DeFi Platform Delta Primes Loses $6 Million In Security Breach, Is North Korea Involved?

2024-9-17 04:30

Decentralized Finance (DeFi) platform Delta Primes suffered a security breach on Monday, affecting the protocol’s users. The attack took $6 million from the project’s pools and is under investigation. However, on-chain investigators suspect it could be linked to North Korean hackers and be part of a larger-scale scheme.

Hackers Drain $6 Million From DeFi Protocol

On Monday morning, cyber security platform Cyvers Alerts informed the community about the ongoing attack on DeFi borrowing protocol Delta Primes. The initial report revealed that Cyvers’ system had detected multiple suspicious transactions involving the project on the Arbitrum chain.

The transactions suggested the DeFi protocol’s team had lost the private key, initially losing $4.5 million from the DPUSDC, DPARB, and DPBTCb pools. The suspicious draining address immediately swapped the USDC for Ethereum (ETH).

In the next hour, Cyvers detailed that the attackers had seemingly changed the proxy, pointing to a malicious address. Other reports explained that “this malicious contract can inflate the deposited amount of the hacker on all pools.”

The attackers drained another $1.48 million from the pools before Delta Prime’s team regained control. Two hours after the initial reports, the DeFi platform addressed the incident.

Per the post, DeltaPrime Blue, on the Arbritum chain, was attacked and drained for $5.98 million. The team confirmed that the attack was due to a compromised private key, with the cause still being investigated.

Delta Prime’s team also assured users that DetalPrime Red, on Avalanche, was safe from this attack, detailing that the “implementation here is covered solely by multisigs and cold wallets (as it should be).”

Additionally, the post claimed that the risk was already contained, reassuring its community that the DeFi protocol’s insurance pool would cover potential losses:

The risk is contained, we’re working on asset-retrieval and the insurance pool will cover any potential losses where possible / necessary. Additionally, we’re looking into other ways to reduce user losses to a minimum.

Are North Korean Hackers Responsible?

Despite the quick response, some users expressed their concerns about the incident. When questioned about it, the team explained that there were no timelocks for DeltaPrime Blue:

This is exactly what timelocks are for. The switch from this hot & non-timelocked owner to a cold timelocked owner should have been done on Arbitrum like it was on Avalanche (and like other initial owners on Arbi)

One community member criticized the team for not having the same security measures on DeltaPrime Blue and Red, stating there was no excuse for the mistake. Moreover, on-chain sleuth ZachXBT suggested that the attack could be linked to a larger-scale problem.

A month ago, Zach assisted another team with another crypto hack. The investigation unveiled that over 25 projects within the space had unknowingly hired multiple IT workers from North Korea using fake identities as developers.

Today, the crypto detective revealed that the DeFi protocol was among the teams he alerted about the North Korean IT workers in August. He also noted that the method used for Delta Prime’s exploit was similar to the hack he originally assisted.

As of this writing, Delta Prime’s team has not addressed the possible link. However, it stated that they would focus on getting the funds back and that “the event isn’t over yet.”

origin »

DeltaChain (DELTA) на Currencies.ru

$ 0 (-1.85%)
Объем 24H $1.702k
Изменеия 24h: 6.71 %, 7d: -81.49 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Доступно / Всего 0 DELTA

security breach million defi platform primes delta

security breach → Результатов: 126


Breaking: Binance exchange gets compromised; 7000 BTC worth $40 million withdrawn by hackers

Binance’s official blog spoke about a security breach in Binance that allowed hackers to get away with 7000 BTCs, a large number of user API keys, 2FA codes, and potentially other info. The blog further added that the targetted attack was on a hot wallet and that only 2% of the total funds in that wallet […] The post Breaking: Binance exchange gets compromised; 7000 BTC worth $40 million withdrawn by hackers appeared first on AMBCrypto.

2019-5-8 03:48


World’s Biggest Crypto Exchange Binance Reports 7,000 Bitcoin Hack

Binance, the world’s largest crypto asset exchange in daily volume, has experienced a security breach involving some 7,000 bitcoin valued at around $40 million. In an official update released by, Changpeng Zhao, the CEO of Binance better known to the community as CZ, the Binance team said about 2 percent of Binance’s bitcoin holdings were […] The post World’s Biggest Crypto Exchange Binance Reports 7,000 Bitcoin Hack appeared first on CryptoSlate.

2019-5-8 03:32


How Blockchain Can Solve Modern Identity Theft Crisis and Be a Core Reason for “No More ID Theft”

Identity theft is a major worry for many people today. This was compounded by the Equifax breach that leaked the data of over 140 million Americans. The data in that breach included information such as addresses and social security numbers in addition to names and phone numbers. It was a nightmare scenario and there has […]

2019-4-10 19:41


Фото:

Lazarus Hacker Group Continues to Target Crypto Using Faked Trading Software

This article was originally published by 8btc and written by Lylian Tang. The Chinese security service provider 360 Security has issued a warning that a large number of crypto exchanges have been targeted by the North Korean hacker group Lazarus and that the number is still rising after the recent hacks of crypto exchanges DragonEx, Etbox and BiKi.

2019-4-2 21:54


Cyber insurance for companies is overhyped — even though it may be necessary

For those following the information security space, it can feel as if the past year was just a series of announcements with one corporate security breach after another. Breaches like Equifax, Marriot, and many more have entered the general consciousness after the personal details of hundreds of millions of customers have fallen into the hands of hackers.

2019-3-31 16:30


Breaking: Major Crypto Brokerage Coinmama Hacked, 450,000 Users Affected in Massive Worldwide Breach

Coinmama, one of the largest crypto brokerages in the global market with 1. 3 million active users, suffered a security breach on February 15. The official statement of the exchange disclosed that 450,000 email addresses and passwords were leaked in a massive global hacking attack involving 24 websites and some 747 million records.

2019-2-16 13:21