Cryptocurrency news

In LI.FI revealed details of the $11.6 million hack

Forklog / 19.07.2024 / 07:07
In LI.FI revealed details of the $11.6 million hack

The LI cross-chain protocol command.FI shared details of the hack, as a result of which users lost $11.6 million in USDC, USDT and DAI stablecoins.

Post-mortem and next steps for @lifiprotocol partners and community:https://t.co/H4EEiLAHEc pic.twitter.com/TZmx0VtLxo

— LI.FI (@lifiprotocol) July 18, 2024

According to the statement, the exploit occurred shortly after the deployment of a new aspect of the smart contract.

"The vulnerability arose due to the fact that the calling parties to the contract could make arbitrary calls without verification. This feature was provided by the LibSwap library, which facilitates interaction with multiple DEX, payment collectors and other entities before connecting or sending funds," the statement said.

Due to an "individual human error", the contract lacked verification of approved addresses and whitelisted functions, the developers explained.

The attack occurred on the Ethereum and Arbitrum networks, affecting 153 wallets. Only users with permanent approval enabled, which is not the default setting in the API, SDK, and LI widget, are affected.FI, the team stressed.

"Our top priority is to restore users' assets. We continue to work with law enforcement agencies and relevant third parties, including industry security specialists, to track down and recover stolen funds," the developers said.

The project assesses the possibility of paying full compensation to the victims "as soon as possible."

Recall that on July 18, the Indian crypto exchange WazirX lost $235 million in digital assets as a result of hacking. Elliptic experts concluded that North Korean hackers were behind the attack.

Source
Recently News

© Token Radar 2024. All Rights Reserved.
IMPORTANT DISCLAIMER: All content provided herein our website, hyperlinked sites, associated applications, forums, blogs, social media accounts and other platforms (“Site”) is for your general information only, procured from third party sources. We make no warranties of any kind in relation to our content, including but not limited to accuracy and updatedness. No part of the content that we provide constitutes financial advice, legal advice or any other form of advice meant for your specific reliance for any purpose. Any use or reliance on our content is solely at your own risk and discretion. You should conduct your own research, review, analyse and verify our content before relying on them. Trading is a highly risky activity that can lead to major losses, please therefore consult your financial advisor before making any decision. No content on our Site is meant to be a solicitation or offer.