BPOI Banner
Crypto Hackers Stole Half as Much in August as They Did in July, Says Immunefi Crypto Hackers Stole Half as Much in August as They Did in July, Says Immunefi

DeFi Lending Platform zkLend Drained of $9.5 Million in Exploit

zkLend, a decentralized money lending platform on the Starknet blockchain, has fallen victim to a major exploit, with the hacker draining $9.5 million in crypto assets.

Blockchain security firm Cyvers confirmed that the stolen funds were initially bridged to Ethereum and funneled through the privacy protocol Railgun.

The funds were then redirected to the original address due to the protocol’s internal policies, Cyverse said on Monday.

Following the incident, zkLend paused all withdrawals and advised users to hold off on depositing or repaying loans while they investigated the incident.

The breach has raised alarm bells in the DeFi space, as it comes as a part of growing security concerns within the sector. Cybercriminals have already stolen over $110 million from blockchain projects this year, according to DeFiLlama data.

zkLend reached out to the hacker with an on-chain message offering a 10% “white hat” bounty in exchange for the return of the remaining funds—amounting to 3,300 ETH (roughly $8.78 million).

“Upon receiving the transfer, we agree to release from any and all liability regarding the attack,” the platform informed.

zkLend set a strict deadline of Feb. 14 for the hacker to comply, warning that legal action would be taken if the funds were not returned.

The lending platform said they are already working with law enforcement and several security firms—including StarkWare, Starknet Foundation, Binance Security—to trace the stolen funds and catch the hacker.

“This was one of the biggest hacks on Starknet if not the biggest in recent years,” Preetam Rao, CEO and Co-founder of web security firm QuillAudits, told Decrypt. “Good to see zkLend is being transparent throughout the situation also offered a bounty to the hacker.”

The root cause of the hack doesn’t seem to be in the proof system, but rather in the contract logic,” Rao said, noting his team is reviewing the incident to prevent similar issues in other protocols.

Speaking to Decrypt, Meir Dolev, Co-founder and CTO of Cyvers, noted: “This incident highlights security risks in DeFi lending and raises concerns about the safety of protocols on Starknet’s zero-knowledge rollup infrastructure.”

Unlike traditional coin mixers such as Tornado Cash, which pools and redistribute funds to obscure their origin, the zkLend hackers used Railgun which integrates privacy features directly into DeFi applications, ensuring users’ anonymity while interacting with the blockchain.

“We are committed to full transparency and will share a comprehensive post-mortem analysis as soon as it is completed,” the team tweeted, urging users to remain patient as they work through the incident.

At the Web3 Summit 2024, ImmuneFi founder Mitchell Amador shared his thoughts with Decrypt, calling DeFi hacking “an infinitely sustainable and viable business.” But he added that the crypto space is “unquestionably” getting safer.

DeFi hackers, he said, were “looking for more damage, more than ever—and their skills are also applicable in a number of different areas.”

Edited by Stacy Elliott.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.



