Moola Market attacker returns most of $9M looted for $500K bounty

Share This Post

The attacker has scored about a half-million dollar “bug bounty” after choosing to return a majority of the cryptocurrency they exploited from the Celo-based lending protocol.

An attacker has returned just over 93% of the more than $9 million worth of cryptocurrencies they exploited from the Celo (CELO) blockchain-based decentralized finance (DeFi) lending protocol Moola Market.

At around 6PM UTC on Oct. 18 the Moola Market team tweeted it was investigating an incident and had paused all activity, adding it had contacted authorities and offered a bug bounty to the exploiter if funds were returned within 24 hours.

Analysis of the exploit by Web3 security company Hacken shows the attacker manipulated the price of the protocols’ low-liquidity native MOO token by initially purchasing around $45,000 worth and depositing it as collateral to borrow CELO.

The borrowed CELO, along with further CELO provided by the attacker, was then used as collateral to borrow more MOO, driving up the token’s price. The attacker continued repeating this until the MOO token price had increased by 6,400%.

With the inflated token price, the attacker was able to borrow $6.6 million worth of CELO, $1.2 million of MOO, along with $740,000 of Cello Euros (cEUR) and $644,000 Celo Dollars (cUSD) all worth multiples more than their initial posted collateral resulting in the protocol’s loss of around $9.1 million.

Five hours after the initial confirmation of the exploit, Moola Market tweeted it had received just over 93% of the funds exploited, with the attacker seemingly keeping the rest making around $500,000 as a bug bounty.

Moola Market did not immediately respond to Cointelegraph’s request for comment.

The attack draws similarities to the $117 million exploit suffered by Mango Markets on Oct. 11 in which Avraham Eisenberg and his team manipulated the price of the Solana (SOL)-based DeFi protocols’ native token to borrow cryptocurrencies with an undercollateralized backing. Eisenberg negotiated to keep $47 million as a “bounty.”

Related: BNB Chain responds with next steps for cross-chain security after network exploit

Multi-chain cryptocurrency wallet BitKeep also suffered an exploit late on Oct. 17 with an attacker making off with $1 million worth of Binance Coin (BNB) through a service used to swap tokens, BitKeep says it will fully reimburse any affected users.

The attacks are the latest in a series of exploits to have taken place in October which has also shaped up to be the biggest month ever for hacking activity with the total hacked value reaching around $718 million up until Oct. 12 according to analytics firm Chanalysis.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

MiCA-Compliant Stablecoins EURQ and USDQ to Hit European Market on November 18

The post MiCA-Compliant Stablecoins EURQ and USDQ to Hit European Market on November 18 appeared first on Coinpedia Fintech News In a significant move for regulated digital payments, Quantoz

Crypto Funds Surge with $2.2B Inflows: Is Bitcoin’s Record High Driving the Boom?

The post Crypto Funds Surge with $22B Inflows: Is Bitcoin’s Record High Driving the Boom appeared first on Coinpedia Fintech News Global crypto funds, including those managed by BlackRock,

Will AKT Price Break $6.85 and Hit a New 52-Week High at $8.31?

The post Will AKT Price Break $685 and Hit a New 52-Week High at $831 appeared first on Coinpedia Fintech News Entering the list of top 100 crypto, AKT Akash Network is inching closer to a

Solana’s price could flip Tether’s USDT market cap at $270

Solana is showing strong momentum, which, if its current price surge continues, could position it to overtake Tether’s USDT stablecoin market cap Data from CryptoSlate shows that

BlackRock’s Bold Move in the Middle East Secures License To Abu Dhabi 

The post BlackRock’s Bold Move in the Middle East Secures License To Abu Dhabi  appeared first on Coinpedia Fintech News Global asset management giant BlackRock, known for managing a massive

Ripple’s CLO Calls for SEC Spending Inquiry; Tim Draper Commends Musk’s Leadership in DOGE

The post Ripple’s CLO Calls for SEC Spending Inquiry; Tim Draper Commends Musk’s Leadership in DOGE appeared first on Coinpedia Fintech News In a latest X post, Ripple’s CLO, Stuart