Fun

Li.Fi releases incident report following $11M hack

News Feed - 2024-07-19 04:07:26

Vince Quill13 hours agoLi.Fi releases incident report following $11M hackThe team also announced it was working on a voluntary compensation plan to reimburse 100% of funds to users affected by the exploit.848 Total views5 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksFollowing the $11.6 million exploit of the Li.Fi protocol, an API used to bridge and swap digital assets across blockchains, the Li.Fi team released an update outlining the technical details of the breach.


According to the security update, the deployment of a new smart contract facet was ground zero forthe malicious attack. A vulnerability in the code allowed users calling the smart contract to initiate calls to any contract without prior validation.


This function is a result of code taken from the LibSwap library, used to facilitate calls between decentralized exchanges, service providers, and clients to coordinate the asset bridging and swapping processes.


Normally, these calls are screened against whitelisted addresses to ensure validation. However, Li.Fi explained that human error in deploying the offending smart contract facet was the root cause of the vulnerability exploited by the malicious actor.


The Li.Fi team confirmed the attack occurred on the Ethereum and Arbitrum networks and affected 156 wallets with the “infinite approvals” option turned on. Users without this option turned on were not affected by the exploit.Source: Li.Fi protocol


In statements to Cointelegraph, spokespeople for Li.Fi said they contained the exploit, addressed the critical vulnerability, and contacted the proper law enforcement authorities to trace stolen funds. At the time of this writing, the issue has been fixed, and Li.Fi is operating normally.


Related: Lazarus is moving millions from $305M DMM Bitcoin hack — ZachXBTNot the first time


In March 2022, Li.Fi was hit by a similar exploit affecting users with the “infinite approval” option turned on. The hackers drained $600,000 from the protocol from 29 wallets before the vulnerability was addressed.


The protocol was quick to reimburse investors for their losses, refunding 24 wallets directly from its treasury and offering the remaining five wallets a voluntary compensation plan akin to that received by early angel investors of Li.Fi.Crypto hacks put the damper on the industry in 2024


Unfortunately, hacks and exploits continue to plague the crypto industry and the decentralized financial sector, in particular.A chart comparing 2022-2024 losses from crypto hacks. Source: TRM.


According to a recent report from security firm Cyvers, 2024 losses from crypto exploits are nearing $1.4 billion, driven primarily by phishing attacks, and have risen sharply since 2023.


Magazine: Best and worst countries for crypto taxes — plus crypto tax tips# Blockchain# Business# Security# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Elon Musk Praises Reports on Latam Common Digital Currency: ‘Probably a Good Idea’
Elon Musk Praises Reports on Latam Common Digital Currency: "Probably a Good Idea" Elon Musk, CEO of Twitter, SpaceX, and Tesla, has given his opinion about the latest reports on t
It’s Too Soon to Write Libra’s Crypto Obituary
To paraphrase Mark Twain, rumors of the nation-state’s demise are greatly exaggerated. The exits of Mastercard, Visa, Paypal and four other firms from the Libra consortium ca
Pro-XRP lawyer confident he can win senate bid, sets $1M campaign goal
Ciaran Lyons3 hours agoPro-XRP lawyer confident he can win senate bid, sets $1M campaign goalThe pro-XRP lawyer shared with his online following that he"s covered half of the campaign funds and asked if they could pitch
Bitcoin Proponents Accuse the New York Times of Publishing One-Sided ‘Hit Piece’ on Bitcoin Mining
Bitcoin Proponents Accuse the New York Times of Publishing One-Sided "Hit Piece" on Bitcoin Mining After the New York Times was accused of writing favorable pieces about disgraced
Biggest Movers: SOL up 15%, as Bullish Sentiment Continues to Rise
Biggest Movers: SOL up 15%, as Bullish Sentiment Continues to Rise Solana extended recent gains on Wednesday, as the token rose by as much as 15% in today’s session. The mov
Online Sleuths Believe Satoshi Nakamoto’s Bitcoin Stash Is a Blockchain Treasure Hunt Meant to Be Found
Online Sleuths Believe Satoshi Nakamoto’s Bitcoin Stash Is a Blockchain Treasure Hunt Meant to Be Found Over the last twelve years, the cryptocurrency communit
Ana Paula Pereira3 hours agoCrypto market outflows reached $55B in August as liquidity dwindled — BitfinexCrypto’s liquidity crunch could allow event-based volatility to have a greater impact on prices, according to
The Novatar — the Best Place to Create Your Digital Identity
The Novatar — the Best Place to Create Your Digital Identity press release PRESS RELEASE. The Novatar will be launching with a limited edition of 25K avatars, an NFT project to en
Helen Partz9 hours agoPayPal enables US users to sell cryptocurrency via MetaMask walletPayPal continues expanding its digital asset services, integrating new methods to sell cryptocurrencies like Bitcoin.3907 Total view
Lightning Network Increasingly Fragile to Attacks – Hope Turns to Drivechain for Bitcoin Scaling
Lightning Network Increasingly Fragile to Attacks – Hope Turns to Drivechain for Bitcoin Scaling A report published February 7 and authored in part by Blockstream researcher Ch
Lucrosus Capital CEO Piotr Barbachowski Explains the Benefits of Decentralized Venture Capital
Lucrosus Capital CEO Piotr Barbachowski Explains the Benefits of Decentralized Venture Capital Lucrosus Capital is the first gamified Decentralized Venture Capital (DeVC) providing
Regulatory crackdown spawns anti-SEC ‘CultureCoin’
Josh O"Sullivan10 hours agoRegulatory crackdown spawns anti-SEC ‘CultureCoin’The creators of NotWifGary aim to “stand [their] ground against Gary Gensler and the SEC” in support of Ethereum and open-source develo