Fun

Cross-Chain Bridge Nomad Loses $190 Million Making It 2022’s Third-Largest Crypto Heist

News Feed - 2022-08-03 03:08:01

Cross-Chain Bridge Nomad Loses $190 Million Making It 2022"s Third-Largest Crypto Heist


On Monday, the cross-chain token bridge Nomad was attacked and hackers managed to siphon $190 million from the protocol, draining a great majority of the funds. The Nomad cross-chain bridge attack was the third-biggest crypto heist of 2022, and the ninth largest of all time. Nomad Cross-Chain Bridge Exploited for $190 Million


Cross-chain bridges in the world of decentralized finance (defi) just can’t catch a break no matter how long they have been running and even after the bridges have been audited. On August 1, 2022, the cross-chain bridge Nomad suffered an attack that saw the bridge lose $190 million in crypto funds. Security experts at the blockchain auditing firm Certik published an incident report describing what happened.


“The vulnerability was in the initialization process where the “committedRoot” is set as ZERO,” Certik wrote. “Therefore, the attackers were able to bypass the message verification process and drain the tokens from the bridge contract,” Certik added, noting: The exploit occurred when a routine upgrade allowed verification messages to be bypassed on Nomad. Attackers abused this to copy/paste transactions and were able to drain the bridge of nearly all funds before it could be stopped. Number of crypto project attacks by month, according to researchers at Comparitech.


Cross-chain bridges have been suffering from exploit after exploit since they were first introduced. At the end of March, the largest hack of 2022 saw $620 million stolen from Axie Infinity’s Ronin bridge. Researchers at Comparitech detail that the Nomad bridge attack was the third-largest breach this year, according to the research firm’s crypto heist tracker. While Nomad connected a variety of blockchain networks, the founder and CEO of AVA Labs, Emin Gün Sirer, tweeted about the incident and said the AVAX bridge was safe.


“The Nomad bridge, used by non-Avalanche chains, was hacked today,” Gün Sirer wrote. “Nomad was the official bridge for EVMOS (Cosmos EVM), Moonbeam (Polkadot EVM), and Milkomeda (another EVM) — The Avalanche Bridge is unaffected.” Nomad Raised $22 Million in April, Blockchain Security Company Certik Says This Particular Bug ‘Would Be Difficult to Discover Under Conventional Auditing Practices’


The attack against the Nomad bridge follows the project raising approximately $22.4 million in seed funding in a finance round led by Polychain Capital. Other strategic investors that helped Nomad raise funds include 1kx, Ethereal Ventures, Hack.vc, Circle Ventures, Amber, Robot Ventures, Hypersphere, Figment, Dialectic, Archetype, and Ledgerprime. While a broad audit could have found the Nomad bridge vulnerability, the blockchain and smart contract auditors from Certik say this attack may be more difficult to find in a conventional audit.


“This type of issue would be difficult to discover under conventional auditing practices that assume all deployment configurations are correct, because this particular bug was introduced by mistakes in the deployment parameters,” Certik’s report on the Nomad situation concludes. “However, a broader auditing process and full-scope penetration test that includes validating deployment processes would potentially capture this bug,” the auditors added. Tags in this story $22 Million, Amber, Archetype, Bridge, bug, certik, Certik Auditors, Certik Audits, Circle Ventures, Comparitech, Comparitech researchers, cross-chain bridge, Cross-Chain Bridge Hacks, crypto heist, defi vulnerability, defi vulnerabilty, Dialectic, Emin Gün Sirer, Exploit, Figment, Hypersphere, Ledgerprime, Nomad, Nomad Bridge, Nomad cross-chain bridge, Nomad theft, Robot Ventures, Stolen Crypto, Third Largest Heist


What do you think about the recent cross-chain exploit against the Nomad bridge? Let us know what you think about this subject in the comments section below. Jamie Redman


Jamie Redman is the News Lead at Bitcoin.com News and a financial tech journalist living in Florida. Redman has been an active member of the cryptocurrency community since 2011. He has a passion for Bitcoin, open-source code, and decentralized applications. Since September 2015, Redman has written more than 5,700 articles for Bitcoin.com News about the disruptive protocols emerging today. Bitpay Adds APE and EUROC Support — Luxury Retail Giant Gucci Accepts Apecoin Payments NEWS | 3 hours ago Chinese Miner Claims an Ethereum PoW Fork Is ‘Coming Soon,’ Despite ETC’s Existence NEWS | 14 hours ago


