• bitcoinBitcoin (BTC) $ 84,286.00
  • ethereumEthereum (ETH) $ 1,975.42
  • tetherTether (USDT) $ 0.999493
  • xrpXRP (XRP) $ 2.44
  • bnbBNB (BNB) $ 627.63
  • solanaSolana (SOL) $ 127.71
  • usd-coinUSDC (USDC) $ 0.999675
  • cardanoCardano (ADA) $ 0.720042
  • dogecoinDogecoin (DOGE) $ 0.169037
  • tronTRON (TRX) $ 0.235845
  • staked-etherLido Staked Ether (STETH) $ 1,975.40
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 84,248.00
  • the-open-networkToncoin (TON) $ 3.71
  • chainlinkChainlink (LINK) $ 14.20
  • leo-tokenLEO Token (LEO) $ 9.74
  • stellarStellar (XLM) $ 0.282551
  • wrapped-stethWrapped stETH (WSTETH) $ 2,364.06
  • usdsUSDS (USDS) $ 0.999640
  • hedera-hashgraphHedera (HBAR) $ 0.189700
  • avalanche-2Avalanche (AVAX) $ 18.72
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • pi-networkPi Network (PI) $ 1.10
  • suiSui (SUI) $ 2.37
  • litecoinLitecoin (LTC) $ 92.53
  • polkadotPolkadot (DOT) $ 4.38
  • bitcoin-cashBitcoin Cash (BCH) $ 334.04
  • mantra-daoMANTRA (OM) $ 6.63
  • wethWETH (WETH) $ 1,977.08
  • bitget-tokenBitget Token (BGB) $ 4.68
  • ethena-usdeEthena USDe (USDE) $ 0.999676
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998861
  • hyperliquidHyperliquid (HYPE) $ 14.30
  • wrapped-eethWrapped eETH (WEETH) $ 2,100.87
  • uniswapUniswap (UNI) $ 6.86
  • whitebitWhiteBIT Coin (WBT) $ 28.54
  • moneroMonero (XMR) $ 209.06
  • susdssUSDS (SUSDS) $ 1.05
  • aptosAptos (APT) $ 5.60
  • nearNEAR Protocol (NEAR) $ 2.74
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.16
  • pepePepe (PEPE) $ 0.000008
  • daiDai (DAI) $ 0.999547
  • okbOKB (OKB) $ 51.57
  • gatechain-tokenGate (GT) $ 22.66
  • internet-computerInternet Computer (ICP) $ 5.76
  • ethereum-classicEthereum Classic (ETC) $ 17.90
  • tokenize-xchangeTokenize Xchange (TKX) $ 33.84
  • ondo-financeOndo (ONDO) $ 0.845361
  • aaveAave (AAVE) $ 175.25
  • mantleMantle (MNT) $ 0.784854
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 84,353.00
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999659
  • vechainVeChain (VET) $ 0.026055
  • official-trumpOfficial Trump (TRUMP) $ 11.07
  • crypto-com-chainCronos (CRO) $ 0.079283
  • bittensorBittensor (TAO) $ 251.30
  • cosmosCosmos Hub (ATOM) $ 4.82
  • kaspaKaspa (KAS) $ 0.078121
  • ethenaEthena (ENA) $ 0.382046
  • filecoinFilecoin (FIL) $ 3.05
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.211861
  • celestiaCelestia (TIA) $ 3.36
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 84,060.00
  • arbitrumArbitrum (ARB) $ 0.374884
  • fasttokenFasttoken (FTN) $ 4.02
  • render-tokenRender (RENDER) $ 3.30
  • algorandAlgorand (ALGO) $ 0.196702
  • sonic-3Sonic (prev. FTM) (S) $ 0.513073
  • arbitrum-bridged-usdt-arbitrumArbitrum Bridged USDT (Arbitrum) (USDT) $ 0.998254
  • optimismOptimism (OP) $ 0.881514
  • jupiter-exchange-solanaJupiter (JUP) $ 0.527634
  • story-2Story (IP) $ 5.38
  • kucoin-sharesKuCoin (KCS) $ 11.23
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.522906
  • entangleEntangle (NTGL) $ 0.002223
  • solv-btcSolv Protocol SolvBTC (SOLVBTC) $ 84,288.00
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • binance-peg-wethBinance-Peg WETH (WETH) $ 1,977.13
  • quant-networkQuant (QNT) $ 77.11
  • xdce-crowd-saleXDC Network (XDC) $ 0.071574
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 2,050.65
  • nexoNEXO (NEXO) $ 1.11
  • dexeDeXe (DEXE) $ 19.16
  • movementMovement (MOVE) $ 0.435589
  • makerMaker (MKR) $ 1,247.31
  • worldcoin-wldWorldcoin (WLD) $ 0.856246
  • immutable-xImmutable (IMX) $ 0.563967
  • rocket-pool-ethRocket Pool ETH (RETH) $ 2,231.77
  • blockstackStacks (STX) $ 0.642448
  • usual-usdUsual USD (USD0) $ 0.997702
  • injective-protocolInjective (INJ) $ 9.94
  • sei-networkSei (SEI) $ 0.195472
  • theta-tokenTheta Network (THETA) $ 0.947286
  • binance-staked-solBinance Staked SOL (BNSOL) $ 133.17
  • the-graphThe Graph (GRT) $ 0.095788
  • lido-daoLido DAO (LDO) $ 1.01
  • flare-networksFlare (FLR) $ 0.014765
  • bonkBonk (BONK) $ 0.000012
  • eosEOS (EOS) $ 0.558608
  • polygon-bridged-usdt-polygonPolygon Bridged USDT (Polygon) (USDT) $ 0.998603
  • solv-protocol-solvbtc-bbnSolv Protocol SolvBTC.BBN (SOLVBTC.BB) $ 84,161.00
  • mantle-staked-etherMantle Staked Ether (METH) $ 2,098.52
  • wbnbWrapped BNB (WBNB) $ 628.41
