Fun

Li.Fi releases incident report following $11M hack

News Feed - 2024-07-19 04:07:26

Vince Quill4 hours agoLi.Fi releases incident report following $11M hackThe team also announced it was working on a voluntary compensation plan to reimburse 100% of funds to users affected by the exploit.492 Total views5 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksFollowing the $11.6 million exploit of the Li.Fi protocol, an API used to bridge and swap digital assets across blockchains, the Li.Fi team released an update outlining the technical details of the breach.


According to the security update, the deployment of a new smart contract facet was ground zero forthe malicious attack. A vulnerability in the code allowed users calling the smart contract to initiate calls to any contract without prior validation.


This function is a result of code taken from the LibSwap library, used to facilitate calls between decentralized exchanges, service providers, and clients to coordinate the asset bridging and swapping processes.


Normally, these calls are screened against whitelisted addresses to ensure validation. However, Li.Fi explained that human error in deploying the offending smart contract facet was the root cause of the vulnerability exploited by the malicious actor.


The Li.Fi team confirmed the attack occurred on the Ethereum and Arbitrum networks and affected 156 wallets with the “infinite approvals” option turned on. Users without this option turned on were not affected by the exploit.Source: Li.Fi protocol


In statements to Cointelegraph, spokespeople for Li.Fi said they contained the exploit, addressed the critical vulnerability, and contacted the proper law enforcement authorities to trace stolen funds. At the time of this writing, the issue has been fixed, and Li.Fi is operating normally.


Related: Lazarus is moving millions from $305M DMM Bitcoin hack — ZachXBTNot the first time


In March 2022, Li.Fi was hit by a similar exploit affecting users with the “infinite approval” option turned on. The hackers drained $600,000 from the protocol from 29 wallets before the vulnerability was addressed.


The protocol was quick to reimburse investors for their losses, refunding 24 wallets directly from its treasury and offering the remaining five wallets a voluntary compensation plan akin to that received by early angel investors of Li.Fi.Crypto hacks put the damper on the industry in 2024


Unfortunately, hacks and exploits continue to plague the crypto industry and the decentralized financial sector, in particular.A chart comparing 2022-2024 losses from crypto hacks. Source: TRM.


According to a recent report from security firm Cyvers, 2024 losses from crypto exploits are nearing $1.4 billion, driven primarily by phishing attacks, and have risen sharply since 2023.


Magazine: Best and worst countries for crypto taxes — plus crypto tax tips# Blockchain# Business# Security# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Rakesh Upadhyay4 hours agoPrice analysis 7/19: BTC, ETH, XRP, BNB, ADA, SOL, DOGE, MATIC, LTC, DOTBitcoin’s failure to rebound off strong support levels increases the risk of a deeper correction that could also negativ
Dow Jones Stock Spooks Investors & It Could Be a Robot’s Fault
It"s Friday the 13th – not to mention the fact that there"s a full moon tonight – and one Dow Jones stock has investors feeling very afraid. | Credit: APIt’s Fri
Despite Covid-19 Negativity, Crypto Prediction Markets Say Trump Wins the 2020 Election
Despite Covid-19 Negativity, Crypto Prediction Markets Say Trump Wins the 2020 ElectionAccording to a number of crypto prediction markets and futures, Trump will still win the elect
Jack Dorsey Resigning as CEO of Twitter Is Bullish for Crypto, Says Fundstrat
Jack Dorsey Resigning as CEO of Twitter Is Bullish for Crypto, Says Fundstrat Twitter now has a new chief executive officer after Jack Dorsey resigned Monday. Dorsey, who is still
Biden orders removal of Chinese-owned crypto miner near missile base
Martin Young3 hours agoBiden orders removal of Chinese-owned crypto miner near missile baseEntities owned by Chinese nationals “might take action that threatens to impair the national security of the United States,”
Iris Energy Boosts Self-Mining Capacity With 4.4 EH/s of New Bitmain Bitcoin Mining Rigs
Iris Energy Boosts Self-Mining Capacity With 4.4 EH/s of New Bitmain Bitcoin Mining Rigs Bitcoin miner, Iris Energy, announced plans to increase the company’s self-mining ca
The BNB Paradox: Bearish Breakdown Meets Bullish Flag, Which Will Prevail?
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Economist Mohamed El-Erian Predicts ‘Sticky’ Inflation Despite Federal Reserve’s Efforts to Bring it Down
Economist Mohamed El-Erian Predicts ‘Sticky’ Inflation Despite Federal Reserve"s Efforts to Bring it Down As investors examine the next move of the Federal Reserve, analysts, e
Martin Young4 hours agoMeta’s Twitter rival Threads to launch July 6, but will the crypto community budge?Meta’s microblogging platform is set for launch, with Twitter co-founder Jack Dorsey pointing out the app’s
Google Alerts Users About Malicious Actors Using Cloud for Cryptocurrency Mining
Google Alerts Users About Malicious Actors Using Cloud for Cryptocurrency Mining Google has warned users about the use of its Google Cloud platform by malicious actors to mine cryp
Massive Fake Celebrity-Endorsed Bitcoin Investment Campaign Duping Google, Facebook Traced to Moscow
Massive Fake Celebrity-Endorsed Bitcoin Investment Campaign Duping Google, Facebook Traced to Moscow A massive bitcoin ad scam campaign — which features ce
Unknown crypto whale has been scooping up WBTC amid controversy
Tom Mitchelhill3 hours agoUnknown crypto whale has been scooping up WBTC amid controversyAccording to Lookonchain, an unknown wallet address has accumulated more than $118 million worth of Wrapped Bitcoin in the last wee