Image Credits: Shutterstock, Pixabay, Wiki Commons, Comparitech, Previous articleValue Locked in Defi Stalls Before Reaching the $100 Billion Mark, Cross-Chain Bridge Statistics Crater Next articleBitpay Adds APE and EUROC Support — Luxury Retail Giant Gucci Accepts Apecoin Payments Disclaimer: This article is for informational purposes only. It is not a direct offer or solicitation of an offer to buy or sell, or a recommendation or endorsement of any products, services, or companies. Bitcoin.com does not provide investment, tax, legal, or accounting advice. Neither the company nor the author is responsible, directly or indirectly, for any damage or loss caused or alleged to be caused by or in connection with the use of or reliance on any content, goods or services mentioned in this article. Read disclaimerShow comments More Popular NewsIn Case You Missed ItRipple CEO: SEC Lawsuit Over XRP "Has Gone Exceedingly Well"


The CEO of Ripple Labs says that the lawsuit brought by the U.S. Securities and Exchange Commission (SEC) against him and his company over XRP "has gone exceedingly well." He stressed: "This case is important, not just for Ripple, it’s ... read more.SEC Risks Violating Admin Procedure Act by Rejecting Spot Bitcoin ETFs, Says Grayscale Fed"s Bullard Wants to Raise Bank Rate to 3.5% by Year"s End, Hints at 75 Basis Point Rate Hike Survey: Adoption in Argentina Grows, With 12 out of 100 Adults Having Invested in Crypto Economist Predicts the Fed"s Response to Inflation Will Push Crypto Higher

News Feed

How High Can Dogecoin Go If Bitcoin Hits $1 Million? Analysts Weigh In
Este artículo también está disponible en español. Long a wild card in the crypto scene, Dogecoin (DOGE) has been riding the waves of excitement, community passion, and ev
FTX Co-Founder Sam Bankman-Fried Seeks Removal of Bail Restrictions on Crypto Asset Transfers
FTX Co-Founder Sam Bankman-Fried Seeks Removal of Bail Restrictions on Crypto Asset Transfers Sam Bankman-Fried, the disgraced co-founder of FTX, is seeking access to crypto assets
What are Bitcoin whales and how to spot them?
Tobias Vilkenson12 hours agoWhat are Bitcoin whales and how to spot them?Follow Bitcoin whales’ trails: track their tactics, from manipulation to stop-loss hunting and explore their market impact for navigating crypto
While BTC Skyrocketed to $69K, Whale From 2013 Transfers $147 Million Worth of ‘Sleeping Bitcoins’
While BTC Skyrocketed to $69K, Whale From 2013 Transfers $147 Million Worth of "Sleeping Bitcoins" Following the string of 20 block rewards spent on Wednesday, an idle bitcoin wall
AI computing protocol attracts $158M within a week after 'fair launch'
Zoltan Vardai1 hour agoAI computing protocol attracts $158M within a week after "fair launch"Fair launch tokens could help the industry return to the true ethos of crypto, according to Arweave"s founder.422 Total views9
Coin Center Sues US Treasury Over Tornado Cash Ban — Lawsuit Says Government’s Action ‘Was Unlawful’
Coin Center Sues US Treasury Over Tornado Cash Ban — Lawsuit Says Government"s Action "Was Unlawful" The non-profit that focuses on policy issues facing cryptocurrencies, Coin Ce
German, US gov‘ts move $150M in crypto
Josh O"Sullivan14 hours agoGerman, US gov‘ts move $150M in cryptoThe German and U.S. governments make strategic moves with significant Bitcoin and Ethereum transfers, drawing market attention.4576 Total views6 Total sh
SEC reviews new rules for Bitcoin options trading
Ana Paula Pereira7 hours agoSEC reviews new rules for Bitcoin options tradingThe Securities and Exchange Commission is evaluating whether exchanges’ current surveillance and enforcement mechanisms can handle Bitcoin ex
Former Ethereum adviser files $9.6B lawsuit against US gov't
Helen Partz10 hours agoFormer Ethereum adviser files $9.6B lawsuit against US gov"tFormer Ethereum adviser Steven Nerayoff wants the U.S. government to repay $9.6 billion in damages for extortion charges that were eventu
Mt. Gox repayment shakes crypto market, causing volatility
Shiraz Jagati10 hours agoMt. Gox repayment shakes crypto market, causing volatilityBitcoin faces immense volatility as Mt. Gox repayments flood the market.3257 Total views2 Total sharesListen to article 0:00Follow upOwn
Brian Quarmby3 hours agoX will foot legal bills of users unfairly treated by employers for posting or liking content — Elon MuskThe move appears to be in support of people that were fired or mistreated at work for liki
Savannah Fortis14 hours agoHong Kong politician responds to Vitalik’s comments about crypto-friendlinessJohnny Ng of Hong Kong’s Legislative Council said he “sincerely invites” Vitalik Buterin to Hong Kong to bet