Fun

Cream Iron Bank $36M Flash Loan Attack: Markets Re-Enabled While Asset Borrow Is Paused

News Feed - 2021-02-17 04:02:59

Cream Iron Bank $36M Flash Loan Attack: Markets Re-Enabled While Asset Borrow Is Paused


Following the Cream Iron Bank flash loan attack, preliminary findings of a probe have shown that contracts and markets still function normally. As a result, markets have now been re-enabled while the asset borrowing function has been paused. The Cream team also reveals that investigations are continuing. The Exploit


After the exploit, the value of the Cream protocol token plummeted from just over $280 on February 12 to $186.48 24 hours later. At the time of writing, Messari data shows that the token had recovered although it has remained mostly under $230.



Meanwhile, in his analysis of the exploit, researcher Igor Igamberdiev reveals that the attacker(s) had “used Alpha Homora for borrowing Synthetix stablecoin from Ironbank.” He adds that “each time they (would) borrow twice as much as in the previous one.” The attacker(s), did this through two transactions and whenever they lend the funds back into Ironbank they would receive Yearn Synthetix stablecoin.


According to Igamberdiev, the attacker(s) had at some point secured a 1.8 million USDC flash loan from Aave v2. This flash loan was then swapped with Synthetix stablecoin for onward lending to Ironbank. Millions Siphoned


Using similar tactics, the attacker(s) would take out an even bigger loan. In his Twitter thread, Igamberdiev explains: Also, a $10 million flash loan is taken, which is also used to increase the number of Yearn Synthetix stablecoin. In the end, the number of their Yearn Synthetix stablecoin reaches an incredible amount, which allows them to borrow anything from Iron bank.


Consequently, the attackers went on to borrow stablecoins valued at $13.4 million as well as wrapped ETH valued at over $23 million.


At the time of writing, it had been revealed that the debt resulting from the attack “will not be between users and Alpha Homora.” Instead, it will be Alpha Homora and Iron Bank that will have to “find a solution that resolves the debt between the two protocols.”


What do you think needs to be done to prevent future flash loan attacks? You can tell us what you think in the comments section below. UN Report: North Korea Stockpiles $316 Million in Cryptocurrencies From Cyberattacks SECURITY | 6 days ago Expert warns Hackers are Targeting Russian Government"s IT Infrastructure to Mine Cryptocurrencies SECURITY | Feb 9, 2021 Tags in this story Aave, Alpha Homora, Defi protocol, Flash loan attack, Iron Bank, Stablecoin, USDC, WETH, Yearn


Image Credits: Shutterstock, Pixabay, Wiki Commons, Messari.io, Purchase Bitcoin without visiting a cryptocurrency exchange. Buy BTC and BCH here. Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments

News Feed

60% of Latam Professionals Open to Using Metaverse Tools at Work: Study
60% of Latam Professionals Open to Using Metaverse Tools at Work: Study Workers and executives in Latam are open to trying metaverse tools in conjunction with their traditional wor
EU releases crypto-asset classification tools to help firms comply with MiCA
Savannah Fortis10 hours agoEU releases crypto-asset classification tools to help firms comply with MiCAEU regulators introduce standardized crypto-asset classification under MiCA with a new test and guidelines to ensure
Solana open interest sheds nearly $440M as price slumps 11%
Ciaran Lyons3 hours agoSolana open interest sheds nearly $440M as price slumps 11%Open Interest in Solana is down 21% compared to the previous day as its price dips below levels unseen in over 30 days.1563 Total views1 T
FTX addresses transferred $8.3M one day before amended proposal deadline
Zoltan Vardai12 hours agoFTX addresses transferred $8.3M one day before amended proposal deadlineThe transfer occurred a day before FTX debtors were set to release a new restructuring plan for the exchange.2141 Total vie
Three Arrows Capital Founders Served Subpoenas via Twitter in Bankruptcy Process
Three Arrows Capital Founders Served Subpoenas via Twitter in Bankruptcy Process The founders of the now-defunct cryptocurrency hedge fund Three Arrows Capital (3AC) have been serv
EigenLayer’s EIGEN token unlock looms, futures tip a $6.8B FDV
Alex O’Donnell6 hours agoEigenLayer’s EIGEN token unlock looms, futures tip a $6.8B FDVEigenLayer’s EIGEN token is scheduled to unlock at 5:00 am UTC on Oct. 1 and will start trading on exchanges such as Binance so
Over 600 firms reveal billions in combined investment in Bitcoin ETFs
Prashant Jha12 hours agoOver 600 firms reveal billions in combined investment in Bitcoin ETFsMillennium Management is the largest Bitcoin ETF investor with a $1.9 billion investment.3164 Total views19 Total sharesListen
Martin Young4 hours agoCurve founder looks to unexpected counterparties to rescue sinking DeFi loansMichael Egorov is attempting to pay off his mountain of DeFi debts by selling CRV at a discount.1371 Total views28 Total
Investors lose $1.6M after Doja Cat’s X reportedly hacked to promote scam coin
Christopher Roark5 hours agoInvestors lose $1.6M after Doja Cat’s X reportedly hacked to promote scam coinA hacker reportedly posted to Doja Cat’s X account telling fans to “buy DOJA or else.”724 Total views2 Tot
Highly Anticipated Insured Launchpad, Binstarter to Open to the Public on Aug 4th
Highly Anticipated Insured Launchpad, Binstarter to Open to the Public on Aug 4th press release PRESS RELEASE. Binstarter Protocol; the first and only Insurance P
Bitcoin Games Reveals Satoshi’s World Travel Plans, Offers Cashback, Free Spins, and Bonus Money
Bitcoin Games Reveals Satoshi’s World Travel Plans, Offers Cashback, Free Spins, and Bonus MoneyEmbark on an adventure like none other to win exciting prizes and have loads of fun
Ciaran Lyons7 hours agoHong Kong establishes task force to advance Web3 developmentThe task force will advise on the “sustainable and responsible” development of Web3 in Hong Kong, according to the statement.1767 Tot