Fun

Li.Fi releases incident report following $11M hack

News Feed - 2024-07-19 04:07:26

Vince Quill13 hours agoLi.Fi releases incident report following $11M hackThe team also announced it was working on a voluntary compensation plan to reimburse 100% of funds to users affected by the exploit.848 Total views5 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksFollowing the $11.6 million exploit of the Li.Fi protocol, an API used to bridge and swap digital assets across blockchains, the Li.Fi team released an update outlining the technical details of the breach.


According to the security update, the deployment of a new smart contract facet was ground zero forthe malicious attack. A vulnerability in the code allowed users calling the smart contract to initiate calls to any contract without prior validation.


This function is a result of code taken from the LibSwap library, used to facilitate calls between decentralized exchanges, service providers, and clients to coordinate the asset bridging and swapping processes.


Normally, these calls are screened against whitelisted addresses to ensure validation. However, Li.Fi explained that human error in deploying the offending smart contract facet was the root cause of the vulnerability exploited by the malicious actor.


The Li.Fi team confirmed the attack occurred on the Ethereum and Arbitrum networks and affected 156 wallets with the “infinite approvals” option turned on. Users without this option turned on were not affected by the exploit.Source: Li.Fi protocol


In statements to Cointelegraph, spokespeople for Li.Fi said they contained the exploit, addressed the critical vulnerability, and contacted the proper law enforcement authorities to trace stolen funds. At the time of this writing, the issue has been fixed, and Li.Fi is operating normally.


Related: Lazarus is moving millions from $305M DMM Bitcoin hack — ZachXBTNot the first time


In March 2022, Li.Fi was hit by a similar exploit affecting users with the “infinite approval” option turned on. The hackers drained $600,000 from the protocol from 29 wallets before the vulnerability was addressed.


The protocol was quick to reimburse investors for their losses, refunding 24 wallets directly from its treasury and offering the remaining five wallets a voluntary compensation plan akin to that received by early angel investors of Li.Fi.Crypto hacks put the damper on the industry in 2024


Unfortunately, hacks and exploits continue to plague the crypto industry and the decentralized financial sector, in particular.A chart comparing 2022-2024 losses from crypto hacks. Source: TRM.


According to a recent report from security firm Cyvers, 2024 losses from crypto exploits are nearing $1.4 billion, driven primarily by phishing attacks, and have risen sharply since 2023.


Magazine: Best and worst countries for crypto taxes — plus crypto tax tips# Blockchain# Business# Security# Cybersecurity# Hacks# DeFiAdd reaction

News Feed

Global Crypto Owners Predicted to Surpass 1 Billion This Year
Global Crypto Owners Predicted to Surpass 1 Billion This Year The number of global crypto owners is expected to exceed one billion by the end of the year, according to a report by
Mike Novogratz Warns of Credit Crunch in US and Globally — Expects Fed to Cut Rates ‘Sooner Than We Think’
Mike Novogratz Warns of Credit Crunch in US and Globally — Expects Fed to Cut Rates "Sooner Than We Think" Galaxy Digital CEO Mike Novogratz has warned of a credit crunch in the
Japan Considers Stricter Crypto Regulations in Light of Russia Sanctions
Japan Considers Stricter Crypto Regulations in Light of Russia Sanctions Authorities in Japan are planning to introduce tougher new rules for crypto operators as part of efforts to
Worldcoin will increase WLD supply by up to 19% in the next 6 months
Tom Mitchelhill6 hours agoWorldcoin will increase WLD supply by up to 19% in the next 6 monthsWorldcoin will be selling up to 1.5 million WLD tokens to select trading firms outside of the United States every week for the
Crypto Payments May Not Help Russia Bypass Sanctions, Experts Say
Crypto Payments May Not Help Russia Bypass Sanctions, Experts Say Russia is preparing to authorize international crypto payments but people involved in the industry doubt this woul
Amaka Nwaokocha1 hour agoRipple exec and XRP community back SEC commissioner’s LBRY lawsuit dissentStuart Alderoty thanked Hester Peirce and suggested it might be time to submit an amicus brief.726 Total views6 Total s
SEC pushes back against Terraform’s claims fraud happened outside US
Turner Wright4 hours agoSEC pushes back against Terraform’s claims fraud happened outside USLawyers for the commission cited several examples of Do Kwon touting UST to U.S. investors and Terraform’s former communicat
MicroStrategy is trading at an ‘unjustifiable premium’ to Bitcoin: Analyst
Ciaran Lyons5 hours agoMicroStrategy is trading at an ‘unjustifiable premium’ to Bitcoin: AnalystKerrisdale Capital claims MicroStrategy’ is no longer a “unique way to gain access to Bitcoin” but Michael Saylor
Helen Partz11 hours agoeToro secures crypto registration in Cyprus to expand in EUAccording to eToro deputy CEO Hedva Ber, Europe is “hugely important” for the firm as the majority of eToro users are based in the reg
Helen Partz11 hours agoHut 8 boosts self-mined Bitcoin reserves to 9.4K amid USBTC mergerAccording to Hut 8 CEO Jaime Leverton, the newly merged mining business will have “highly diversified fiat revenue streams.”349
Haun Ventures backs Chaos Labs with $55M Series A funding
Ana Paula Pereira5 hours agoHaun Ventures backs Chaos Labs with $55M Series A fundingOther investors in the round include PayPal, Lightspeed, Galaxy Ventures, Wintermute, F-Prime Capital, Slow Ventures and The Spartan Gr
Savannah Fortis13 hours agoAI chip developer gets $100 million from Samsung and HyundaiThe AI chip developing company Tenstorrent just closed a funding round worth $100 million, which was led by manufacturing giants Sams