Curve Finance Recovers over 70% of Hacked Funds: Report
The hackers who exploited Curve Finance have returned 73% of the tokens stolen from the decentralized finance (DeFi) platform. So far, the amount of tokens returned is estimated at USD $53 million, according to a report...
Archive context
Older archive item. Useful for background and entity history, but not a fresh market-moving signal.
The hackers who exploited Curve Finance have returned 73% of the tokens stolen from the decentralized finance (DeFi) platform. So far, the amount of tokens returned is estimated at USD $53 million, according to a report by a blockchain data analytics platform.
About a week ago, Curve Finance, the DeFi platform for stablecoins, was exploited through a reentrancy bug on its smart contracts programming language, Vyper. This action led to price volatility in CRV, the native token of the DeFi platform. Additionally, it prompted the cryptocurrency exchange, Upbit to suspend deposits and withdrawals of the token.
"A number of stablepools (alETH/msETH/pETH) which are using Vyper 0.2.15 have been exploited as a result of a malfunctioning reentrancy lock," a representative from Curve Finance stated. "We are assessing the situation and will update the community as things develop."
White Hat Hackers?
However, according to a post by PeckShield on X social media platform, ethical hackers are beginning to return the spoils. All the tokens, worth USD $22 million, stolen from the lending protocol AlchemixFi have reportedly been returned. This amount comprises 7,258 Ether and 4,821 Alchemix Ether.
On top of that, a trading bot has returned 90% of the tokens worth USD $11.5 million stolen from Jpegd. Similarly, tokens worth USD $6 million and USD $13 million have been recovered, which were stolen from the synthetic protocol Metronome and Curve trading pool, respectively.
Curve Finance’s Bug Bounty
On August 3, the exploited protocols, Curve, Metronome, and Alchemix, announced a bug bounty to incentivize hackers to return the stolen funds. In the statement on Etherscan, the platforms said: "We are offering a 10% bounty of any stolen funds, which are yours to keep if you return the remaining 90%."
Finance Magnates reported that Curve was exploited through a type of attack known as Reentrancy. This vulnerability allows codes from malicious third parties to be executed within a smart contract. Thus, hackers are able to make repeated calls to a blockchain platform and siphon funds.
This article was written by Jared Kirui at www.financemagnates.com.Why this matters
This security story adds another data point to the current market tape and is useful when read alongside nearby source coverage.
Original source
Read on Finance MagnatesRelated market context
Curve Finance: Ethereum’s Glamsterdam upgrade may boost DeFi execution
The Glamsterdam upgrade could enhance DeFi efficiency, potentially boosting Ethereum's market appeal and influencing future price...
Sui’s Hashi Bitcoin Finance Network Launches With More Than $500 Million Committed
TL;DR: Hashi, Sui’s native Bitcoin finance infrastructure, will begin a phased mainnet rollout later this month with more than $50...
Why XRP’s 63 billion circulating tokens don’t tell buyers what’s for sale
For XRP buyers, available supply depends on the price they are willing to pay. The token's roughly 63.09 billion circulating suppl...
XRPL’s $1.34 billion stablecoin base doesn’t tell us how much XRP users need
Tracked stablecoins on the XRP Ledger totaled $1.338 billion on Oct. 7. For XRP holders, the critical question is how much activit...
Coinbase Cryptographer Calls Drake's 'Bunker Mode' Warning 'The Very Definition of FUD'
Vitalik Buterin said the risk from AI-accelerated math is real but pointed it at lattices rather than elliptic curves. A former Et...
Bitcoin ETFs Bleed $484.9 Million As BlackRock Leads A Broad Day Of Outflows
TL;DR: US spot Bitcoin ETFs recorded $484.9 million in net outflows on October 7, according to Farside Investors. BlackRock’s IBIT...