The crypto version of Ocean’s Eleven? SlowMist Incident Report: How hackers exploited code vulnerabilities to rob Cetus of $220 million

avatar
ABMedia
05-24
This article is machine translated
Show original
Here's the English translation: Recently, the Cetus Protocol theft of $22 million shocked the crypto community. The security team SlowMist also published a complete report, stating that the attack demonstrated the power of mathematical overflow vulnerabilities. The attacker precisely calculated specific parameters, exploiting a flaw in the checked_shlw function to obtainidity with just one token's cost. This This was an extremely precise mathematical attack, and they recommend developers strictly verify verify all mathematical function boundary conditions in smart contract smart contract development.Rest of follows the same professional and accurate approach, maintaining the original and details.] The main decentralized exchange ((DEX) onX and liquidity protocol on the Hit suffered a serious vulnerability attack today (5/22/resulting in over $260 million in funds being stolen, the entire crypto community. Human请将下面的文字翻译为英语,如果遇到<>,保留且不要翻译<>中的内容,其他部分一定要全部翻译成英语。只给我�果,不要对内容进行分析或答,不要添加额外的说明。 最近,趙長鵬(CZ)在接受彭博社訪時表示,對 bit幣 的未來充�信�心。他,他為Bit 一種全球性的儲貨貨�避風險資產。他強調,Bit幣 的動動性和其投資潛力,並預測在未來幾年5到十Bit 可能會成為一種重要的全球金融工具。

Toggle

Cetus Incident Overview: Attack Leads to 83% Fund Loss

According to the tracking report from blockchain data analysis platform Lookonchain, the Cetus protocol was hacked today, with losses exceeding $260 million.

The hacker quickly converted the stolen funds into USDC stablecoin and transferred approximately $60 million USDC to Ethereum through a cross-chain bridge, then exchanged it for ETH. Lookonchain further updated that the hacker purchased 21,938 ETH with $58.3 million USDC, at an average price of $2,658. This attack nearly completely drained the liquidity pools of the Cetus protocol, causing many tokens to plummet in price within a short time.

From DeFi Llama data, Cetus lost 83% of its TVL in a single day. From its 24-hour fees and trading volume, it was originally the top protocol in the Sui ecosystem, far exceeding other protocols.

The Cetus protocol team subsequently released a statement on their official X account, indicating they detected abnormalities in the protocol and urgently paused the smart contract to prevent further losses.

Cybersecurity expert Yu Xun stated that he has intervened to assist and believes cross-chain escape would not be easy.

Community Believes It's Not a Hacker Attack, But an Oracle Issue

Some in the Sui community believe this was not a traditional "hacker attack", but caused by a vulnerability in the protocol. Preliminary investigations suggest this vulnerability might be related to the Oracle system, leading to abnormal fund withdrawals from liquidity pools.

Bybit and Binance Respond to Sui Incident

Crypto exchange Bybit released an announcement warning users about risks in the Sui ecosystem and stated they are closely monitoring the developments. Bybit recommends users temporarily avoid trading on Sui and wait for further official clarification.

Binance founder CZ also expressed concern about the incident. He stated that Binance is doing its best to help the Sui team address this "unpleasant situation" and hopes all users can stay safe (Stay SAFU).

Risk Warning

Cryptocurrency investment carries high risks, with potentially extreme price volatility. You may lose all your principal. Please carefully assess the risks.

Source
Disclaimer: The content above is only the author's opinion which does not represent any position of Followin, and is not intended as, and shall not be understood or construed as, investment advice from Followin.
Like
Add to Favorites
Comments