Hekerji so ukradli več kot 600 milijonov dolarjev iz omrežja Poly prek Exploit PlatoBlockchain Data Intelligence. Navpično iskanje. Ai.

Hekerji so prek Exploita iz omrežja Poly ukradli več kot 600 milijonov dolarjev

A well-planned, organized attack according to security firm SlowMist

Hackers have managed to steal more than $600 million from DeFi platform Poly Network, which operates across Ethereum, Polygon, and Binance Smart Chain. The stolen tokens came from all the different chains, making this hack possibly the biggest heist in DeFi history. 

UPDATE: 2PM UTC, Hacker started returning tokens

According to Poly Network, the hackers used ‘a vulnerability between contract calls’ to syphon USDC, renBTC, wBTC, and wETH. Chinese cybersecurity firm SlowMist jumped on the news fast, and analysts have already identified the attacker’s email address, IP address, and device fingerprint. SlowMist meni the hacker was well organized and prepared. 

What makes the heist even more interesting, are the skrita messages within the transactions. The hacker considered creating a DAO and letting the community decide where the stolen tokens will go. 

The hacker found out that some tokens have been frozen, like for example stolen USDT tokens. At the same time, crypto exchanges like OKex, Binance, Huobi, and many others have blacklisted the involved crypto wallets. As a result, the hackers can’t use their services to move the tokens around. 

Poly omrežje

The hacker now wants to return some of the tokens, or perhaps all of it. In an encrypted message, they wrote ‘Failed to contact Poly. I need a secured multisig wallet from you’, suggesting they are ready to return the money. 

Poly omrežje

After that he started sending tokens back to Poly Network. On Polygon they poslan $1 million in USDC back, while also sending $1,1 million in BTCB, $2 million in Žetoni SHIB in $600,000 in the stablecoin FEI. The hacker clearly didn’t send all the money back, but they added a message to one of their transactions stating: ‘The hacker is ready to surrender’. Whether they will return the money, or also turn themselves in to the authorities, remains a mystery for now.

DeFi isn’t without risk

Using DeFi is very empowering to users, and those who dare to take risks can earn from it. However, with every opportunity comes a major risk. Hacks like the one on Poly Network are an example of that. In addition, the DeFi market is filled with bad projects and rug pulls, and therefore research is key. Always research the projects you invest in. Know what you’re getting into, and when something sounds too good to be true… it probably is.

.mailchimp_widget {
poravnava besedila: center;
margin: 30px samodejno !pomembno;
zaslon: flex;
rob polmera: 10 slikovnih pik;
preliv: skrit;
flex-wrap: zavijanje;
}

.mailchimp_widget__visual img {
največja širina: 100 %;
višina: 70px;
filter: padajoča senca (3px 5px 10px rgba(0, 0, 0, 0.5));
}
.mailchimp_widget__visual {
ozadje: #006cff;
upogib: 1 1 0;
oblazinjenje: 20px;
poravnati predmete: sredina;
justify-content: center;
zaslon: flex;
flex-direction: stolpec;
barva: #fff;
}

.mailchimp_widget__content {
oblazinjenje: 20px;
upogib: 3 1 0;
ozadje: #f7f7f7;
poravnava besedila: center;
}

.mailchimp_widget__oznaka vsebine {
velikost pisave: 24px;
}

.mailchimp_widget__content input[type=”text”],
.mailchimp_widget__content input[type=”email”] {
oblazinjenje: 0;
oblazinjenje-levo: 10px;
rob polmera: 5 slikovnih pik;
box-shadow: brez;
meja: trdna 1px #ccc;
višina črte: 24px;
višina: 30px;
velikost pisave: 16px;
margin-bottom: 10px !pomembno;
margin-top: 10px! pomembno;
}

.mailchimp_widget__content input[type=”submit”] {
oblazinjenje: 0 !pomembno;
velikost pisave: 16px;
višina črte: 24px;
višina: 30px;
margin-left: 10px !pomembno;
rob polmera: 5 slikovnih pik;
meja: brez;
ozadje: #006cff;
barva: #fff;
kazalec: kazalec;
prehod: vse 0.2 s;
margin-bottom: 10px !pomembno;
margin-top: 10px! pomembno;
}

.mailchimp_widget__content input[type=”submit”]:hover {
box-shadow: 2px 2px 5px rgba(0, 0, 0, 0.2);
ozadje: #045fdb;
}

.mailchimp_widget__inputs {
zaslon: flex;
justify-content: center;
poravnati predmete: sredina;
}

zaslon @media in (največja širina: 768px) {
.mailchimp_widget {
flex-direction: stolpec;
}
.mailchimp_widget__visual {
flex-direction: vrstica;
justify-content: center;
poravnati predmete: sredina;
oblazinjenje: 10px;
}
.mailchimp_widget__visual img {
višina: 30px;
meja-desno: 10px;
}
.mailchimp_widget__oznaka vsebine {
velikost pisave: 20px;
}
.mailchimp_widget__inputs {
flex-direction: stolpec;
}
.mailchimp_widget__content input[type=”submit”] {
margin-left: 0 !pomembno;
margin-top: 0 !pomembno;
}
}

Časovni žig:

Več od dappradar