Milky Crypto News
  • Home
  • Live Coin Market
  • Live Exchange Market
  • Crypto News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Blockchain
  • Regulation
  • Trading
  • Scams
No Result
View All Result
  • Home
  • Live Coin Market
  • Live Exchange Market
  • Crypto News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Blockchain
  • Regulation
  • Trading
  • Scams
No Result
View All Result
Milky Crypto News
No Result
View All Result

yearn.finance Reveals Details on Hack That Triggered $11 Million Loss

February 7, 2021
in Scams
Reading Time: 3min read
A A
0
yearn.finance Reveals Details on Hack That Triggered $11 Million Loss
1
SHARES
4
VIEWS
ShareShareShareShareShare

Decentralized finance (DeFi) yield aggregator yearn.finance (YFI) reveals the details of a hacking incident that caused a total loss of $11 million to the network.

According to Yearn’s vulnerability disclosure posted on GitHub Thursday, yearn.finance creator Andre Cronje noticed odd patterns in a contract interacting with the platform’s vaults at 21:45 UTC on February 4th.

Upon further examination, the complex and concerning transaction turned out to be an active exploit of the v1 yDAI vault.

Yearn says the attacker caused the compromised vault to deposit and withdraw funds from the automated market maker (AMM) Curve’s 3pool at unfavorable rates.

“At a high level, the exploiter was able to profit through the following steps:

Debalance the exchange rate between stablecoins in Curve’s 3CRV pool.
Make the yDAI vault deposit into the pool at an unfavorable exchange rate.
Reverse the imbalance caused in step 1.”

The security team mitigated the exploit in 11 minutes. Yearn says the quick response saved 24 million of the vault’s 35 million DAI under management.

Despite the team’s quick work, yearn.finance developer banteg says the attacker managed to get away with some deposited funds in the pool.

Yearn DAI v1 vault got exploited, the attacker got away with $2.8m, the vault lost $11m. Deposits into strategies disabled for v1 DAI, TUSD, USDC, USDT vaults while we investigate. pic.twitter.com/1RWYyu0d5m

— banteg (@bantg) February 4, 2021

As for the cause of the attack, yearn.finance reports that a confluence of three factors led to the vulnerability.

“[First], the hacked vault’s slippage protection was set too loose at 1%. [Second], the normal 0.5% withdrawal fee was set to 0%, to encourage migrations to v2 vaults without incurring costs. [And third], this being a v1 vault, the exploiter was able to call earn() and push deposits into the vault’s strategy at will.”

Don’t Miss a Beat – Subscribe to get crypto email alerts delivered directly to your inbox

Follow us on Twitter, Facebook and Telegram

Surf The Daily Hodl Mix

Check Latest News Headlines

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any loses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Featured Image: Shutterstock/Tithi Luadthong


Credit: Source link

ShareTweetSharePinShare
Previous Post

Banks (Not Bitcoin) in Australia Laundered $387,000,000 for Latin American Drug Cartels: Report

Next Post

Privacy-Centric Coin Verge Suffers Massive Reorganization Attack, Developers Say Funds Are Safe

Related Posts

U.S. Department of Justice Charges Two Crypto Traders Over Alleged $1,100,000 “Frosties” NFT Scam
Scams

U.S. Department of Justice Charges Two Crypto Traders Over Alleged $1,100,000 “Frosties” NFT Scam

March 25, 2022
Hackers Access Client Data on Bitcoin (BTC) Investing Platforms Following Third-Party Breach
Scams

Hackers Access Client Data on Bitcoin (BTC) Investing Platforms Following Third-Party Breach

March 22, 2022
Crypto Cons Were the Second-Riskiest Type of Scam in 2021, Says Better Business Bureau
Scams

Crypto Cons Were the Second-Riskiest Type of Scam in 2021, Says Better Business Bureau

March 19, 2022
Coinbase Smashes Revenue Record, Brings In $2,000,000,000 in Second Quarter
Scams

US Government Recovers and Returns More Than $500,000 in Bitcoin (BTC) Stolen From Coinbase User

March 18, 2022
Load More
Next Post
Privacy-Centric Coin Verge Suffers Massive Reorganization Attack, Developers Say Funds Are Safe

Privacy-Centric Coin Verge Suffers Massive Reorganization Attack, Developers Say Funds Are Safe

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Terra (LUNA) Co-Founder Reveals Massive $3,000,000,000 Bitcoin (BTC) Purchase Is Already Underway

Terra (LUNA) Co-Founder Reveals Massive $3,000,000,000 Bitcoin (BTC) Purchase Is Already Underway

March 23, 2022
Decentralized AI-Powered Oracle, Oraichain Launches Oraidex Following Its Mainnet Release

Decentralized AI-Powered Oracle, Oraichain Launches Oraidex Following Its Mainnet Release

March 24, 2022
$5,860,000,000 Worth of Ethereum (ETH) Torched Since Hard Fork Upgrade: Insights Firm IntoTheBlock

$5,860,000,000 Worth of Ethereum (ETH) Torched Since Hard Fork Upgrade: Insights Firm IntoTheBlock

March 23, 2022
On-Chain Analyst Willy Woo Says Bitcoin’s ‘Last Cycle’ Playing Out As BTC Gets Aggressively Accumulated

On-Chain Analyst Willy Woo Says Bitcoin’s ‘Last Cycle’ Playing Out As BTC Gets Aggressively Accumulated

March 22, 2022
Bank of England Says Crypto Assets ‘Present Financial Stability Risks,’ Bank Begins Sketching Regulatory Framework – Regulation Bitcoin News

Bank of England Says Crypto Assets ‘Present Financial Stability Risks,’ Bank Begins Sketching Regulatory Framework – Regulation Bitcoin News

March 24, 2022
BTC/USD Supported with Technical Bids on Pullbacks: Sally Ho’s Technical Analysis 23 March 2022 BTC

BTC/USD Supported with Technical Bids on Pullbacks: Sally Ho’s Technical Analysis 23 March 2022 BTC

March 23, 2022
Milky Crypto News

This is an online news portal that aims to provide the latest crypto news and real-time updates around the world. Feel free to get in touch with us!

What’s New Here!

  • U.S. Department of Justice Charges Two Crypto Traders Over Alleged $1,100,000 “Frosties” NFT Scam
  • $10,000,000,000,000 Asset Management Firm BlackRock Exploring Support for Crypto Assets
  • Number of Addresses Holding BTC Taps 40 Million, Non-Zero Bitcoin Address Metric Grew 92% Since 2018 – Bitcoin News
  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 - MilkyCrypto.io - All rights reserved!

No Result
View All Result
  • Home
  • Live Coin Market
  • Live Exchange Market
  • Crypto News
    • Bitcoin
    • Ethereum
    • Altcoins
    • Blockchain
  • Regulation
  • Trading
  • Scams