On August 30, 2021, hackers stole over $29 million worth of crypto assets from the…
According to blockchain analysts PeckShield, hackers stole cryptocurrencies worth about 2,100 BTC ($ 118,500,000) and 151 ETH ($ 679,000). Researchers say that just one user lost more than 900 bitcoins, or approximately $ 50.5 million.
News sites including Coinspeaker, CryptoBriefing and CryptoSlate cite Discord Badger users claiming that attackers used a vulnerability in the platform’s user interface to gain access to other people’s accounts and withdraw funds. BadgerDAO representatives do not comment on these theories in particular and what is happening in general.
The Vice Motherboard even reports that when interacting with BadgerDAO using the Metamask wallet, users encountered suspicious requests for rights. Users drew attention to this only when funds from their wallets began to disappear, and BadgerDAO “suspended” all smart contracts.
The experts the reporters spoke to speculate that someone injected malicious script into the BadgerDAO interface after the API key for the BadgerDAO Cloudflare account was compromised.
The details of this attack should be expected to be released soon, as the BadgerDAO hack has already attracted the attention of security professionals. For example, Matthew Green, renowned researcher and professor of cryptography and computer science at Johns Hopkins University, tweeted:
Let me remind you that we also reported that attackers stole $ 600 million from the Chinese DeFi platform Poly Network.
Pbmsoultions.com is a domain that tries to trick you into clik to its browser notifications…
Prizestash.com is a site that tries to trick you into subscribing to its browser notifications…
Verifiedbreaking.com is a domain that tries to force you into subscribing to its browser notifications…
Themoneyminutes.com is a domain that tries to force you into subscribing to its browser notifications…
News-xcidizi.com is a domain that tries to trick you into clik to its browser notifications…
Everytraffic-flow.com is a domain that tries to trick you into subscribing to its browser notifications…