• bitcoinBitcoin (BTC) $ 67,817.00
  • ethereumEthereum (ETH) $ 3,248.45
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 582.71
  • solanaSolana (SOL) $ 182.81
  • usd-coinUSDC (USDC) $ 0.999869
  • xrpXRP (XRP) $ 0.597247
  • staked-etherLido Staked Ether (STETH) $ 3,245.36
  • dogecoinDogecoin (DOGE) $ 0.134547
  • the-open-networkToncoin (TON) $ 6.68
  • cardanoCardano (ADA) $ 0.415680
  • tronTRON (TRX) $ 0.137140
  • avalanche-2Avalanche (AVAX) $ 28.66
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 67,861.00
  • shiba-inuShiba Inu (SHIB) $ 0.000017
  • chainlinkChainlink (LINK) $ 13.56
  • polkadotPolkadot (DOT) $ 5.83
  • bitcoin-cashBitcoin Cash (BCH) $ 379.75
  • nearNEAR Protocol (NEAR) $ 5.66
  • uniswapUniswap (UNI) $ 7.64
  • leo-tokenLEO Token (LEO) $ 5.81
  • litecoinLitecoin (LTC) $ 71.21
  • daiDai (DAI) $ 1.00
  • pepePepe (PEPE) $ 0.000012
  • wrapped-eethWrapped eETH (WEETH) $ 3,388.58
  • matic-networkPolygon (MATIC) $ 0.512498
  • internet-computerInternet Computer (ICP) $ 9.91
  • kaspaKaspa (KAS) $ 0.181565
  • ethereum-classicEthereum Classic (ETC) $ 22.83
  • aptosAptos (APT) $ 7.06
  • ethena-usdeEthena USDe (USDE) $ 0.998156
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 1.26
  • stellarStellar (XLM) $ 0.102585
  • moneroMonero (XMR) $ 162.10
  • mantleMantle (MNT) $ 0.836078
  • blockstackStacks (STX) $ 1.85
  • render-tokenRender (RENDER) $ 6.71
  • filecoinFilecoin (FIL) $ 4.57
  • dogwifcoindogwifhat (WIF) $ 2.58
  • okbOKB (OKB) $ 41.21
  • injective-protocolInjective (INJ) $ 25.44
  • bittensorBittensor (TAO) $ 345.59
  • hedera-hashgraphHedera (HBAR) $ 0.068502
  • crypto-com-chainCronos (CRO) $ 0.091334
  • makerMaker (MKR) $ 2,621.73
  • arbitrumArbitrum (ARB) $ 0.722816
  • cosmosCosmos Hub (ATOM) $ 6.17
  • immutable-xImmutable (IMX) $ 1.56
  • vechainVeChain (VET) $ 0.028317
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.999827
  • arweaveArweave (AR) $ 30.36
  • bonkBonk (BONK) $ 0.000029
  • suiSui (SUI) $ 0.776818
  • optimismOptimism (OP) $ 1.72
  • the-graphThe Graph (GRT) $ 0.198965
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,635.36
  • flokiFLOKI (FLOKI) $ 0.000180
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,294.62
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,363.71
  • thorchainTHORChain (RUNE) $ 4.69
  • bitget-tokenBitget Token (BGB) $ 1.13
  • theta-tokenTheta Network (THETA) $ 1.50
  • whitebitWhiteBIT Coin (WBT) $ 10.09
  • aaveAave (AAVE) $ 97.46
  • jupiter-exchange-solanaJupiter (JUP) $ 1.07
  • notcoinNotcoin (NOT) $ 0.014115
  • ondo-financeOndo (ONDO) $ 0.992343
  • pyth-networkPyth Network (PYTH) $ 0.390056
  • jasmycoinJasmyCoin (JASMY) $ 0.029047
  • lido-daoLido DAO (LDO) $ 1.57
  • fantomFantom (FTM) $ 0.457441
  • based-brettBrett (BRETT) $ 0.129266
  • coredaoorgCore (CORE) $ 1.38
  • celestiaCelestia (TIA) $ 5.95
  • algorandAlgorand (ALGO) $ 0.142665
  • sei-networkSei (SEI) $ 0.366577
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,246.21
  • quant-networkQuant (QNT) $ 72.77
  • flowFlow (FLOW) $ 0.666934
  • gatechain-tokenGate (GT) $ 7.65
  • msolMarinade Staked SOL (MSOL) $ 220.16
  • mantra-daoMANTRA (OM) $ 1.18
  • popcatPopcat (POPCAT) $ 0.946786
  • kucoin-sharesKuCoin (KCS) $ 9.71
  • beam-2Beam (BEAM) $ 0.018237
  • elrond-erd-2MultiversX (EGLD) $ 33.24
  • axie-infinityAxie Infinity (AXS) $ 6.07
  • bitcoin-svBitcoin SV (BSV) $ 45.50
  • heliumHelium (HNT) $ 5.29
  • ethereum-name-serviceEthereum Name Service (ENS) $ 26.47
  • galaGALA (GALA) $ 0.023505
  • bittorrentBitTorrent (BTT) $ 0.00000090
  • eosEOS (EOS) $ 0.576574
  • flare-networksFlare (FLR) $ 0.019254
  • tokenize-xchangeTokenize Xchange (TKX) $ 10.39
  • neoNEO (NEO) $ 11.69
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,307.13
  • ordinalsORDI (ORDI) $ 38.48
  • akash-networkAkash Network (AKT) $ 3.29
  • dydx-chaindYdX (DYDX) $ 1.29
