月2日
  • Google Cloud inks deal with El Salvador to drive digital transformation

    TL;DR Breakdown Google Cloud has inked a deal with El Salvador to push digital transformation and innovation. El Salvador’s progressive stance towards technological integration. Description Google Cloud’s recent collaboration with the government of El Salvador, unveiled on August 29th, marks a significant stride towards digitizing the nation and enhancing various sectors such as healthcare, education, and government services. This partnership, which involves establishing an office and introducing Google Distributed Cloud (GDC) services, is poised to bring about transformative changes. Google … Read more Google Cloud’s recent collaboration with the government of El Salvador, unveiled on August 29th, marks a significant stride towards digitizing the nation and enhancing various sectors such as healthcare, education, and government services. This partnership, which involves establishing an office and introducing Google Distributed Cloud (GDC) services, is poised to bring about transformative changes. Google Cloud initiative will push for digital innovation The primary objective of this initiative is to propel El Salvador into the digital age, modernizing government operations and public services. The GDC, a decentralized cloud service, will play a pivotal role by facilitating the…

    Article 2023年8月31日
TOP