Millions lost As Solana-based DeFi App Cashio Suffers Hack

Share This Post





Solana-based decentralized app Cashio App recently suffered a hacking incident that has cost the platform a loss of nearly $50 million in cryptocurrency. The hacking incident was a result of an exploit that was initially noticed by blockchain experts on other Solana-based applications.

How The Platform Was Exploited

Paradigm’s samczsun described the exploit that resulted in the hacking incident. The researchers stated that the users deposit a particular amount of collateral that falls within the cross-margin invocation for minting new CASH tokens. The program verifies whether two accounts share the same type of tokens on their balance. If the program finds out the same tokens on both accounts, the transfer is automatically declined.

Samczsun also explained the right asset validation method on the sender’s account. However, the functions of minting the new tokens were not validated. This rendered all the steps described above pointless because the main function isn’t validated by the program.

When the threat actor discovered the problem in the contract code, they created a chain of bogus accounts before setting up a fake account. Samczsun explained that Cashio’s code had a flaw, which didn’t establish a root of trust for all the user accounts. This allowed the hackers to steal the funds from the platform.

DeFi Platforms Are Increasingly Targeted By Hackers

Decentralized finance (DeFi) platforms have seen a fair share of attacks this year. Projects like UmbNetwork and OneRing were targeted by threat actors that stole funds, with an estimated loss of about $1.8 million. As a result, PeckShield blockchain security firm and other security firms have called on these DeFi protocols to stay more cautious. The security firms pointed out that exploitation in a vulnerable code is proven to be the most common reason for a series of attacks on DeFi platforms.

When the smart contracts of a project have flawed code, just like the one in Cashio App, it allows attackers to launch the offensive mechanisms on the affected platform.

Your capital is at risk.

Read more:

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

UBS Predicts ‘No Landing’ for US Economy — What It Means for Markets and Inflation

Global investment bank UBS is forecasting a “no landing” scenario for the US economy, where growth continues and inflation remains stable, defying predictions of recession With

Shiba Inu To Double? Analyst Predicts 200% Price Hike – Details

Although flying under the radar concerning price movements during Bitcoin’s recent bull run, the dog-themed cryptocurrency Shiba Inu (SHIB) was able to appreciate 818% in the last week while

Going Crypto: Putin Reveals BRICS’ Shift Toward Digital Currency In Investment Strategy

Adopting crypto has been one of the key discussions among BRICS member states in a business forum held in Moscow on Friday The BRICS (Brаzil, Russiа, Indiа, Chinа, аnd South Africа) bloc seeks

Russia Vows to Launch Domestic Payment System to Render Western Sanctions Obsolete

Russia is determined to create a domestic payment system to conduct trade and international transactions free from current disruptions Mikhail Mishustin, Prime Minister of Russia, stated that this

Bitcoin Powers Wealth: Nearly 50% Of Crypto Millionaires Owe Success To BTC

Between 2023 and 2024, the number of Bitcoin millionaires climbed by almost 111%, reaching 85,400 or 496% of all crypto millionaires in 2024 Regarding cryptocurrency billionaires, five of the six

FLOKI Breaks Out Of Downtrend: Analyst Predicts 200% Rally To New All-Time High

Meme coin FLOKI has also benefited from recent inflows into the crypto markets, which has left many cryptocurrencies posting gains in both the 24-hour and seven-day timeframes  Notably, this inflow