Fun

Defi Platform Cream Finance Hacked, $29 Million Lost

News Feed - 2021-08-31 05:08:59

Defi Platform Cream Finance Hacked, $29 Million Lost


Cream finance, a defi borrowing and lending protocol, has been the victim of a hack that erased more than $29 million from its vaults. The attacker took advantage of a loophole in the implementation for adding the amp token to the protocol. This is the second time the platform has been involved in a hack. The first breach happened in February, when Cream lost $37.5 million. Cream Protocol Suffers Hack


Cream protocol, a defi lending-borrowing platform present on four different chains (Ethereum, BSC, Polygon, and Fantom), suffered a hack Monday that resulted in the loss of $29 million in several cryptocurrencies. The attacker took advantage of a bug caused by the introduction of the amp token into the protocol. According to Peckshield, a blockchain security and data analytics company, the hack was perpetrated in just one transaction, taking advantage of a reentrancy bug present in the code of the amp currency.


This allowed the hacker to re-borrow assets during the transfer before updating the first borrow. The exploit was repeated 17 times and allowed the hacker to get ahold of 418,311,571 amp (worth $25.1 million) and 1,308.09 ethereum (worth $4.15 million). The platform had been audited by Trails Of Bits, a cybersecurity research and consulting firm, prior to the inclusion of the amp token.


Cream declared it stopped the exploit by pausing supply and borrow on amp. The protocol also informed users that no other markets were affected, and that it was expecting to offer a post mortem report at a later date. Not the First Time


This is not the first time Cream has suffered a hacking incident. Less than six months ago, the platform was also affected by a hack that allowed the attacker to withdraw $37.5 million. The hack, using an unreleased version of a contract of Alpha Finance, another defi protocol, exploited a rounding miscalculation in the code and a whitelisting function. After taking control of the funds, the attacker took them to Tornado.cash, a protocol that allows private transactions in Ethereum.


Luckily, no user funds were affected during this first hack. However, it shows that the defi environment is very complex and that even a small change in protocol (like adding a currency or whitelisting another platform) can have a big impact on security in the future.


What do you think about defi-related hacks? Tell us in the comments section below. British Auction House Christie"s to Present Full Set of NFT Curio Cards on October 1 NEWS | 2 hours ago Blockchain.com CFO Says Company Could IPO in "18-Months," Firm"s Balance Sheet Holds BTC, ETH NEWS | 10 hours ago Tags in this story bug, cream finance, DeFi, Exploit, Hack, Peckshield, Trails Of Bits


Image Credits: Shutterstock, Pixabay, Wiki Commons Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments

News Feed

Miami Going Full Bitcoin: City Supports Efforts to Hold Bitcoin in Treasury, Allow Tax Payments in BTC
Miami Going Full Bitcoin: City Supports Efforts to Hold Bitcoin in Treasury, Allow Tax Payments in BTC The U.S. city of Miami is going full bitcoin. The city com
How to Buy Bitcoin – 5 Quick and Simple Ways to Get Started
How to Buy Bitcoin – 5 Quick and Simple Ways to Get Started If you’re one of the many people looking to get into bitcoin for the first time, it doesn’t have to be h
Savannah Fortis11 hours agoNansen third-party vendor suffers security breach, user data affectedThe crypto analytics provider says a security breach of a third-party vendor has affected nearly 7% of users in the system w
Grayscale Files Lawsuit Against SEC Over Spot Bitcoin ETF Rejection
Grayscale Files Lawsuit Against SEC Over Spot Bitcoin ETF Rejection Grayscale Investments, the world’s largest digital currency asset manager, has filed a lawsuit against th
South African Expert Says Tax-Dodging Crypto Traders Face Heightened Jail Threat
South African Expert Says Tax-Dodging Crypto Traders Face Heightened Jail Threat A South African tax expert, Thomas Lobban, has warned non-tax paying crypto trad
Base TVL doubles in a month as pundits tip memecoins to drive adoption
Brayden Lindrea7 hours agoBase TVL doubles in a month as pundits tip memecoins to drive adoptionIt took 203 days for Coinbase"s Base network to notch $1 billion in total value locked but only 25 days to reach $2 billion.
FBI Works With Europol to Arrest Ransomware Gang, $1.3 Million in Cryptocurrencies Seized
FBI Works With Europol to Arrest Ransomware Gang, $1.3 Million in Cryptocurrencies Seized A coordinated strike involving Europol, Interpol, and the U.S. Federal Bureau of Investiga
DeFi risk manager Gauntlet partners with Morpho days after dumping Aave
Tom Mitchelhill3 hours agoDeFi risk manager Gauntlet partners with Morpho days after dumping AaveThe DeFi risk management firm made the jump to Morpho less than a week after parting ways with rival lending protocol Aave.
Bitcoin surpasses 65 million Ordinals inscriptions days before halving
Zoltan Vardai1 hour agoBitcoin surpasses 65 million Ordinals inscriptions days before halvingOrdinals generated over $458 million worth of total network fees, which is a significant lifeline for Bitcoin miners ahead of t
Colombia Takes First Steps Toward Regulating Cryptocurrency Exchanges
Colombia Takes First Steps Toward Regulating Cryptocurrency Exchanges The Congress of Colombia has approved a bill that regulates the behavior of cryptocurrency exchanges in the co
Altcoin Season Alert: Analyst Says December Surge Was The ‘Preview’, Don’t Miss The Movie
Este artículo también está disponible en español. The crypto market is gearing up for an explosive altcoin season, which could see major cryptocurrencies skyrocket to new
Former FTX exec Ryan Salame to give up $5.9M Bahamas property
Martin Young5 hours agoFormer FTX exec Ryan Salame to give up $5.9M Bahamas propertySalame proposes to satisfy the debtors by transferring a residence he owns to FTX Digital Markets Ltd.2143 Total views3 Total sharesList