Fun

dYdX v3 compromised in an apparent DNS attack

News Feed - 2024-07-24 02:07:43

Christopher Roark6 hours agodYdX v3 compromised in an apparent DNS attackAn attacker appears to have installed a token-draining program on the official domain for dYdX version 3.0.853 Total views2 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTJoin us on social networksThe website for crypto exchange dYdX’s version 3.0 has been “compromised,” according to a July 23 social media post from the exchange’s team. However, the team stated that version 4.0 on Cosmos has not been compromised and is functioning normally. Users are being warned that they should not “visit the website [for v3] or click any links until further notice.”


The user interface for dYdX v3 is located at dydx.exchange. Source: dYdX


dYdX has confirmed that the app’s smart contracts have not been compromised. Only the user interface is affected, so funds currently deposited should not be at risk, and the site should not be used to attempt withdrawals.


Related:dYdX moves to Cosmos-based blockchain for v4 to optimize decentralization


Cointelegraph journalists attempted to connect to the compromised website with a test Ethereum account that held no balance. In response, the site produced an error stating, “Your wallet is not eligible. Something went wrong. Please try again with an active wallet.”dYdX hacked site error message. Source: dydx.exchange


A similar error message was shown in a fake Collab.land phishing scam that a victim reported to Cointelegraph in February. This earlier scam appeared to check the user’s wallet balance once it was connected to the site. If the wallet did not have a balance, the user was told to try again with an “active wallet.” If the user then connected with a wallet that held funds, they were presented with a signature request. If they signed this request, their account was drained.


The hacked version of the dYdX website appears to work in a similar way.


At the time of publication, the team has not provided further details as to how the attacker was able to gain control of the app’s domain name. But domain name service (DNS) hijacking attempts against Web3 protocols have become common recently. On July 11, both Compound Finance and Celer Network were targeted in a DNS attack, and the attacker successfully redirected Compound’s website to a malicious website that attempted to drain tokens.


This is a developing story, and further information will be added as it becomes available.


Magazine: Crypto-Sec: Evolve Bank suffers data breach, Turbo Toad enthusiast loses $3.6K# Phishing# Hackers# Hacks# DeFiAdd reaction

News Feed

Bitconnect Victims to Receive Over $17 Million in Restitution From Ponzi Scheme
Bitconnect Victims to Receive Over $17 Million in Restitution From Ponzi Scheme More than $17 million in restitution will be distributed among investors in the pyramid scheme Bitco
Japan to Relax Cryptocurrency Listing Rules
Japan to Relax Cryptocurrency Listing Rules The Japan Virtual and Crypto Assets Exchange Association (JVCEA) plans to allow crypto trading platforms to list coins without going thr
Grayscale announces plans for Bitcoin ETF spinoff
Alex O’Donnell3 hours agoGrayscale announces plans for Bitcoin ETF spinoffCurrent GBTC shareholders will receive shares in Grayscale’s new Bitcoin ETF in proportion to what they currently hold in GBTC.1621 Total view
Bitcoin Rises in New Crypto Rankings by Chinese Government-Backed Institute
Bitcoin Rises in New Crypto Rankings by Chinese Government-Backed InstituteChina’s Center for Information and Industry Development has revised its cryptocurrency project ranki
Nitin Kumar11 hours agoThe product-market fit nuances in Web3While the core principles of product-market fit (PMF) remain consistent, their application in the Web3 context has evolved.119 Total views2 Total sharesListen
39% of Canada’s institutional investors have exposure to crypto: KPMG
Brayden Lindrea7 hours ago39% of Canada’s institutional investors have exposure to crypto: KPMGKPMG Canada partner Kunal Bhasin says rising debt and increasing inflation have likely attracted institutional investors in
RNDR pumps 11% after Apple mentions Octane
Ciaran Lyons3 hours agoRNDR pumps 11% after Apple mentions OctaneA brief, three-second mention of Render’s Octane software in an Apple promo video was spotted by traders amid RNDR already witnessing significant price a
Hashing It Out: Are RWAs the future of crypto?
Elisha Owusu Akyaw11 hours agoHashing It Out: Are RWAs the future of crypto?In episode 54 of Hashing It Out, Micah Yeackley, the co-founder of Kula DAO, discusses how tokenizing traditional illiquid assets opens up inves
60 Hong Kong-Based Vending Machines Support McAfee’s Ghost Token for Payments
60 Hong Kong-Based Vending Machines Support McAfee"s Ghost Token for PaymentsOn June 28, 2020, the team behind Ghost Coin revealed a partnership with the digital currency payment pr
Bugs in Gains Network fork let traders profit 900% on every trade: Report
Christopher Roark3 hours agoBugs in Gains Network fork let traders profit 900% on every trade: ReportAn attacker could have placed a limit buy order with an arbitrarily high open price to automatically win every trade, t
Is Biden shifting strategy on digital assets ahead of Trump debate?
Turner Wright4 hours agoIs Biden shifting strategy on digital assets ahead of Trump debate?Though Donald Trump began accepting Bitcoin for his 2024 campaign, he often criticized cryptocurrencies while in office.677 Total
Jack Dorsey says Bitcoin will be worth ‘at least a million’ by 2030
Martin Young4 hours agoJack Dorsey says Bitcoin will be worth ‘at least a million’ by 2030“I do think it hits that number and goes beyond,” said the Twitter co-founder on his million-dollar Bitcoin prediction.330