Fun

Thorchain Trolled by Hacker After Two Successful Seven-Figure Exploits

News Feed - 2021-07-27 08:07:46

Thorchain Trolled by Hacker After Two Successful Seven-Figure Exploits


Thorchain, a popular defi protocol, has been compromised twice in the last two weeks, resulting in losses of over $10,000,000. The hacker responsible for the latest exploit left behind a message detailing the measures that should be undertaken to protect users. Hacker Returns to the Scene to Lecture on Security


In another blow against the Thorchain protocol, the defi network has found itself the victim of another hack after the equivalent of 4,000 ethereum (ETH) was stolen just days earlier. Thorchain, which features an automated market maker (AMM) and decentralized exchange (dex), is known for its liquidity pooling, with total value locked (TVL) currently around $101.75 million.


This time, the attack was perpetrated against the ETH Router contract to target the Thorchain Bifrost component, resulting in more than $8 million in losses for the protocol. According to the hacker allegedly behind the move, the vulnerability was known before the latest attack and was entirely preventable.


When using Solidity, the Ethereum smart contract coding language used in the protocol, programmers advise developers against using certain coding methods to transfer funds. However, this was allegedly overlooked by the team in charge, leading to an issue within the protocol’s native RUNE token’s contract code.


The hacker behind the exploit was not quick to leave the crime scene. Instead, the malicious actor left behind a message effectively trolling the protocol. In tx input data, the hacker pointed out the following:



The hacker laid bare all the steps that were required to engage the exploit, highlighting the protocol’s decision not to issue bounties or engage auditors to check code that currently oversees a nine-figure TVL. While the protocol developers initially believed the hack cost them only $800,000 and was the work of a whitehat hacker, the following amounts were actually stolen: 966.620 ACLX 20,866,664.530 XRUNE 1,672,794.010 USDC 56,104.000 SUSHI 6.910 YFI 990,137.460 USDT


RUNE tokens have continued their decline after dipping close to 25% following the breach, with tokens currently trending around $4.17. While Thorchain has since issued a recovery plan to restore user funds lost to the attack, the more significant development was the decision to hire security firms to audit the code and defend the defi protocol against future, preventable exploits.


What do you think of this “honest hacker”? Let us know in the comments section below. Kubernetes Clusters Used to Mine Monero by Attackers NEWS | 15 hours ago Tesla Q2-2021 Earnings Call to Shed Light on Its Bitcoin Holdings NEWS | 17 hours ago Tags in this story Blockchain security, cryptocurrency stolen, DeFi, Hacking, Solidity, Thorchain


Image Credits: Shutterstock, Pixabay, Wiki Commons Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments

News Feed

Binance US to Delist Tron and Spell Tokens Amid Heightened Regulatory Pressure
Binance US to Delist Tron and Spell Tokens Amid Heightened Regulatory Pressure According to a recent announcement from Binance US, the American-based subsidiary of the largest cryp
Bitcoin targets $70K as stablecoin inflows and China stimulus boost rally
Josh O"Sullivan11 hours agoBitcoin targets $70K as stablecoin inflows and China stimulus boost rallyBitcoin has surged past $65,000, boosted by China’s stimulus measures and stablecoin inflows.4128 Total views8 Total s
Bitcoin Dominance Shows Bearish Divergence – Altseason Could Be Near
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu
Crypto Twitter Speaks Up for Hal Finney’s Account, SBF Was Reportedly Told by Binance CEO: Stop Causing ‘More Damage’ — Bitcoin.com News Week in Review
Crypto Twitter Speaks Up for Hal Finney"s Account, SBF Was Reportedly Told by Binance CEO: Stop Causing "More Damage" — Bitcoin.com News Week in Review Bitcoiners on Twitter rec
LYO Credit (LYO) Is Now Available for Trading on LBank Exchange
LYO Credit (LYO) Is Now Available for Trading on LBank Exchange press release PRESS RELEASE.INTERNET CITY, DUBAI, Jul. 10, 2022 – LBank Exchange, a global digital asset tradi
Former SEC official David Hirsch says he is not joining Pump​.fun
Vince Quill6 hours agoFormer SEC official David Hirsch says he is not joining Pump​.funRumors have been circulating that the recently retired SEC veteran is taking on a private role in the digital asset sector.1250 Tot
Dogecoin Price Faces ‘Moment Of Truth’ As It Battles The Macro 0.5 Fib Extension
Este artículo también está disponible en español. The Dogecoin price is currently battlingto break above the $0.4 price level again, but technical analysis suggests that
Elon Musk’s New Puppy Tweet Sends Shiba Floki Token Soaring, FLOKI Jumps More Than 900% in 24 Hours
Elon Musk"s New Puppy Tweet Sends Shiba Floki Token Soaring, FLOKI Jumps More Than 900% in 24 Hours The CEO of Tesla, Elon Musk shared a picture of a Shiba Inu pup and said “
South African Dispute Resolution Office Says It Now Considers Crypto-Related Complaints
South African Dispute Resolution Office Says It Now Considers Crypto-Related Complaints According to South Africa’s Office of the FAIS Ombud, an independent dispute resolutio
US Federal Court Rules NSA Mass Surveillance Illegal, Credits Edward Snowden
US Federal Court Rules NSA Mass Surveillance Illegal, Credits Edward SnowdenA federal appeals court has ruled that the U.S. National Security Agency (NSA) mass surveillance program
SEC, CFTC Charge XBT Corp. With Selling Unregistered Swaps for Bitcoin
U.S. regulators filed charges against XBT Corp. Thursday, alleging the company failed to register as a futures commission merchant (FCM). In simultaneous press releases, the Commodi
Strategy’s $84 Billion Bitcoin Appetite: Michael Saylor Goes All In (Again)
Reason to trust Strict editorial policy that focuses on accuracy, relevance, and impartiality Created by industry experts and meticulously reviewed The highest standards in reporting and pu