BNB Smart Chain hit with copycat Vyper attack, $73K exploited

1 year ago

While Ethereum-based protocols person been deed with the bulk of the exploit activity, BNB Smart Chain has besides seen akin copycat exploits, according to BlockSec.

2062 Total views

23 Total shares

BNB Smart Chain deed  with copycat Vyper attack, $73K exploited

The BNB Smart Chain (BSC) has reportedly suffered copycat attacks owed to a vulnerability successful the Vyper programming language, pursuing a akin vein to the exploit connected the decentralized concern (DeFi) protocol Curve Finance.

Amid the exploits carried retired connected Ethereum, Blockchain information steadfast BlockSec tweeted connected July 30 that astir $73,000 worthy of cryptocurrencies connected BSC crossed 3 exploits had besides been stolen.

It comes as similar exploits targeting liquidity pools connected Curve Finance person racked up losses exceeding $41 million, according to existent BlockSec estimates.

The expanse updated. Losses person already ~$41m!https://t.co/lCaS4uEPzm https://t.co/stQYNJFS7y pic.twitter.com/P7jG8NHnV4

— BlockSec (@BlockSecTeam) July 30, 2023

The vulnerability was caused by a malfunctioning reentrancy fastener connected Vyper versions 0.2.15, 0.2.16 and 0.3.0, which is utilized by a fig of DeFi pools.

The programming connection is believed to beryllium 1 of the astir wide utilized for Web3 projects. It was designed for the Ethereum Virtual Machine and could impact different protocols that usage the afflicted Vyper versions.

Since quality of the exploit broke, achromatic chapeau and achromatic chapeau hackers person been duking it retired on-chain attempting to disrupt each other's exploit attempts oregon efforts to retrieve funds.

Related: Pond0X token motorboat snafu leads to millions of dollars successful losses

One imaginable whitehat, known arsenic “c0ffebabe.eth,” was seemingly capable to drawback immoderate funds to store for safekeeping. On July 30 they sent an on-chain connection asking affected protocols to interaction them to signifier returning funds.

Excellent news!!! hopefully we tin get it backhttps://t.co/sElKdYniT1 pic.twitter.com/AEldRorQaq

— Addison (@0xaddi) July 30, 2023

So far, the wallet has returned astir 2,900 Ether (ETH) worthy implicit $5 cardinal to Curve according to 1 transaction.

5M returned backmost to @CurveFinance pic.twitter.com/BPAvE1ZOZY

— KGJR (@KGJRTG) July 30, 2023

Another transaction saw c0ffebabe.eth determination 1,000 ETH to what appears to beryllium a newly-created wallet — apt the acold wallet that they mentioned earlier.

Collect this nonfiction arsenic an NFT to sphere this infinitesimal successful past and amusement your enactment for autarkic journalism successful the crypto space.

Hall of Flame: Wolf Of All Streets worries astir a satellite wherever Bitcoin hits $1M

View source