  • tether-goldTether Gold (XAUT) $ 3,051.02
  • galaGALA (GALA) $ 0.017152
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.999069
  • paypal-usdPayPal USD (PYUSD) $ 0.999559
  • tezosTezos (XTZ) $ 0.707774
  • stargate-bridged-usdc-berachainStargate Bridged USDC (Berachain) (USDC.E) $ 0.998343
  • the-sandboxThe Sandbox (SAND) $ 0.286954
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.37
  • bittorrentBitTorrent (BTT) $ 0.00000070
  • bitcoin-svBitcoin SV (BSV) $ 34.42
  • iotaIOTA (IOTA) $ 0.184320
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 84,168.00
  • jasmycoinJasmyCoin (JASMY) $ 0.013768
  • flowFlow (FLOW) $ 0.421432
  • jito-governance-tokenJito (JTO) $ 2.13
  • berachain-beraBerachain (BERA) $ 6.04
  • pax-goldPAX Gold (PAXG) $ 3,059.16
  • kaiaKaia (KAIA) $ 0.108923
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.999045
  • msolMarinade Staked SOL (MSOL) $ 163.49
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 2,057.06
  • flokiFLOKI (FLOKI) $ 0.000063
  • kavaKava (KAVA) $ 0.540228
  • neoNEO (NEO) $ 8.31
  • curve-dao-tokenCurve DAO (CRV) $ 0.441926
  • telcoinTelcoin (TEL) $ 0.006188
  • ethereum-name-serviceEthereum Name Service (ENS) $ 16.95
  • heliumHelium (HNT) $ 3.09
  • axie-infinityAxie Infinity (AXS) $ 3.43
  • resolv-usrResolv USR (USR) $ 0.999967
  • pyth-networkPyth Network (PYTH) $ 0.149351
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 139.83
  • zcashZcash (ZEC) $ 33.60
  • honey-3Honey (HONEY) $ 0.999184
  • beldexBeldex (BDX) $ 0.074759
  • dydx-chaindYdX (DYDX) $ 0.675203
  • elrond-erd-2MultiversX (EGLD) $ 18.08
  • decentralandDecentraland (MANA) $ 0.269886
  • true-usdTrueUSD (TUSD) $ 0.999506
  • raydiumRaydium (RAY) $ 1.69
  • dogwifcoindogwifhat (WIF) $ 0.491695
  • roninRonin (RON) $ 0.771528
  • pumpbtcpumpBTC (PUMPBTC) $ 82,335.00
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 2,095.83
  • starknetStarknet (STRK) $ 0.167736
  • coredaoorgCore (CORE) $ 0.458355
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 1,974.48
  • arweaveArweave (AR) $ 6.84
  • bridged-usdc-polygon-pos-bridgeBridged USDC (Polygon PoS Bridge) (USDC.E) $ 0.999891
  • conflux-tokenConflux (CFX) $ 0.088710
  • apenftAPENFT (NFT) $ 0.00000045
  • ecasheCash (XEC) $ 0.000022
  • thorchainTHORChain (RUNE) $ 1.23
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.169110
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 84,358.00
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 0.661506
  • chilizChiliz (CHZ) $ 0.045222
  • super-oethSuper OETH (SUPEROETHB) $ 1,976.04
  • apecoinApeCoin (APE) $ 0.523316
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 1,976.20
  • clbtcclBTC (CLBTC) $ 83,259.00
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.006572
  • spx6900SPX6900 (SPX) $ 0.440544
  • aerodrome-financeAerodrome Finance (AERO) $ 0.510035
  • ousgOUSG (OUSG) $ 110.39
  • usdbUSDB (USDB) $ 1.00
  • hashnote-usycHashnote USYC (USYC) $ 1.08
  • pendlePendle (PENDLE) $ 2.50
  • compound-governance-tokenCompound (COMP) $ 42.77
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.08
  • plumePlume (PLUME) $ 0.190434
  • chain-2Onyxcoin (XCN) $ 0.011487
  • axelarAxelar (AXL) $ 0.398681
  • matic-networkPolygon (MATIC) $ 0.212128
  • trust-wallet-tokenTrust Wallet (TWT) $ 0.892411
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 2,058.29
  • beam-2Beam (BEAM) $ 0.007012
  • infrared-beraInfrared Bera (IBERA) $ 5.38
  • olympusOlympus (OHM) $ 22.19
  • grassGrass (GRASS) $ 1.31
  • fartcoinFartcoin (FARTCOIN) $ 0.352363
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 1,991.47
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 1,977.43
  • amp-tokenAmp (AMP) $ 0.004207
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000065
  • tbtctBTC (TBTC) $ 83,801.00
  • fraxFrax (FRAX) $ 0.998848
  • lorenzo-stbtcLorenzo stBTC (STBTC) $ 83,579.00
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 0.998640
  • kaitoKAITO (KAITO) $ 1.37
  • gnosisGnosis (GNO) $ 127.02
  • binance-peg-busdBinance-Peg BUSD (BUSD) $ 1.01
  • based-brettBrett (BRETT) $ 0.032583
  • mina-protocolMina Protocol (MINA) $ 0.263115
  • reserve-rights-tokenReserve Rights (RSR) $ 0.005690
  • morphoMorpho (MORPHO) $ 1.34
  • stakestone-berachain-vault-tokenStakeStone Berachain Vault Token (BERASTONE) $ 1,961.05