  • ethenaEthena (ENA) $ 0.452128
  • tezosTezos (XTZ) $ 0.778041
  • the-sandboxThe Sandbox (SAND) $ 0.327560
  • ecasheCash (XEC) $ 0.000038
  • fasttokenFasttoken (FTN) $ 2.33
  • usddUSDD (USDD) $ 1.00
  • conflux-tokenConflux (CFX) $ 0.173799
  • cat-in-a-dogs-worldcat in a dogs world (MEW) $ 0.008125
  • roninRonin (RON) $ 2.06
  • worldcoin-wldWorldcoin (WLD) $ 2.33
  • starknetStarknet (STRK) $ 0.532002
  • nexoNEXO (NEXO) $ 1.21
  • sats-ordinalsSATS (Ordinals) (SATS) $ 0.00000032
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,498.40
  • fraxFrax (FRAX) $ 0.995715
  • decentralandDecentraland (MANA) $ 0.344417
  • raydiumRaydium (RAY) $ 2.38
  • chilizChiliz (CHZ) $ 0.069883
  • frax-etherFrax Ether (FRXETH) $ 3,244.91
  • pendlePendle (PENDLE) $ 3.85
  • paypal-usdPayPal USD (PYUSD) $ 0.999516
  • book-of-memeBOOK OF MEME (BOME) $ 0.008747
  • aioz-networkAIOZ Network (AIOZ) $ 0.536879
  • mina-protocolMina Protocol (MINA) $ 0.519091
  • tether-goldTether Gold (XAUT) $ 2,387.67
  • oasis-networkOasis Network (ROSE) $ 0.087258
  • mog-coinMog Coin (MOG) $ 0.000002
  • zksyncZKsync (ZK) $ 0.158834
  • havvenSynthetix Network (SNX) $ 1.73
  • iotaIOTA (IOTA) $ 0.164307
  • gnosisGnosis (GNO) $ 213.29
  • nervos-networkNervos Network (CKB) $ 0.012339
  • dexeDeXe (DEXE) $ 9.52
  • swethSwell Ethereum (SWETH) $ 3,454.89
  • klay-tokenKlaytn (KLAY) $ 0.143195
  • apecoinApeCoin (APE) $ 0.784702
  • astarAstar (ASTR) $ 0.074885
  • wormholeWormhole (W) $ 0.290169
  • layerzeroLayerZero (ZRO) $ 4.63
  • aerodrome-financeAerodrome Finance (AERO) $ 0.916533
  • livepeerLivepeer (LPT) $ 15.06
  • safeSafe (SAFE) $ 1.17
  • staked-frax-etherStaked Frax Ether (SFRXETH) $ 3,545.04
  • true-usdTrueUSD (TUSD) $ 1.00
  • axelarAxelar (AXL) $ 0.665605
  • zcashZcash (ZEC) $ 31.59
  • 1inch1inch (1INCH) $ 0.374087
  • xdce-crowd-saleXDC Network (XDC) $ 0.031100
  • terra-lunaTerra Luna Classic (LUNC) $ 0.000085
  • bitcoin-goldBitcoin Gold (BTG) $ 26.14
  • pancakeswap-tokenPancakeSwap (CAKE) $ 1.98
  • kavaKava (KAVA) $ 0.420852
  • theta-fuelTheta Fuel (TFUEL) $ 0.068679
  • aevo-exchangeAevo (AEVO) $ 0.518875
  • illuviumIlluvium (ILV) $ 66.83
  • pax-goldPAX Gold (PAXG) $ 2,385.58
  • trust-wallet-tokenTrust Wallet (TWT) $ 1.02
  • apenftAPENFT (NFT) $ 0.00000043
  • dog-go-to-the-moon-runeDOG•GO•TO•THE•MOON (Runes) (DOG) $ 0.004255
  • iotexIoTeX (IOTX) $ 0.044207
  • turboTurbo (TURBO) $ 0.006011
  • wemix-tokenWEMIX (WEMIX) $ 1.03
  • constitutiondaoConstitutionDAO (PEOPLE) $ 0.080991
  • usdbUSDB (USDB) $ 0.990625
  • h2o-daoH2O Dao (H2O) $ 0.481371
  • mx-tokenMX (MX) $ 3.98
  • jito-governance-tokenJito (JTO) $ 3.11
  • g-tokenGravity (G) $ 0.052505
  • woo-networkWOO (WOO) $ 0.197792
  • project-galaxyGalxe (GAL) $ 3.20
  • stader-ethxStader ETHx (ETHX) $ 3,359.96
  • ether-fiEther.fi (ETHFI) $ 2.17
  • safepalSafePal (SFP) $ 0.786907
  • manta-networkManta Network (MANTA) $ 0.962817
  • compound-governance-tokenCompound (COMP) $ 51.30
  • memecoin-2Memecoin (MEME) $ 0.015412
  • stepnGMT (GMT) $ 0.152823
  • compound-ethercETH (CETH) $ 65.30
  • arkhamArkham (ARKM) $ 1.44
  • venomVenom (VENOM) $ 0.188904
  • singularitynetSingularityNET (AGIX) $ 0.548074
  • superfarmSuperVerse (SUPER) $ 0.757401
  • golemGolem (GLM) $ 0.339352
  • rocket-poolRocket Pool (RPL) $ 16.22
  • dymensionDymension (DYM) $ 1.72
  • 0x0x Protocol (ZRX) $ 0.390122
  • kusamaKusama (KSM) $ 21.58
  • blurBlur (BLUR) $ 0.186397
  • aragonAragon (ANT) $ 8.21
  • availAvail (AVAIL) $ 0.193320
  • osmosisOsmosis (OSMO) $ 0.485954
  • ponkePONKE (PONKE) $ 0.594188
  • zilliqaZilliqa (ZIL) $ 0.017157
  • beldexBeldex (BDX) $ 0.048092
  • altlayerAltLayer (ALT) $ 0.138475
  • dashDash (DASH) $ 26.75
  • echelon-primeEchelon Prime (PRIME) $ 7.41
  • curve-dao-tokenCurve DAO (CRV) $ 0.265691
  • corgiaiCorgiAI (CORGIAI) $ 0.000916
  • enjincoinEnjin Coin (ENJ) $ 0.189580

