Deus Finance DAO Suffers Second Exploit in Less Than 60 Days

2022-4-29 21:46

Deus Finance DAO is the latest decentralized finance (DeFi) platform to be targeted by hackers. This attack is the second to target the platform within the last 60 days.

On April 28, blockchain security firm PeckShield reported that Deus Finance, a DeFi project leveraging the Fantom blockchain, had been exploited by hackers. The security firm stated that the attack led to the loss of up to $13.4 million with the bulk of stolen assets being Ethereum (ETH).

“The hack is made possible due to the flash loan-assisted manipulation of the price oracle that reads from the StableVW AMM – USDC/DEI pair,” read the PeckShield announcement. “The manipulated price of collateral DEI is then used to borrow and drain the pool.”

Flash loans have earned the reputation of being one of the most common ways to attack DeFi platforms after being used in some of the high-profile attacks of 2022. PeckShield’s preliminary report suggested that flash loan was the main method of attack by the hackers.

A total of 800 ETH ($2.2 million) was used to trigger the hack, which was withdrawn from Tornado Cash and sent to Fantom through the MultiChain. At the end of the attack, the stolen funds were converted to ETH and deposited in the hacker’s account.

4/ The initial funds (~800 ETH) to launch the hack are withdrawn from @TornadoCash and tunneled to Fantom via @MultichainOrg. The stolen funds are tunneled back to @ethereum and stay in the hacker’s account https://t.co/crqRXRVuRw. pic.twitter.com/eaa8j5lxtK

— PeckShield Inc. (@peckshield) April 28, 2022

The hackers’ wallet address has since been flagged with a warning that reads, “This address is reported to be involved in a flash loan exploit on DeusDao. More to come.”

Not the first time, and probably not the last

In the middle of March, PeckShield reported that Deus Finance had suffered an exploit that led to the loss of $3 million.

“The protocol may be larger, including 200 DAI and 1101.8 ETH,” noted PeckShield. 

The attack in March bears striking similarities with the recent attack as it used the same flash loan-assisted manipulation of price. The funds were first transferred from Tornado Cash and tunneled the same way as April’s attack.

The community expressed disappointment that the protocol was hacked in the same manner twice. Calls have been made to Circle to freeze the $USDC involved in the attack while the community waits for an official response.

“The dev team is working on the DEI situation,” said the Deus Finance team. They claimed on Twitter that user funds are safe and the $DEI peg has been restored, however, DEI lending has been temporarily halted.

Given the spike in the number of exploits in DeFi, projects are turning to bug bounty programs to stem the tide. The services of blockchain security firms are in high demand to scrutinize smart contracts for any potential flaws that could be exploited.

What do you think about this subject? Write to us and tell us!

The post Deus Finance DAO Suffers Second Exploit in Less Than 60 Days appeared first on BeInCrypto.

Similar to Notcoin - Blum - Airdrops In 2024

origin »

LORDLESS (LESS) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: 0.00 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Доступно / Всего 0 LESS

less days deus finance second exploit dao

less days → Результатов: 126


Фото:

Three Arrows Capital Buys 100,000 ETH In Deal Worth Nearly Half A Billion Dollars, Days After Its CEO Zhu Trashed Ethereum

Three Arrows Capital is holding a hefty amount of Ethereum, despite CEO Su Zhu’s rubbishing claims on the cryptocurrency less than two weeks ago. Zhu’s Firm Did Not Sell Ether; You’re Welcome The rant which came on November 21st interestingly coincided with data on Etherscan showing that the address marked “Three Arrows Capital” on Nansen […]

2021-12-8 23:20


Фото:

Is the Holo (HOT) a good buy opportunity after a recent sell-off?

HOT/USD  remains under pressure; in less than thirty days, this cryptocurrency price has weakened from $0. 013 to $0. 007, and the current price stands around $0. 009. Holo (HOT) is a cryptocurrency that powers Holochain, a promising project with more than a thousand developers and enterprises that are using Holochain to solve real-world problems.

2021-10-8 22:39


Massive NFT and Token Giveaway from Polker as Staking is Announced!

Polker. Game has been bringing a constant stream of updates, development, and listings over the last few months – and they are not showing any sign of slowing down. Polker is one of the major sponsors of Polycon 2021, the largest Polygon event of the year – all this less than 10 days after Polygon announced the partnership and awarded a grant to Polker.

2021-9-17 20:00