Lending protocol Sturdy Finance drained of $800,000 in security attack

0 339

Lending protocol Sturdy Finance drained of $800,000 in security attack

Sturdy Finance, a decentralized lending protocol, fell victim to a security attack today, which led to a loss of 442 ether or about $800,000. The unknown attacker took advantage of a reentrancy vulnerability that later facilitated manipulation of a faulty price oracle, thereby enabling them to siphon off funds.

In decentralized finance (DeFi) applications, price oracles are pivotal as they provide real-world price data. However, they also represent a potential target for hackers who can exploit them for security breaches.

The attack on Sturdy Finance was initiated by a reentrancy attack, a method typically used to illicitly withdraw funds from DeFi protocols. This type of attack takes advantage of the ability to call a function repeatedly within a single transaction before the original function call is completed. This, in turn, allows the attacker to withdraw more funds than they would legitimately be entitled to.

After the attacker established the ability to manipulate the function calls, they then proceeded to exploit the price oracle. Sturdy Finance’s price oracle, derived from a separate “read-only” smart contract, was manipulated. This oracle was designed to determine the accurate market value of assets in a liquidity pool managed by Sturdy’s team on the Balancer decentralized exchange, thus facilitating the trading of staked ether (stETH). However, the exploitation of the oracle enabled the attacker to drain funds from Sturdy.

BlockSec, a security firm, stated, «The root cause is due to the typical Balancer’s read-only reentrancy, while the price of B-stETH-STABLE was manipulated.»

Sturdy pauses markets

Sturdy Finance reacted to the attack by suspending all of its markets to prevent further potential losses, assuring its users that no other funds were in danger as a result of the breach.

“All markets have been paused; no additional funds are at risk, and no user actions are required at this time,” said the team. “We will be sharing more information as soon as we have it.”
After the attack, on-chain data shows that the attacker used the Tornado Cash mixer to obscure the activity.

In 2022, Sturdy Finance raised $3 million in a series of rounds to construct an interest-free borrowing and lending platform. The funding was lead by Pantera and also saw participation from Y Combinator, SoftBank’s Opportunity Fund, and KuCoin Ventures.

Source

Leave A Reply

Your email address will not be published.