Fun

Old Dolomite exchange contract suffers $1.8M loss from approval exploit

News Feed - 2024-03-21 06:03:25

Christopher Roark2 hours agoOld Dolomite exchange contract suffers $1.8M loss from approval exploitThe Ethereum version of Dolomite suffered a $1.8 million exploit, and the team is warning users to revoke approvals for this old address.1076 Total viewsListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksAn old contract previously used by the Dolomite crypto exchange has been exploited for approximately $1.8 million, according to a March 20 report from blockchain security platform CertiK and seen by Cointelegraph. The exploit affected users who previously authorized approvals to the contract, and the development team recommended revoking approvals to the Ethereum Dolomite address that begins with 0xe2466. 


The development team claimed that users who have only interacted with the current version on Arbitrum should not be affected. They have also disabled the faulty contract, which should protect users who have not yet become victims of the attack. Even so, the team argued that users should revoke approvals to this contract.Source: Dolomite


Dolomite is a decentralized exchange and money market protocol that currently runs on Arbitrum and Polygon zkEVM. It originally launched on Ethereum in 2019. The team migrated it to the Arbitrum network in 2022 and gradually phased out support for the Ethereum version. Because of the immutable nature of smart contracts, users can still interact with its Ethereum version using developer tools.


According to the CertiK report, the attacker exploited a function named “callFunction” that allows a user to make any arbitrary calls. This function is guarded by a “noEntry” modifier, which under normal circumstances, should prevent any reentrancy attacks. However, this guard can be bypassed by the TradeManager contract located at 0xe2466, which contains a “call” function that has no reentrancy guard. Thus, the attacker was able to use this contract to drain funds from users, CertiK claimed.


The attacker transferred all of the stolen funds to address 0x5eAA7DadA44d59549A6c58008b2bd3C7F81d2502 and then deposited them into Tornado cash, Certik stated.


Related:ParaSwap evades hack targeting Augustus v6 contract vulnerability


This exploit is one of several that have occurred in March. On March 11, the Unizen protocol on Ethereum lost over $2.1 million due to an approval exploit. In that case, the development team promised to reimburse users as soon as possible. On March 15, Mozaic Finance lost over $2.4 million due to a private key compromise.# Ethereum# Hackers# Cryptocurrency Exchange# Hacks# Decentralized Exchange# DeFi# ArbitrumAdd reactionAdd reactionRead morePrice analysis 3/20: BTC, ETH, BNB, SOL, XRP, ADA, DOGE, AVAX, SHIB, TONSEC pushes deadline on VanEck spot Ether ETF applicationParaSwap evades hack targeting Augustus v6 contract vulnerability

News Feed

Bitcoin To Hit $125,000 By Year-End If Trump Wins, Says Standard Chartered
Este artículo también está disponible en español. In a research paper dated October 24, Geoff Kendrick, Global Head of Digital Assets Research at Standard Chartered Bank,
Lena Network’s Candy token falls 87% after $2.9M rug pull
Zoltan Vardai10 hours agoLena Network’s Candy token falls 87% after $2.9M rug pullThe rug pull occurred hours after the Candy token’s launch.1428 Total views17 Total sharesListen to article 0:00NewsOwn this piece of
Call Of Duty: Modern Warfare Beta Is Out and Gamers are Ranting About a Ton of Problems
Gamers are losing their minds over technical glitches associated with the new Call of Duty beta. | Image: ShutterstockActivision finally dropped the highly-anticipated Call of Duty:
Bitcoin derivatives turn bearish as traders anticipate sub $60K BTC price
Marcel Pechman4 hours agoBitcoin derivatives turn bearish as traders anticipate sub $60K BTC priceBitcoin derivatives data suggests that macroeconomic and crypto-specific factors are behind BTC’s recent drop below $60,
Crypto could get boost from younger, tech-savvy Harris administration 
Andrew Singer10 hours agoCrypto could get boost from younger, tech-savvy Harris administration A Harris administration could be younger and more pragmatic and bring “a fresh perspective toward crypto,” some believe.
Backtested DCA strategy suggests selling Bitcoin at ‘extreme greed’ most profitable
Brayden Lindrea4 hours agoBacktested DCA strategy suggests selling Bitcoin at ‘extreme greed’ most profitableA Redditor suggested selling 5% of one’s Bitcoin during times of “extreme greed” produces higher ROI
Marcel Pechman11 hours agoWhy approving a Bitcoin ETF might unleash $18B in sell-pressureGrayscale Bitcoin Trust conversion to an ETF will unlock a potential sale of up to $18 billion in Bitcoin.8978 Total views91 Total
Dogecoin Gains Momentum: A Potential Upside Move Toward $0.2677 Looming
Este artículo también está disponible en español. Dogecoin (DOGE) is gaining momentum as bullish pressure strengthens, positioning the price for a potential move toward t
Ethereum Leverage Increases: Analyst Predicts Longs Could Benefit
Este artículo también está disponible en español. Recent reports have revealed that Ethereum has had a challenging run, underperforming compared to other major cryptocurr
Tristan Greene5 hours agoSEC Chair Gary Gensler warns impending AI-wrought financial crisis ‘nearly unavoidable’Gensler reportedly fears Big Tech’s stranglehold on AI technologies homogenizing the financial market.
Bitcoin Games Launches Midsummer Promotion as Sweden Looks Toward Launching its Own Digital Currency
Bitcoin Games Launches Midsummer Promotion as Sweden Looks Toward Launching its Own Digital CurrencyThe premier cryptocurrency gaming portal, Bitcoin Games has announced the launch
Arijit Sarkar13 hours agoSingapore introduces 5 new pilots to test asset tokenizationThe latest initiatives by the Monetary Authority of Singapore aim to develop foundational capabilities to scale tokenized markets.2936