Fun

Li.Fi releases incident report following $11M hack

News Feed - 2024-07-19 04:07:26

Vince Quill13 hours agoLi.Fi releases incident report following $11M hackThe team also announced it was working on a voluntary compensation plan to reimburse 100% of funds to users affected by the exploit.848 Total views5 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksFollowing the $11.6 million exploit of the Li.Fi protocol, an API used to bridge and swap digital assets across blockchains, the Li.Fi team released an update outlining the technical details of the breach.


According to the security update, the deployment of a new smart contract facet was ground zero forthe malicious attack. A vulnerability in the code allowed users calling the smart contract to initiate calls to any contract without prior validation.


This function is a result of code taken from the LibSwap library, used to facilitate calls between decentralized exchanges, service providers, and clients to coordinate the asset bridging and swapping processes.


Normally, these calls are screened against whitelisted addresses to ensure validation. However, Li.Fi explained that human error in deploying the offending smart contract facet was the root cause of the vulnerability exploited by the malicious actor.


The Li.Fi team confirmed the attack occurred on the Ethereum and Arbitrum networks and affected 156 wallets with the “infinite approvals” option turned on. Users without this option turned on were not affected by the exploit.Source: Li.Fi protocol


In statements to Cointelegraph, spokespeople for Li.Fi said they contained the exploit, addressed the critical vulnerability, and contacted the proper law enforcement authorities to trace stolen funds. At the time of this writing, the issue has been fixed, and Li.Fi is operating normally.


Related: Lazarus is moving millions from $305M DMM Bitcoin hack — ZachXBTNot the first time


In March 2022, Li.Fi was hit by a similar exploit affecting users with the “infinite approval” option turned on. The hackers drained $600,000 from the protocol from 29 wallets before the vulnerability was addressed.


The protocol was quick to reimburse investors for their losses, refunding 24 wallets directly from its treasury and offering the remaining five wallets a voluntary compensation plan akin to that received by early angel investors of Li.Fi.Crypto hacks put the damper on the industry in 2024


Unfortunately, hacks and exploits continue to plague the crypto industry and the decentralized financial sector, in particular.A chart comparing 2022-2024 losses from crypto hacks. Source: TRM.


According to a recent report from security firm Cyvers, 2024 losses from crypto exploits are nearing $1.4 billion, driven primarily by phishing attacks, and have risen sharply since 2023.


Magazine: Best and worst countries for crypto taxes — plus crypto tax tips# Blockchain# Business# Security# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Kevin O’Leary Warns US Crypto Regulation Getting ‘Very Aggressive’ — ‘You’ve Got to Stay out of the Way of SEC’
Kevin O"Leary Warns US Crypto Regulation Getting "Very Aggressive" — "You"ve Got to Stay out of the Way of SEC" Shark Tank star Kevin O’Leary, aka Mr. Wonderful, has warned
Dogecoin Adoption Rises: Bitpay Lets Merchants Accept DOGE, Coinflip’s 1,800 ATMs Now List the Crypto
Dogecoin Adoption Rises: Bitpay Lets Merchants Accept DOGE, Coinflip"s 1,800 ATMs Now List the Crypto Crypto merchant service provider Bitpay has added dogecoin
Prashant Jha1 hour agoCrypto-centered public companies record profit beating Q2 estimatesThe rise in cryptocurrency prices and non-trading revenues became key to profitability for many crypto-focused companies.471 Total
FTX Publishes Creditor List, Owes Millions to Well-Known Institutions and Government Agencies
FTX Publishes Creditor List, Owes Millions to Well-Known Institutions and Government Agencies The now-defunct crypto exchange FTX has published its list of creditors, with the name
South Korea Crypto Adoption Will Fuel Crypto Wallets: Will Best Wallet be Next to 10x?
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
President of Bank of Brazil Shows ‘Open Finance’ Digital Real Concept Featuring Stablecoin Integration and Payments Functionality
President of Bank of Brazil Shows "Open Finance" Digital Real Concept Featuring Stablecoin Integration and Payments Functionality Roberto Campos Neto, president of the Bank of Braz
Robert Kiyosaki Warns of ‘Crash Landing Ahead’ as Bailouts Begin — Advises Buying More Bitcoin
Robert Kiyosaki Warns of "Crash Landing Ahead" as Bailouts Begin — Advises Buying More Bitcoin The famous author of the best-selling book Rich Dad Poor Dad, Robert Kiyosaki, has
South Korean Lawmaker Says He Will Start Accepting Crypto Donations in the New Year
South Korean Lawmaker Says He Will Start Accepting Crypto Donations in the New Year Lee Kwang-jae, a South Korean lawmaker, recently stated that he will be accepting cryptocurrency
Derek Andersen2 hours agoAPEC finance ministers to share perspectives on crypto at meeting in San FranciscoU.S. Treasury Secretary Janet Yellen said she is looking forward to hearing from the finance ministers of some of
Martin Young4 hours agoBitcoin energy pivot achieves what ‘few industries can claim’ — Bloomberg analystBitcoin’s hash rate has continued to increase, yet its emissions intensity has been trending down, contrary
Bitcoin bulls should steer clear of MicroStrategy's new leveraged ETF
Alex O’Donnell5 hours agoBitcoin bulls should steer clear of MicroStrategy"s new leveraged ETFLeveraged ETFs chronically underperform comparable investments. There are better ways to place bullish bets on Bitcoin than
Grayscale Investments Clears Out XRP in Its Digital Large Cap Fund
Grayscale Investments Clears Out XRP in Its Digital Large Cap Fund Grayscale has sold all of its XRP holdings to purchase bitcoin, ether, and other crypto assets