Source link

Vismaya V

https://decrypt.co/305590/defi-lending-platform-zklend-9-million-exploit

2025-02-12 16:06:10

bitcoin
Bitcoin (BTC) $ 83,370.34 0.82%
ethereum
Ethereum (ETH) $ 1,808.08 0.64%
tether
Tether (USDT) $ 0.999895 0.00%
xrp
XRP (XRP) $ 2.14 0.61%
bnb
BNB (BNB) $ 591.33 1.08%
solana
Solana (SOL) $ 119.94 1.15%
usd-coin
USDC (USDC) $ 1.00 0.01%
dogecoin
Dogecoin (DOGE) $ 0.168231 1.47%
cardano
Cardano (ADA) $ 0.649466 1.98%
tron
TRON (TRX) $ 0.235949 1.23%
staked-ether
Lido Staked Ether (STETH) $ 1,804.81 0.77%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 83,249.30 0.84%
leo-token
LEO Token (LEO) $ 9.13 0.67%
chainlink
Chainlink (LINK) $ 12.82 0.98%
the-open-network
Toncoin (TON) $ 3.25 2.15%
usds
USDS (USDS) $ 1.00 0.02%
wrapped-steth
Wrapped stETH (WSTETH) $ 2,168.73 0.42%
stellar
Stellar (XLM) $ 0.252405 2.98%
avalanche-2
Avalanche (AVAX) $ 17.46 4.25%
shiba-inu
Shiba Inu (SHIB) $ 0.000012 0.52%
sui
Sui (SUI) $ 2.19 2.72%
hedera-hashgraph
Hedera (HBAR) $ 0.161151 1.49%
litecoin
Litecoin (LTC) $ 82.41 2.92%
mantra-dao
MANTRA (OM) $ 6.24 0.43%
polkadot
Polkadot (DOT) $ 3.93 2.72%
bitcoin-cash
Bitcoin Cash (BCH) $ 301.13 0.12%
bitget-token
Bitget Token (BGB) $ 4.45 1.71%
ethena-usde
Ethena USDe (USDE) $ 0.99947 0.01%
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999918 0.05%
weth
WETH (WETH) $ 1,808.34 0.62%
pi-network
Pi Network (PI) $ 0.671523 39.43%
wrapped-eeth
Wrapped eETH (WEETH) $ 1,924.58 0.55%
whitebit
WhiteBIT Coin (WBT) $ 28.08 1.84%
hyperliquid
Hyperliquid (HYPE) $ 11.83 2.02%
monero
Monero (XMR) $ 215.29 0.73%
uniswap
Uniswap (UNI) $ 5.84 1.03%
dai
Dai (DAI) $ 1.00 0.00%
okb
OKB (OKB) $ 52.97 3.88%
susds
sUSDS (SUSDS) $ 1.05 0.10%
pepe
Pepe (PEPE) $ 0.000007 3.45%
aptos
Aptos (APT) $ 4.86 0.21%
near
NEAR Protocol (NEAR) $ 2.43 2.80%
gatechain-token
Gate (GT) $ 22.50 0.25%
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 83,321.32 0.88%
tokenize-xchange
Tokenize Xchange (TKX) $ 32.44 3.04%
ondo-finance
Ondo (ONDO) $ 0.807125 1.34%
mantle
Mantle (MNT) $ 0.73891 0.44%
crypto-com-chain
Cronos (CRO) $ 0.090497 3.39%
internet-computer
Internet Computer (ICP) $ 5.02 1.17%
ethereum-classic
Ethereum Classic (ETC) $ 15.82 2.44%
bitcoin
Bitcoin (BTC) $ 83,370.34 0.82%
ethereum
Ethereum (ETH) $ 1,808.08 0.64%
tether
Tether (USDT) $ 0.999895 0.00%
xrp
XRP (XRP) $ 2.14 0.61%
bnb
BNB (BNB) $ 591.33 1.08%
solana
Solana (SOL) $ 119.94 1.15%
usd-coin
USDC (USDC) $ 1.00 0.01%
dogecoin
Dogecoin (DOGE) $ 0.168231 1.47%
cardano
Cardano (ADA) $ 0.649466 1.98%
tron
TRON (TRX) $ 0.235949 1.23%
staked-ether
Lido Staked Ether (STETH) $ 1,804.81 0.77%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 83,249.30 0.84%
leo-token
LEO Token (LEO) $ 9.13 0.67%
chainlink
Chainlink (LINK) $ 12.82 0.98%
the-open-network
Toncoin (TON) $ 3.25 2.15%
usds
USDS (USDS) $ 1.00 0.02%
wrapped-steth
Wrapped stETH (WSTETH) $ 2,168.73 0.42%
stellar
Stellar (XLM) $ 0.252405 2.98%
avalanche-2
Avalanche (AVAX) $ 17.46 4.25%
shiba-inu
Shiba Inu (SHIB) $ 0.000012 0.52%
sui
Sui (SUI) $ 2.19 2.72%
hedera-hashgraph
Hedera (HBAR) $ 0.161151 1.49%
litecoin
Litecoin (LTC) $ 82.41 2.92%
mantra-dao
MANTRA (OM) $ 6.24 0.43%
polkadot
Polkadot (DOT) $ 3.93 2.72%
bitcoin-cash
Bitcoin Cash (BCH) $ 301.13 0.12%
bitget-token
Bitget Token (BGB) $ 4.45 1.71%
ethena-usde
Ethena USDe (USDE) $ 0.99947 0.01%
binance-bridged-usdt-bnb-smart-chain
Binance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999918 0.05%
weth
WETH (WETH) $ 1,808.34 0.62%
pi-network
Pi Network (PI) $ 0.671523 39.43%
wrapped-eeth
Wrapped eETH (WEETH) $ 1,924.58 0.55%
whitebit
WhiteBIT Coin (WBT) $ 28.08 1.84%
hyperliquid
Hyperliquid (HYPE) $ 11.83 2.02%
monero
Monero (XMR) $ 215.29 0.73%
uniswap
Uniswap (UNI) $ 5.84 1.03%
dai
Dai (DAI) $ 1.00 0.00%
okb
OKB (OKB) $ 52.97 3.88%
susds
sUSDS (SUSDS) $ 1.05 0.10%
pepe
Pepe (PEPE) $ 0.000007 3.45%
aptos
Aptos (APT) $ 4.86 0.21%
near
NEAR Protocol (NEAR) $ 2.43 2.80%
gatechain-token
Gate (GT) $ 22.50 0.25%
coinbase-wrapped-btc
Coinbase Wrapped BTC (CBBTC) $ 83,321.32 0.88%
tokenize-xchange
Tokenize Xchange (TKX) $ 32.44 3.04%
ondo-finance
Ondo (ONDO) $ 0.807125 1.34%
mantle
Mantle (MNT) $ 0.73891 0.44%
crypto-com-chain
Cronos (CRO) $ 0.090497 3.39%
internet-computer
Internet Computer (ICP) $ 5.02 1.17%
ethereum-classic
Ethereum Classic (ETC) $ 15.82 2.44%