Fun

News Feed - 2023-07-31 03:07:29

Ana Paula Pereira5 hours agoBreaking: Curve Finance pools exploited in over $47M due to reentrancy vulnerabilitySeveral stable pools on Curve Finance using Vyper were exploited on July 30. Vyper versions 0.2.15, 0.2.16 and 0.3.0 are vulnerable to malfunctioning reentrancy locks.6239 Total views16 Total sharesListen to article 0:00Breaking newsJoin us on social networksUpdate (July 30, at 7:55 pm UTC): This article has been updated to provide more details about the exploit


Several stable pools on Curve Finance using Vyper were exploited on July 30, with losses reaching over $47 million. According to Vyper, its 0.2.15, 0.2.16 and 0.3.0 versions are vulnerable to malfunctioning reentrancy locks. 


"The investigation is ongoing but any project relying on these versions should immediately reach out to us," Vyper wrote on X. Based on an analysis of affected contracts by security firm Ancilia, 136 contracts used Vyper 0.2.15 with reentrant protection, 98 contracts used Vyper 0.2.16 and 226 contracts used Vyper 0.3.0.A number of stablepools (alETH/msETH/pETH) using Vyper 0.2.15 have been exploited as a result of a malfunctioning reentrancy lock. We are assessing the situation and will update the community as things develop.

Other pools are safe. https://t.co/eWy2d3cDDj— Curve Finance (@CurveFinance) July 30, 2023


According to initial investigation, some versions of the Vyper compiler do not correctly implement the reentrancy guard, which prevents multiple functions from being executed at the same time by locking a contract. Reentrancy attacks can potentially drain all funds from a contract.


Vyper is a contract-oriented, pythonic programming language that targets the Ethereum Virtual Machine (EVM). Vyper similarities to Python makes the language one of the starting points for Python developers jumping into Web3. 


A number of decentralized finance projects were affected by the attack. Decentralized exchange Ellipsis reported that a small number of stable pools with BNB were exploited using an old Vyper compiler. Alchemix"s alETH-ETH also witnessed $13.6 million outflow, along with $11.4 million exploited on JPEGd’s pETH-ETH pool, and $1.6 million in Metronome’s sETH-ETH pool. Curving Finance CEO Michael Egorov later confirmed 32 million CRV tokens worth over $22 million had been drained from the swap pool in a Telegram channel.Certain type of Curve factory pool is encountering read-only reentrancy attack and causing a total loss of $11m(@JPEGd_69) + $13m(@AlchemixFi) + ...

Initial investigation founds that vyper compiler (0.2.15) doesn"t implement the reentrancy guard correctly.

add_liquidity and… pic.twitter.com/avaHdtSFsm— Tony KΞ (@tonyke_bot) July 30, 2023


The exploit sparked panic across the DeFi ecosystem, prompting a wave of transactions across pools and a rescue operation from white hats. Data from CoinMarketCap shows Curve Finance"s utility token Curve DAO (CRV) declining over 5% in reaction to the news. CRV"s liquidity has declined significantly in recent months, making it vulnerable to violent price swings, Cointelegraph reported. According to Curve Finance, crvUSD contracts and any pools with it were not affected by the attack.Curve DAO token prince on July 30, 2023. Source: CoinMarketCap.


Curve Finance is a DeFi protocol that enables the decentralized exchange (DEX) of stablecoins within Ethereum. The protocol has been targeted by a series of incidents within its ecosystem. Just a few days ago, its omnipool platform Conic Finance was exploited for $3.26 million in Ether (ETH), with nearly the entire amount stolen sent to a new Ethereum address in just one transaction.


DeFi protocols have been targeted by multiple attacks over the past months. According to a report by Web3 portfolio app De.Fi, more than $204 million was swindled through DeFi hacks and scams in the second quarter of 2023 alone.


Magazine: Should crypto projects ever negotiate with hackers? Probably# Hackers# Hacks# DeFi# Curve FinanceAdd reactionAdd reactionRelated NewsWhat are NFT royalties, and how do they work?Zero-knowledge tech development heats up amid bear marketWorldcoin is making reality look like a lot like Black Mirror‘Multichain was a big blow,’ says Andre Cronje as Fantom TVL slumpsCurve omnipool platform Conic Finance hacked for $3.2M in ETHAlphapo hot wallets hacked for over $31 million

News Feed

Bitcoin Giveaway: Actress Gwyneth Paltrow Gives Away $500K in BTC for the Holidays
Bitcoin Giveaway: Actress Gwyneth Paltrow Gives Away $500K in BTC for the Holidays Hollywood actress Gwyneth Paltrow is giving away $500,000 in bitcoin for the holidays. The winner
Grayscale, Bitwise, NYSE American apply to list options on 3 Ether ETFs
Tom Mitchelhill4 hours agoGrayscale, Bitwise, NYSE American apply to list options on 3 Ether ETFsThe NYSE American has asked the SEC for approval for it to list and trade options for three Ether ETFs from Bitwise and Gra
Marcel Pechman10 hours ago3 reasons why Bitcoin price failed to break $37KBitcoin’s latest price pullback to $35,000 was driven by softer U.S. inflation, China’s economic challenges and regulatory uncertainties.4678
Germany's Bitcoin wallet drops to 5,800 BTC after major sale
Amaka Nwaokocha18 minutes agoGermany"s Bitcoin wallet drops to 5,800 BTC after major saleWith 5,800 Bitcoin remaining, the German government has successfully sold 88.4% of the original 50,000.192 Total views1 Total share
Prashant Jha4 hours agoAudits and rug-pulled projects, a $650B token burn, and major DeFi protocol quits UK: Finance RedefinedUniswap’s founder burned $650 billion of HayCoin, amounting to 99% of the token’s supply.1
Ilias Salvatore11 hours agoFinancial decision-making: Using smart-analyticsSmart analytics are not just a tool. They can be a game changer in making more frequent and accurate financial decisions.275 Total viewsListen to
Ana Paula Pereira3 hours agoFriend.tech generates over $1M fees in 24h, surpassing Uniswap, Bitcoin networksThe platform was launched in beta version on Aug. 11 and allows users to tokenize their social network by buying
Tom Mitchelhill3 hours agoBreaking: Mt. Gox trustee changes repayment deadline to October 2024Rehabilitation trustee Nobuaki Kobayashi has extended the Mt. Gox repayment deadline by one year.1841 Total views26 Total shar
Solana Market Cap Surpasses $100 Billion, Setting Up SOL For Potential ATH Rally
Este artículo también está disponible en español. Solana (SOL) recently saw its market cap surge past $100 billion, setting the stage for a potential all-time high (ATH)
Speculators and Crypto Traders Blamed for Naira’s Plunge, Kenyan Institutions Told to End Dealings With Nigerian Fintechs, CAR Token Sale off to Slow Start
Speculators and Crypto Traders Blamed for Naira"s Plunge, Kenyan Institutions Told to End Dealings With Nigerian Fintechs, CAR Token Sale off to Slow Start In this week’s Af
Fed’s Key Inflation Gauge Jumps 0.5% in September, America’s Rising Costs to ‘Punish’ Democrats
Fed"s Key Inflation Gauge Jumps 0.5% in September, America"s Rising Costs to "Punish" Democrats The U.S. central bank’s key inflation gauge, the personal consumption expenditures
Cardano Price Set To Skyrocket By 430%, Crypto Analyst Predicts
Este artículo también está disponible en español. In an analysis published on TradingView, pseudonymous crypto analyst Melika Trader has provided a technical forecast for