Hacker bungles DeFi exploit: Leaves stolen $1M in contract set to self destruct

Share This Post

A hacker apparently so thrilled by a successful theft left behind over $1 million in a smart contract that was set to destruct, permanently ensuring the crypto could never be moved.

In a rare comedic bungle among DeFi exploits, an attacker has fumbled their heist at the finish line leaving behind over $1 million in stolen crypto.

Just after 8AM UTC on Thursday April 21st, blockchain security and analytics firm BlockSec shared it had detected an attack on a little known DeFi lending protocol called Zeed, which styles itself a “decentralized financial integrated ecosystem”.

The attacker exploited a vulnerability in the way the protocol distributes rewards, allowing them to mint extra tokens which were then sold, crashing the price to zero, but netting just over $1 million for the exploiter.

Blockchain analytics firm PeckShield noted the stolen crypto was transferred to an “attack contract”, a smart contract which automatically and quickly executes the found exploit.

However the attacker was apparently so excited by their successful heist that they forgot to transfer over $1 million worth of stolen crypto out of their attack contract before they set it to self-destruct, permanently and irreversibly ensuring the funds can never be moved.

Using a blockchain scanner to view the attack contract address shows that $1,041,237.57 worth of BSC-USD Binance-Peg token is forever stuck in the contract and the successful self-destruction of the contract was confirmed at 7:15AM UTC on April 21.

Related: Truth or fiction? Popular former hacker claims to have $7B in BTC

It’s one of the more bizarre turns of events since the Polygon hacker did an “Ask Me Anything” using embedded messages on Ethereum(ETH) transactions after stealing $612 million from the protocol in August 2021. The question and answer session revealed the attacker hacked “for fun” and thought “cross-chain hacking is hot.”

This latest hack is on the smaller end regarding the amount stolen, and other DeFi protocol hacks have seen hundreds of millions siphoned off as with the recent Ronin bridge hack where attackers made off with over $600 million.

Other notable DeFi exploits include the $80 million worth of crypto stolen from Qubit Finance in January where attackers tricked the protocol into believing they had deposited collateral, allowing them to mint an asset representing a bridged crypto.

DeFi marketplace Deus Finance was exploited in March when hackers manipulated the price feed of a pair of stablecoins resulting in the insolvency of user funds, netting the hackers over $3 million.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Elon Musk Spicing Up Dogecoin Rally, Will DOGE Momentum Continue?

The post Elon Musk Spicing Up Dogecoin Rally, Will DOGE Momentum Continue appeared first on Coinpedia Fintech News Billionaire and founder of Tesla and SpaceX, Elon Musk, appears to be influencing

Bitcoin Mining vs. AI Hosting: The Unexpected Parallels Unveiled

Bitcoin miners and artificial intelligence (AI) cloud providers, along with high-performance computing (HPC) operators, share an unexpected bond in their quest for computing muscle As the

Craig Wright files lawsuit against Bitcoin core devs seeking over $1B in damages

Craig Wright has initiated a new lawsuit against Bitcoin Core developers, according to an Oct 15 filing submitted to the Chancery Division of the High Court in London Wright alleges that recent

Polymarket Is “Good” But Critic Picks Out This One Big “Ethical” Problem

Polymarket, the predictions market on Polygon, is drawing global attention Not only is it among the most active dapps without their token, but it is also closely being monitored by pollsters tracking

Aave Address Count On Optimism Rapidly Growing, Will Price Rise To New 13-Month High?

Aave, the decentralized lending platform, is among the largest DeFi protocols by total value locked (TVL) Over the years, despite the crypto price boom and bust cycle, the platform has operated

The rise of crypto neobanks: Nikolai Denisenko on Brighty’s mission

In a recent episode of the SlateCast, Nikolay Denisenko, Co-Founder and CTO of Brighty App, joined CryptoSlate‘s Senior Editor Liam “Akiba” Wright and CEO Nate Whitehill to