Balancer blames ‘social engineering attack’ on DNS provider for website hijack

0 145

The team behind Balancer, an Ethereum-based automated market maker, believes a social engineering attack on its DNS service provider was what led to its website’s frontend being compromised on Sept. 19, leading to an estimated $238,000 in crypto stolen.

“After investigation, it is clear that this was a social engineering attack on EuroDNS, the domain registrar used for .fi TLDs,” the firm explained in a Sept. 20 X post.

Approximately 8 hours after the first warning of the attack, Balancer said its decentralized autonomous organization (DAO) was actively addressing the DNS attack and was working to recover the Balancer UI.

At 5:45 pm UTC on Sept. 20, Balancer said it was successful in securing the domain and bringing it back under the control of Balancer DAO. It also confirmed its subdomains “app.balancer.fi” and other “balancer.fi” are safe to use again.

After investigation it is clear that this was a social engineering attack on EuroDNS, the domain registrar used for .fi TLDs.

We are exploring deprecating the .fi TLD in order to move to a more secure registrar and suggest that other projects using the TLD do the same.

[2/2]

— Balancer (@Balancer) September 20, 2023

However, it suggested any other projects using the same top-level domain should consider moving to a more secure registrar.

EuroDNS is a Luxembourg-based domain name registrar and DNS service provider. Cointelegraph has reached out to EuroDNS for comment.

Angel Drainer involved

Blockchain security firms SlowMist and CertiK reported that the attacker employed Angel Drainer phishing contracts.

SlowMist said the exploiters attacked the Balancer’s website via Border Gateway Protocol hijacking — a process where hackers take control of IP addresses by corrupting internet routing tables.

The hackers then induced users to “approve” and transfer funds via the “transferFrom” function to the Balancer exploiter, it explained.

The hacker, whom SlowMist believes may be related to Russia, has already bridged some of the stolen Ether (ETH) to Bitcoin (BTC) addresses via THORChain before eventually being bridging the ETH back to Ethereum, blockchain security firm SlowMist explained on Sept. 20.

SlowMist stated in an earlier post that the hacker transferred about 15 wrapped-Ether (wETH.e) on the Avalanche blockchain.

Balancer Hack Update

So far, we have the following findings about the @Balancer exploiter:

1/ The attacker’s fee came from the phishing group #AngelDrainer. In other words, after the attacker (AngelDrainer) attacked the website via BGP hijacking, then induced users to… https://t.co/5g6P2aPEz8 pic.twitter.com/3PInfe9VC1

— MistTrack️ (@MistTrack_io) September 20, 2023

Meanwhile, despite Balancer confirming its subdomains, balancer.fi to now be safe, visits to the website still shows “Deceptive site ahead” warning when attempting to access the Balancer’s website.

Balancer’s website as of Sept. 20 at 10:22 pm UTC. Source: Balancer.

Cointelegraph reached out to Balancer to confirm the amount of funds lost but did not receive an immediate response.

Magazine: $3.4B of Bitcoin in a popcorn tin: The Silk Road hacker’s story

Source

Leave A Reply

Your email address will not be published.