Fun

News Feed - 2023-09-21 09:09:48

Brayden Lindrea8 hours agoBalancer blames ‘social engineering attack’ on DNS provider for website hijackBlockchain security firms SlowMist and CertiK also believe the crypto wallet drainer, Angel Drainer, was involved in the estimated $238,000 exploit.1939 Total views23 Total sharesListen to article 0:00Follow upJoin us on social networksThe team behind Balancer, an Ethereum-based automated market maker, believes a social engineering attack on its DNS service provider was what led to its website’s front end being compromised on Sept. 19, leading to an estimated $238,000 in crypto stolen.


“After investigation, it is clear that this was a social engineering attack on EuroDNS, the domain registrar used for .fi TLDs,” the firm explained in a Sept. 20 X post.


Approximately eight hours after the first warning of the attack, Balancer said its decentralized autonomous organization (DAO) was actively addressing the DNS attack and was working to recover the Balancer UI.


At 5:45 pm UTC on Sept. 20, Balancer said it was successful in securing the domain and bringing it back under the control of Balancer DAO. It also confirmed its subdomains “app.balancer.fi” and “balancer.fi” are safe to use again.After investigation it is clear that this was a social engineering attack on EuroDNS, the domain registrar used for .fi TLDs.

We are exploring deprecating the .fi TLD in order to move to a more secure registrar and suggest that other projects using the TLD do the same.

[2/2]— Balancer (@Balancer) September 20, 2023


However, it suggested any other projects using the same top-level domain should consider moving to a more secure registrar. 


EuroDNS is a Luxembourg-based domain name registrar and DNS service provider. Cointelegraph has reached out to EuroDNS for comment.Angel Drainer involved


Blockchain security firms SlowMist and CertiK reported that the attacker employed Angel Drainer phishing contracts.


SlowMist said the exploiters attacked Balancer’s website via Border Gateway Protocol hijacking — a process where hackers take control of IP addresses by corrupting internet routing tables.


The hackers then induced users to “approve” and transfer funds via the “transferFrom” function to the Balancer exploiter, it explained.


Related:Breaking: ‘All funds are at risk" — Steadefi exploited in ongoing attack


The hacker, whom SlowMist believes may be related to Russia, has already bridged some of the stolen Ether (ETH) to Bitcoin (BTC) addresses via THORChain before eventually bridging the ETH back to Ethereum, blockchain security firm SlowMist explained on Sept. 20.


SlowMist stated in an earlier post that the hacker transferred about 15 wrapped-Ether (wETH.e) on the Avalanche blockchain.Balancer Hack Update

So far, we have the following findings about the @Balancer exploiter:

1/ The attacker’s fee came from the phishing group #AngelDrainer. In other words, after the attacker (AngelDrainer) attacked the website via BGP hijacking, then induced users to… https://t.co/5g6P2aPEz8 pic.twitter.com/3PInfe9VC1— MistTrack️ (@MistTrack_io) September 20, 2023


Meanwhile, despite Balancer confirming its subdomains on “balancer.fi” to now be safe, the “Deceptive site ahead” warning still appears when attempting to access Balancer’s website.Balancer’s website as of Sept. 20 at 10:22 pm UTC. Source: Balancer.


Cointelegraph reached out to Balancer to confirm the amount of funds lost, but did not receive an immediate response.


Magazine:$3.4B of Bitcoin in a popcorn tin: The Silk Road hacker’s story# Altcoin# Phishing# Hackers# DAO# DNS# Hacks# DeFiAdd reactionAdd reactionRead moreHow to earn passive income with peer-to-peer lendingHuman vs. AI: Who is better at crypto investing?Decentralized finance needs alternatives to blockchain

News Feed

Tristan Greene5 hours agoNYU law professors argue ‘personal growth bets’ using smart contracts should be legalThe duo’s paper says self-contracts can help a user quit smoking or lose weight, but incentives such as
Spencer Dinwiddie to Tokenize His NBA Contract; Pro Athletes Should Follow Suit
On September 13th, CCN reported that Brooklyn Nets point guard Spencer Dinwiddie plans to convert his $34 million contract into digital tokens. The move allows the NBA player to receive a lump sum payment as investors pu
Crypto Adviser For The Ultra Wealthy Tells XRP Investors What To Do As Coins Turn To Real Money
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Derek Andersen12 hours agoBlockchain could authenticate AI as crypto racks up court victories: Rep. EmmerU.S. Rep. Tom Emmer told an audience at Permissionless II that things are looking up for crypto and it’s time to
Blackrock Launches Blockchain ETF Offering Investors Exposure to Crypto Sector
Blackrock Launches Blockchain ETF Offering Investors Exposure to Crypto Sector The world’s largest asset manager, Blackrock, has launched a blockchain exchange-traded fund (
Ethereum’s firm $2,860 support signals path to $4,500 — Deribit
Josh O"Sullivan10 hours agoEthereum’s firm $2,860 support signals path to $4,500 — DeribitA Deribit report underscores Ethereum’s resilience at $2,860, pointing toward potential highs driven by recent ETF approvals
Cardano whale verkoopt miljoenen tokens, ADA koers daalt – wat gaat Cardano doen?
Este artículo también está disponible en español. De recente verkoop van miljoenen ADA-tokens door een Cardano-whale heeft de koers stevig doen dalen, met een verlies van
UAE central bank introduces wholesale, retail digital dirham strategy
Derek Andersen7 hours agoUAE central bank introduces wholesale, retail digital dirham strategyThe CBUAE has been active in CBDC research as a member of Project mBridge and has placed CBDC in its overarching fintech trans
BTC trades at ‘deep discount’ after halving — 5 things to know in Bitcoin this week
William Suberg14 hours agoBTC trades at ‘deep discount’ after halving — 5 things to know in Bitcoin this weekBitcoin has a new countdown after the halving as the days of a sub-$100,000 BTC price are “numbered,”
Zhiyuan Sun7 hours agoMedian Web3 developer salary stands at $128K in 2023In a recent Pantera survey, less than 2% of respondents said they worked full time in an office setting, with the rest working at least partially
Crypto Biz: Can Yuga Labs’ new CEO make Otherside a success?
Ana Paula Pereira2 hours agoCrypto Biz: Can Yuga Labs’ new CEO make Otherside a success?This week’s Crypto Biz features Yuga Labs’ new CEO and the challenges facing its Otherside metaverse, Binance’s decision to
Summer will offer ‘perfect opportunity’ for investing in crypto — Arthur Hayes
Marco Castrovilli8 hours agoSummer will offer ‘perfect opportunity’ for investing in crypto — Arthur HayesThe BitMEX co-founder says the current phase of price consolidation is ideal for accumulating crypto before