BPOI Banner
DeFi Platform Loses $6M In Breach, Is North Korea Involved? DeFi Platform Loses $6M In Breach, Is North Korea Involved?

DeFi Platform Loses $6M In Breach, Is North Korea Involved?


Este artículo también está disponible en español.

Decentralized Finance (DeFi) platform Delta Primes suffered a security breach on Monday, affecting the protocol’s users. The attack took $6 million from the project’s pools and is under investigation. However, on-chain investigators suspect it could be linked to North Korean hackers and be part of a larger-scale scheme.

Related Reading

Hackers Drain $6 Million From DeFi Protocol

On Monday morning, cyber security platform Cyvers Alerts informed the community about the ongoing attack on DeFi borrowing protocol Delta Primes. The initial report revealed that Cyvers’ system had detected multiple suspicious transactions involving the project on the Arbitrum chain.

The transactions suggested the DeFi protocol’s team had lost the private key, initially losing $4.5 million from the DPUSDC, DPARB, and DPBTCb pools. The suspicious draining address immediately swapped the USDC for Ethereum (ETH).

In the next hour, Cyvers detailed that the attackers had seemingly changed the proxy, pointing to a malicious address. Other reports explained that “this malicious contract can inflate the deposited amount of the hacker on all pools.”

The attackers drained another $1.48 million from the pools before Delta Prime’s team regained control. Two hours after the initial reports, the DeFi platform addressed the incident.

Per the post, DeltaPrime Blue, on the Arbritum chain, was attacked and drained for $5.98 million. The team confirmed that the attack was due to a compromised private key, with the cause still being investigated.

Delta Prime’s team also assured users that DetalPrime Red, on Avalanche, was safe from this attack, detailing that the “implementation here is covered solely by multisigs and cold wallets (as it should be).”

Additionally, the post claimed that the risk was already contained, reassuring its community that the DeFi protocol’s insurance pool would cover potential losses:

The risk is contained, we’re working on asset-retrieval and the insurance pool will cover any potential losses where possible / necessary. Additionally, we’re looking into other ways to reduce user losses to a minimum.

Are North Korean Hackers Responsible?

Despite the quick response, some users expressed their concerns about the incident. When questioned about it, the team explained that there were no timelocks for DeltaPrime Blue:

This is exactly what timelocks are for. The switch from this hot & non-timelocked owner to a cold timelocked owner should have been done on Arbitrum like it was on Avalanche (and like other initial owners on Arbi)

One community member criticized the team for not having the same security measures on DeltaPrime Blue and Red, stating there was no excuse for the mistake. Moreover, on-chain sleuth ZachXBT suggested that the attack could be linked to a larger-scale problem.

A month ago, Zach assisted another team with another crypto hack. The investigation unveiled that over 25 projects within the space had unknowingly hired multiple IT workers from North Korea using fake identities as developers.

Related Reading

Today, the crypto detective revealed that the DeFi protocol was among the teams he alerted about the North Korean IT workers in August. He also noted that the method used for Delta Prime’s exploit was similar to the hack he originally assisted.

As of this writing, Delta Prime’s team has not addressed the possible link. However, it stated that they would focus on getting the funds back and that “the event isn’t over yet.”

Ethereum is trading at $2,307 in the weekly chart. Source: ETHUSDT on TradingView

Featured Image from Unsplash.com, Chart from TradingView.com

Source link

Rubmar Garcia

https://www.newsbtc.com/news/defi-platform-delta-primes-loses-6-million-in-security-breach-is-north-korea-involved/

2024-09-17 01:30:22

bitcoin
Bitcoin (BTC) $ 91,340.47 3.95%
ethereum
Ethereum (ETH) $ 3,104.91 1.52%
tether
Tether (USDT) $ 1.00 0.01%
solana
Solana (SOL) $ 218.27 3.88%
bnb
BNB (BNB) $ 621.07 0.01%
dogecoin
Dogecoin (DOGE) $ 0.378663 2.56%
xrp
XRP (XRP) $ 0.887661 8.29%
usd-coin
USDC (USDC) $ 1.00 0.01%
staked-ether
Lido Staked Ether (STETH) $ 3,102.48 1.59%
cardano
Cardano (ADA) $ 0.713657 21.24%
tron
TRON (TRX) $ 0.191651 8.50%
shiba-inu
Shiba Inu (SHIB) $ 0.000025 7.92%
the-open-network
Toncoin (TON) $ 5.40 3.03%
avalanche-2
Avalanche (AVAX) $ 33.22 6.06%
wrapped-bitcoin
Wrapped Bitcoin (WBTC) $ 91,141.42 3.84%
wrapped-steth
Wrapped stETH (WSTETH) $ 3,669.42 1.31%
sui
Sui (SUI) $ 3.67 12.61%
pepe
Pepe (PEPE) $ 0.000023 11.93%
weth
WETH (WETH) $ 3,102.49 1.40%
chainlink
Chainlink (LINK) $ 13.85 7.13%
bitcoin-cash
Bitcoin Cash (BCH) $ 432.76 3.76%
polkadot
Polkadot (DOT) $ 5.19 8.95%
leo-token
LEO Token (LEO) $ 7.66 3.02%
near
NEAR Protocol (NEAR) $ 5.54 3.30%
litecoin
Litecoin (LTC) $ 84.37 5.07%
aptos
Aptos (APT) $ 11.94 7.25%
wrapped-eeth
Wrapped eETH (WEETH) $ 3,266.54 1.32%
usds
USDS (USDS) $ 0.995459 0.29%
uniswap
Uniswap (UNI) $ 8.59 5.57%
crypto-com-chain
Cronos (CRO) $ 0.17298 18.83%
stellar
Stellar (XLM) $ 0.143699 8.31%
internet-computer
Internet Computer (ICP) $ 8.68 8.27%
dogwifcoin
dogwifhat (WIF) $ 3.89 11.08%
bittensor
Bittensor (TAO) $ 520.40 4.76%
ethereum-classic
Ethereum Classic (ETC) $ 23.19 6.25%
kaspa
Kaspa (KAS) $ 0.136841 1.03%
fetch-ai
Artificial Superintelligence Alliance (FET) $ 1.29 4.96%
dai
Dai (DAI) $ 1.00 0.13%
whitebit
WhiteBIT Coin (WBT) $ 22.32 0.80%
ethena-usde
Ethena USDe (USDE) $ 1.00 0.08%
bonk
Bonk (BONK) $ 0.000044 27.13%
polygon-ecosystem-token
POL (ex-MATIC) (POL) $ 0.374257 4.81%
blockstack
Stacks (STX) $ 1.87 3.50%
hedera-hashgraph
Hedera (HBAR) $ 0.073958 14.69%
render-token
Render (RENDER) $ 7.08 7.51%
monero
Monero (XMR) $ 143.81 3.13%
okb
OKB (OKB) $ 44.06 2.08%
first-digital-usd
First Digital USD (FDUSD) $ 1.00 0.19%
floki
FLOKI (FLOKI) $ 0.000265 25.65%
filecoin
Filecoin (FIL) $ 4.19 8.51%