Fun

Top 100 DeFi Hacks: Offchain attack vectors account for 57% of losses

News Feed - 2024-08-14 10:08:40

Zoltan Vardai10 hours agoTop 100 DeFi Hacks: Offchain attack vectors account for 57% of lossesDespite the falling number of smart contract exploits, hackers could surpass the previous year in terms of total value stolen.1158 Total views2 Total sharesListen to article 0:00NewsOwn this piece of crypto historyCollect this article as NFTCOINTELEGRAPH IN YOUR SOCIAL FEEDFollow ourSubscribe onA comprehensive look at the 100 largest cryptocurrency hacks shows that onchain vulnerabilities only account for a minor segment of exploits.


In fact, over 57.5% of the financial losses in the top 100 decentralized finance (DeFi) hacks were caused by offchain attack vectors, according to Mar Guimenez-Aguilar, the lead security architect at Halborn cybersecurity firm.


The cybersecurity expert told Cointelegraph:“Compromised private keys accounted for 52.2% of all attacks in 2024 and 55.7% of the total value lost. Generally, off-chain attack vectors represented 56.5% of last year’s attacks and 57.5% of the financial losses incurred.”


The revelation comes nearly a month after a hacker stole over $230 million from WazirX, an Indian cryptocurrency exchange, in the second-largest cryptocurrency hack of 2024 so far.


Related:Kamala Harris may continue the Biden administration’s crypto crackdownBiggest vulnerability for crypto hackers is a lack of investor awareness


Smart contract vulnerabilities have historically been the biggest source of DeFi exploits and they continue to wreak havoc. DeFi protocol Nexera was hacked for $1.5 million due to a smart contract vulnerability just last week, on Aug. 7.


However, the lack of investor awareness is becoming a bigger vulnerability for crypto exploiters, according to Halborn’s Guimenez-Aguilar, who wrote:


Often, the focus is intensely placed on fortifying the smart contracts’ code — which has historically been the most common attack vector — at the expense of recognizing that the protocol does not operate in isolation.”


This is why external vulnerabilities, such as offchain components and user behavior, also need to be accounted for.Top 100 DeFi hacks, total value lost. Source: Halborn


The top 100 largest DeFi hacks accounted for over $7.35 billion worth of cumulative stolen digital assets, but the number of exploits fell by 6% in 2023 compared to the previous year.


Related:Bitcoin at ‘perfect’ macro setup, but dip below $58K risks $500M in liquidationsCrypto hacks in 2024 could surpass 2023


Crypto hackers in 2024 could surpass their achievements from 2023 in terms of total value stolen.Average and standard deviation of the loss by year, USD. Source: Halborn


Crypto hacks could surpass the previous year due to multiple reasons, with the primary being the growing total value locked (TVL) in DeFi, explained Halborn’s cybersecurity expert:“Considering the number and severity of attacks in 2024 so far, there have been approximately 14 incidents among the top 100 hacks, averaging nearly two attacks per month. If this trend continues, the total could reach about 24 attacks by year-end, slightly surpassing the total for 2023.”


Another worrying sign is that three of this year’s crypto hacks have already made it to the top ten in terms of value lost, added Guimenez-Aguilar.


Over $200 million was lost to hacks by Feb. 29 year-to-date, marking an over 15.$% increased compared to the same period in 2023, which saw $173 million worth of digital assets stolen.


Magazine:Criminal at Bitcoin 2024, BTC Strategic Reserve Bill, and more: Hodler’s Digest, July 28–Aug. 3# Blockchain# Altcoin# Smart Contracts# Decentralization# Ethereum# Adoption# Hackers# Private Keys# HacksAdd reaction

News Feed

Privacy-Centric Monero Plans for July Hard Fork, Plans Include Ring Signature, Bulletproof Upgrade
Privacy-Centric Monero Plans for July Hard Fork, Plans Include Ring Signature, Bulletproof Upgrade According to a recent update on Monero’s Github repository, the privacy-ce
Bank of England Suspends Tightening Policy as Pound Nosedives — Central Bank to Start Purchasing Long-Dated UK Government Bonds
Bank of England Suspends Tightening Policy as Pound Nosedives — Central Bank to Start Purchasing Long-Dated UK Government Bonds Following the extremely volatile European markets
Ava Labs Partners With Amazon Web Services to Accelerate Blockchain Adoption, AVAX Jumps 16%
Ava Labs Partners With Amazon Web Services to Accelerate Blockchain Adoption, AVAX Jumps 16% Ava Labs, the team behind the layer one (L1) smart contract platform network Avalanche,
Kuwait-Based Islamic Bank Enters the Metaverse
Kuwait-Based Islamic Bank Enters the Metaverse Warba Bank, a Kuwait-based Islamic bank, recently became the latest corporation from the Middle East and North Africa (MENA) to enter
Why Real-World Utility Tokens Are Taking the Meme Coin Community According to Chronoly
Why Real-World Utility Tokens Are Taking the Meme Coin Community According to Chronoly press release PRESS RELEASE.The recent cryptocurrency market crash has shaken the trust of inv
Helen Partz9 hours agoBitcoin ETF to trigger massive demand from institutions, EY saysBitcoin is facing a lot of pent-up demand from institutions amid investors closely monitoring spot Bitcoin ETF news, Ernst & Young
Reserve Bank of India Is Working on ‘Phased Implementation’ of Central Bank Digital Currency
Reserve Bank of India Is Working on "Phased Implementation" of Central Bank Digital Currency India’s central bank, the Reserve Bank of India (RBI), is working on a “p
Billionaire Stan Druckenmiller Discusses Cryptocurrency Having ‘Big Role in a Renaissance’ — ‘People Aren’t Going to Trust Central Banks’
Billionaire Stan Druckenmiller Discusses Cryptocurrency Having "Big Role in a Renaissance" — "People Aren"t Going to Trust Central Banks" Renowned billionaire hedge fund manager
Stacks 2.0 Advances Bitcoin Into the Age of DeFi and Creates a New Way to Earn BTC
Stacks 2.0 Advances Bitcoin Into the Age of DeFi and Creates a New Way to Earn BTC Stacks 2.0 is set to revolutionize the internet itself by empowering a decentr
Amaka Nwaokocha12 hours agoDeFi enforcement sparks dissenting opinion from CFTC commissionerThe commissioner advocated public and stakeholder engagement through rulemaking, not just enforcement.1151 Total views31 Total s
WazirX launches bounty program to recover stolen assets
Amaka Nwaokocha12 hours agoWazirX launches bounty program to recover stolen assetsThe exchange remains focused on addressing the impact on customer funds and ensuring the security and integrity of their platform.7945 Tot
Eric Chen8 hours agoRipple is staring down an opportunity to fix its closed systemRipple Labs built its XRP token on a centralized system. But with legal action against Ripple coming to a close, it could move toward a mo