OKX promises user reimbursement following DEX hack due to deprecated smart contract

Share This Post

The OKX DEX Aggregator faced a significant security breach involving an outdated smart contract on Dec. 12. This incident resulted in measures by OKX to secure user assets and revoke permissions for the compromised contract. The breach, resulting in the loss of around $370,000, has prompted the company to announce it will reimburse affected users as they coordinate with authorities to track down the stolen funds. A comprehensive review is now in progress to avoid such vulnerabilities in the future.

An official statement from the OKX web3 team stated,

“We regret to inform you that a deprecated smart contract on OKX Dex has been compromised. We have taken immediate action to secure all user funds and revoke the contract permissions.

We are working with relevant agencies to locate the stolen funds and will reimburse affected users with $370k. A thorough review is underway to prevent similar incidents. Our apologies for any inconvenience caused.”

Blockchain security firm SlowMist identified a potential leak of the private key of the Proxy Admin Owner associated with the OKX DEX. A sequence of suspicious activities was observed, beginning with upgrading the DEX Proxy contract to a new implementation. This new contract had the capability to directly call the claimTokens function of the DEX contract, which led to unauthorized token transfers.

The DEX Proxy was upgraded again later that evening, continuing the illicit token transfers. Approximately 430,000 tokens were stolen during this period, suggesting that the breach was due to the leakage of the Proxy Admin Owner’s private key. The DEX Proxy has been removed from the trusted list as a remedial step.

Tokens stolen include notable projects such as USDC, USDT, Pepe, WETH, Rollbit, SLP, and SHIBA INU across a total of 31 transactions into the wallet now labeled as “OKX Exploiter 2” on Etherscan.

Security firm Cyvers indicated that the total estimated loss could be as high as $1.1 million, with part of the stolen funds being deposited to Railgun and distributed to various externally owned accounts (EOAs). The attacker was reportedly funded by Tornado Cash.

The post OKX promises user reimbursement following DEX hack due to deprecated smart contract appeared first on CryptoSlate.

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

Trump nominates pro-Bitcoin lawmaker Matt Gaetz to serve as US attorney general

US President-elect Donald Trump is continuing to shape his administration with pro-crypto figures by nominating Bitcoin-friendly Congressman Matt Gaetz as Attorney General On Nov 13, Trump

Experts Say Dogen Could Outperform Dogecoin and PEPE in 2024 — Here’s How

Market experts predict that Dogen may surpass popular cryptocurrencies like Dogecoin and PEPE in 2024 This unexpected projection has caught the attention of investors and traders alike What factors

Could Dogen Hit $1 Before Dogecoin and Shiba Inu? Analysts Say 10,000% Gains Are Possible

A new contender is making waves in the cryptocurrency arena, with experts speculating on its potential to outperform established names Dogen, an emerging digital coin, is attracting attention amid

Crypto Millionaire Reveals His Top Picks for 1,000x Gains by 2025

A prominent cryptocurrency investor is sharing his latest insights into digital assets that could skyrocket in value by 2025 With a track record of identifying winning investments, his new

XRP Holders Are Switching to CYBRO as Experts Predict 8,500% Returns

A new wave is sweeping through the crypto world as investors shift focus to an emerging digital asset Predictions of staggering 8,500% returns have caught the eye of those who once backed XRP The

Dogecoin (DOGE) Price Forecast: What Past Performance Says About DOGE in November

Closing October with its second-highest monthly gains in that month since 2014, Dogecoin (DOGE) has lately exhibited amazing momentum Now in November, investors anticipate the upward trend will