Fun

DeFi protocol removed an important line of code that led to a $212K hack

News Feed - 2024-08-02 01:08:57

Brayden Lindrea4 hours agoDeFi protocol removed an important line of code that led to a $212K hackThe attack occurred around 3 am UTC on Aug. 1, leading Convergence’s native token CVG to plummet over 99%.1343 Total views2 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTCOINTELEGRAPH IN YOUR SOCIAL FEEDFollow ourSubscribe onDecentralized finance protocol Convergence has confirmed it was hacked via a smart contract exploit on Aug. 1, with a hacker minting and selling $210 million in its native token, as well as stealing $2,000 in unclaimed staking rewards.


According to a newly released post-mortem from Wireshark, the pseudonymous founder of the Convergence protocol, the hacker exploited the protocol’s CvxRewardDistributor contract, allowing them to mint and sell 58 million CVG tokens for approximately $210,000.


The hacker also stole approximately $2,000 of unclaimed rewards from Convex, a DeFi protocol designed to maximize rewards for Curve liquidity providers.


According to Etherscan, the attack occurred on Aug. 1 at around 3:00 am UTC.


Blockchain security firm PeckShield noted that after minting the CVG tokens, the hacker quickly swapped it into 60 wrapped-Ether and 15,900 Curve.fi FRAX.


The movements have since led to a near-100% price wipeout of the CVG governance token, which is now trading at $0.0004 with a market cap of just $57,000. CoinMarketCap data shows.Source:PeckShieldHow the hack happened


Convergence said the attack was possible because the team accidentally removed an essential line of code in its smart contract, which distributes CVG staking rewards. They made the change after the smart contract code was audited four times. 


“The modification (gas-optimization on the first hand) led us to remove the line of code that was checking the input given to the function,” it explained. 


The hacker used this to exploit the CvxRewardDistributor contract through the claimMultipleStaking function.


This meant the staking contract couldn’t be validated, allowing the hacker to pass a separate malicious contract with the same signature as the claimCvgCvxMultiple function.


The hacker then minted all tokens dedicated to staking emissions and then dumped them into CVG liquidity pools, Convergence said. “We apologize to our community and investors, and we take full responsibility for what happened.”


Related:Over 70% of hacked funds are lost to CeFi entities — Cyvers


Convergence says that user funds are safe, but has recommended users withdraw assets from the platform.


“Due to the exploit, the rewards contract for the Stake DAO integration is currently broken. It will be fixed, and stakers will be able to claim their rewards once it’s done. No rewards are lost for Stake DAO integration users," it said. "We will soon communicate about the possibilities for the future of the protocol."


Convergence works to aggregate liquidity, boost returns and enable liquid locking across the Curve Finance ecosystem.


The total value locked on Convergence fell from $5.79 million to $3.69 million, DefiLlama data shows.


The cryptocurrency ecosystem lost around $266 million to hacks in July, mostly coming from the $230 million hack of Indian trading platform WazirX on July 18.


Magazine:THORChain founder and his plan to ‘vampire attack’ all of DeFi# Altcoin# Smart Contracts# Hackers# Hacks# DeFi# LiquidityAdd reaction

News Feed

Ledger Wallet Customer Data Leak Invokes Threats, Phishing Scams, User Allegedly Loses Life Savings
Ledger Wallet Customer Data Leak Invokes Threats, Phishing Scams, User Allegedly Loses Life Savings The cryptocurrency hardware wallet firm Ledger was hacked las
FTX Publishes Creditor List, Owes Millions to Well-Known Institutions and Government Agencies
FTX Publishes Creditor List, Owes Millions to Well-Known Institutions and Government Agencies The now-defunct crypto exchange FTX has published its list of creditors, with the name
3 reasons why Bitcoin analysts think a BTC price ‘cycle top’ is in
Nancy Lubale2 hours ago3 reasons why Bitcoin analysts think a BTC price ‘cycle top’ is inCapriole Investments founder Charles Edwards says that multiple onchain metrics point to a “sign of weakness” in Bitcoin pr
David Attlee3 minutes agoKenyan lawmakers ask local Blockchain Association to come up with crypto billKenya might become the first country in the world where the industry’s representatives would develop the regulatory
Bitcoin Reacts to Fed’s 0% Rate Drop, Reserve Requirements Removed, $700B in Stimulus
Bitcoin Reacts to Fed"s 0% Rate Drop, Reserve Requirements Removed, $700B in Stimulus On Sunday, the U.S. Federal Reserve slashed the benchmark short-term rate by 100 basis point
Circle Expands to Bermuda, Praises Pro-Crypto Island Government
Circle announced today that it will be expanding its regulated services to Bermuda, using its new position in the island nation to service its global audience. Circle cited Bermuda’s pro-crypto regulatory environm
Global Charity Organization Launches Crypto-Based Vouchers for Vulnerable Groups in Kenya, Ecuador
Global Charity Organization Launches Crypto-Based Vouchers for Vulnerable Groups in Kenya, Ecuador The global charity organization, CARE, has created crypto-base
Report: Over 30,000 Nigerians to Learn About Blockchain From Government Agency
Report: Over 30,000 Nigerians to Learn About Blockchain From Government Agency Nigeria’s National Information Technology Development Agency recently said it has launched a b
Bitget Registers in Seychelles and Plans to Grow Its Global Workforce by 50%
Bitget Registers in Seychelles and Plans to Grow Its Global Workforce by 50% press release PRESS RELEASE. Seychelles, Nov 22, 2022 – Leading global cryptocurrency exchange Bitget
BRICS Nations Ponder Digital Currency to Ease Trade, Reduce USD Reliance
The BRICS association of major emerging economies has discussed developing a digital currency to ease trade in the bloc and reduce its reliance on U.S. dollars in settlement. The po
Solana rockets 13% to new yearly high, led by WIF memecoin frenzy
Tom Mitchelhill19 minutes agoSolana rockets 13% to new yearly high, led by WIF memecoin frenzyThe price of Solana surged to reach a new 2024 high, while traders are doubling down on the Solana-based memecoin dogwifhat.16
Digital Transformation Law Draft Would Allow Users to Pay Mortgages With Crypto in Spain
Digital Transformation Law Draft Would Allow Users to Pay Mortgages With Crypto in Spain A new proposal of a digital transformation law, written by a group of la